Skip to content

Open nowPosted today

Application Security Analyst

cccis33 open roles

Where
Chicago (Green St), IL
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowApplication Security Analystcccis · Chicago (Green St), IL
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on cccis's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. cccis postings stay open a median of 3 days.

Share of postings closed within
  1. 1.9%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.1%30 days
This job: posted today

cccis median: 3 days open

The posting

Salary range is:

$56,930.88 - $70,000.00

This position is bonus and/or commission eligible.

CCC Intelligent Solutions Inc. (CCC) is a leading cloud platform for the multi-trillion-dollar insurance economy, creating intelligent experiences for insurers, repairers, automakers, part suppliers, and more. At CCC, we’re making life just work by empowering more than 35,000 businesses with industry-leading technology to get drivers back on the road and to health quickly and seamlessly. We’re pushing boundaries with innovative AI solutions that simplify and enhance the claims and repair journey. Through purposeful innovation and the strength of its connections, CCC technologies empower the people and industry relied upon to keep lives moving forward when it matters most. Learn more about CCC at www.cccis.com.

The Role

The Application Security Analyst is responsible for helping embed security throughout the software development lifecycle. This role partners closely with development, engineering, product, and platform teams to identify, assess, prioritize, and remediate application security risks. The analyst will support vulnerability management, security testing, secure coding initiatives, and security automation efforts that help strengthen the organization's overall security posture.

This position is ideal for an individual with a strong technical foundation, a passion for application security, and the ability to collaborate effectively across engineering teams to drive practical risk reduction.

Key Responsibilities:

  • Perform application security assessments, including static analysis, dynamic analysis, software composition analysis, and manual validation of findings.
  • Review and triage security findings, distinguishing true positives from false positives and helping development teams prioritize remediation efforts.
  • Support secure software development lifecycle (SSDLC) initiatives and security-by-design practices across engineering teams.
  • Conduct threat modeling and security reviews for new applications, services, and technology implementations.
  • Partner with development teams to identify security weaknesses and provide remediation guidance.
  • Assist with penetration testing coordination and validation of remediation activities.
  • Develop and maintain security metrics, reporting, and dashboards related to application security risk.
  • Support vulnerability management processes, including identification, prioritization, tracking, and verification of remediation efforts.
  • Create automation, scripts, and integrations that improve security workflows and reduce manual effort.
  • Evaluate software supply chain risks and support secure use of open-source components.
  • Assist in developing security standards, procedures, and secure coding guidance.
  • Deliver security awareness and secure coding training to engineering teams.
  • Support incident response activities involving application security vulnerabilities when required.
  • Be familiar with AI workflows and enablement

Requirements:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Understanding of common web application vulnerabilities, including the OWASP Top 10.
  • Experience working with security testing tools such as SAST, DAST, SCA, and secrets detection platforms.
  • Knowledge of application architectures, APIs, cloud-native applications, and modern development practices.
  • Experience with scripting languages such as Python, PowerShell, JavaScript, Go, or similar.
  • Familiarity with CI/CD pipelines and source control platforms such as GitHub, GitLab, or Azure DevOps.
  • Strong analytical, troubleshooting, and communication skills.
  • Ability to effectively communicate technical findings to both technical and non-technical stakeholders.

Preferred Qualifications

  • Experience with software supply chain security programs.
  • Familiarity with tools such as Endor Labs, Wiz, GitHub Advanced Security, Veracode, Checkmarx, Burp Suite, or similar technologies.
  • Knowledge of cloud security concepts across Azure, AWS, or GCP.
  • Experience automating security processes and workflow integrations.
  • Relevant certifications such as Security+, GSEC, CSSLP, GWAPT, OSCP, or related credentials.
  • Experience participating in secure architecture reviews and threat modeling exercises.

Success Measures

In this role, success will be measured by:

  • Reduction in application security risk through effective vulnerability identification and remediation.
  • Timely validation and prioritization of security findings.
  • Increased adoption of secure development practices across engineering teams.
  • Improvements in security automation and operational efficiency.
  • Strong partnership and engagement with developers, architects, and product teams.
  • Contribution to measurable improvements in the organization’s security posture.

Interview Policy & Privacy Notice:

A video interview is required for this position. Video interviews are transcribed. Transcriptions are retained and may be reviewed by CCC and our recruiters. Candidates are not permitted to use generative AI or automated assistance during the interviews unless explicitly allowed by the interview team for a specific exercise. Our Job Applicant Privacy Notice is available HERE.

About CCC's Commitment to Employees:

CCC Intelligent Solutions understands that our employees play an integral role in our vision to shape a world where life just works. Our team is defined by our values of Integrity, Customer-Focus, Innovation, Inclusion & Diversity, Tenacity, and Connection. Through diverse perspectives, purposeful innovation, and the strength of connections, our technologies empower the people and industry relied upon to keep lives moving forward when it matters most.

At CCC, together everyone can thrive as we innovate and collaborate, creating employee experiences that just work. We are committed to providing opportunities for our people to make real-life impacts, advance in their careers, and contribute to CCC’s success.

CCC offers competitive compensation and benefits to support you and your families, including:

  • 401K Match
  • Paid time off
  • Annual Incentive Plan Performance Bonus
  • Comprehensive health insurance
  • Adoption Assistance
  • Tuition Reimbursement
  • Wellness Programs
  • Stock Purchase Plan options
  • Employee Resource Groups

For more information about our benefits, please check out our careers site.

Here, you belong. You are seen, valued, and respected. We celebrate you for who you are and all you bring. Every voice is heard and is important to our success. You can hear what employees have to say about our culture here

If you require reasonable accommodation to complete a job application, please contact (800) 621-8070.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against cccis's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on cccis's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    cccis's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.