Get more replies from employers
Send a job-specific resume in minutes.
Veilant is seeking an Application Security Engineer to improve software security through auditing, vulnerability analysis, and remediation strategies. You will work closely with the InfoSec team, engineering teams, and have a hands-on role in enhancing our security posture.
Successful candidates will possess strong software development experience, especially in Java, and be adept at identifying vulnerabilities in Java Spring Boot applications. The position offers flexible PTO, a generous 401k match, and opportunities for career growth.
Veilant is looking for an Application Security Engineer to join our InfoSec team and help validate, secure, and continuously improve software developed by internal and partner engineering teams.
This role is ideal for someone who combines a software engineering foundation with an attacker mindset. You will review major and minor software releases before deployment, identify and validate vulnerabilities, create proof‑of‑concept demonstrations where appropriate, and provide practical remediation guidance that developers can act on.
You will not simply file security tickets and move on. You will work closely with engineering teams to understand application architecture, business logic, user workflows, data sensitivity, and production environments so that your findings are accurate, contextualized, and useful.
You will work collaboratively across Veilant’s software, DevSecOps, and infrastructure teams.
In this role, you will:
Within your first six months, success in this role will look like:
Building a repeatable AppSec review process for major and minor software releases, helping engineering teams identify and resolve security issues before deployment.
Integrating and improving SAST, DAST, and SCA checks in CI/CD pipelines so that security testing becomes a reliable part of the development lifecycle rather than a late‑stage blocker.
Establishing threat modeling practices for web applications using common frameworks and applying them to Veilant’s Angular front‑end, Java Spring Boot back‑end, REST APIs, SQL databases, and authentication flows.
Partnering with engineering and software teams to improve secure coding practices through practical feedback, remediation guidance, and collaborative reviews.
Implementing best practices in container runtime security, including visibility, monitoring, and runtime protections for containerized workloads.
Writing standardized security reports that clearly communicate risk, impact, and remediation steps for both executive‑level stakeholders and engineering teams.
What We Are Looking For
Strong candidates will bring:
The Kind of Person Who Will Thrive Here
You will do well in this role if you are curious, collaborative, and comfortable working across both code and security. You know how to speak with developers in practical terms, explain risk without creating unnecessary friction, and help teams ship secure software without slowing the mission down.
You are someone who can move from reviewing source code, to analyzing an API request, to modeling a threat scenario, to writing a report that an executive can understand. You enjoy solving problems at the root cause, not just documenting symptoms.
Why You’ll Love Working Here:
Here are some Perks!
We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace.
If you require a reasonable accommodation to apply for a position with Veilant through its online applicant system, please contact Veilant's Talent Management Department at (703) 544-2424 or contact us throughe-mail at contact_us@ veilant.com