IMF logo

Associate Security Analyst (Application Security)

IMFWashington, D.C., United States
Category | Grade:Professional | A-9 / A-10Deadline:5 Aug 2026Job ID:26-R9578Posted on:21 Jul 2026
Apply now

Overview

Supports application security across the IMF software lifecycle by integrating security testing into delivery pipelines, reviewing vulnerabilities and coordinating remediation with development and infrastructure teams to strengthen controls for cloud and on-premises applications.

Department: Project Portfolio Management Section, Information Technology Department

Languages

Required: English

Job Areas

  1. Cybersecurity
  2. Software Engineering & Development

Minimum Experience

Not listed

Estimated Salary

Not available

Responsibilities

  • Promote secure coding and integrate security requirements into application design and development
  • Integrate static, dynamic and component-analysis security testing into delivery pipelines
  • Participate in threat modelling and security design reviews with senior engineers
  • Review security-test findings and coordinate vulnerability remediation with application teams
  • Implement application controls across cloud and on-premises environments
  • Track remediation activity and support timely closure of security findings
  • Deliver secure-development training and share emerging threat guidance

Requirements

  • Advanced university degree in computer science, cybersecurity or a related field, or a university degree with at least six years of relevant experience
  • Experience in vulnerability management, application security, secure development or a related cybersecurity discipline
  • Experience with a programming or scripting language such as Java, Python or .NET
  • Understanding of secure architecture for web and cloud applications
  • Exposure to static analysis, dynamic analysis, vulnerability scanning and penetration testing
  • Experience coordinating cross-functional initiatives with technical and business stakeholders

Skills

Application SecuritySecure Software DevelopmentVulnerability ManagementThreat ModellingSecurity TestingCloud SecuritySecurity ControlsRemediation CoordinationSecure ArchitectureProject Coordination

Tools

SASTDASTSCAOWASP Top 10NISTAzure DevOpsServiceNowMicrosoft AzurePower BI

Additional info

  • One-year contractual appointment
  • Appointment may be renewed for up to four cumulative contractual years subject to performance, budget and business need