Senior Application Security Engineer

Global Solutions Consulting LLC.

Baltimore (MD)

On-site

USD 120,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A reputable cybersecurity firm in Washington, DC seeks a Senior Security Application Engineer to support government-related cybersecurity services. The position requires strong communication skills, extensive experience in application security, and knowledge of secure coding standards. Candidates must have at least ten years' experience in the industry along with relevant certifications. This full-time role prioritizes individuals with a public trust clearance and focuses on safeguarding systems through robust CI/CD practices and vulnerability management.

Qualifications

  • At least 10 years of experience in cybersecurity or information technology.
  • Minimum of 5 years in vulnerability management and application security.
  • CISSP, OSCP, or DevSecOps related certification held.

Responsibilities

  • Develop and implement DevSecOps strategies for secure CI/CD pipelines.
  • Review source code for vulnerabilities and perform security assessments.
  • Establish secure coding standards and best practices.

Skills

Strong written and verbal communication skills
GitLab CI/CD pipeline experience
Strong analytical skills
Experience in vulnerability management
Application security and software development skills
Knowledge of security frameworks (OWASP, NIST)
Experience with cloud-based infrastructure
Managing incident handling

Education

Bachelor's degree in cybersecurity or information technology

Tools

SAST
DAST
IAST
SCA
CICD security tools

Job description

Position Summary

GSC is a leading cyber security and information technology company based in Washington, DC. We are looking to hire a Senior Security Application Engineer to support a full range of cyber security services on a long-term contract in Washington DC. The position is full-time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background and security clearance.

Job Requirements
  • Strong written and verbal communication skills
  • Must have GitLab CI/CD pipeline experience
  • Assist in the development and implementation of the DevSecOps strategy to include the definition and goals of the over-arching framework and methodologies
  • Assist customers with implementing a secure CI/CD pipeline utilizing DevSecOps principles and practices to increase automation and reduce human involvement in the process
  • Reviewing source code for potential security vulnerabilities
  • Strong analytical skills to assess risks and vulnerabilities in complex systems
  • Writing security test cases to check for vulnerabilities or broken/missing security controls.
  • Implement automated security controls as part of CI/CD pipelines
  • Support development teams with secure code (DAST, SAST, Dependency, Secret Detection, Container scans, etc.) reviews and other assessments to identify security weaknesses and vulnerabilities
  • Establish and maintain secure coding standards and best practices to provide guidance and training to development teams on security best practices
  • Recommend cyber defense and vulnerability assessment tools
  • Review and research monthly continuous monitoring controls documentation tasks that is required by OIS
  • Continuous Process Improvement, actively contribute to the development of standardized operating procedures (SOPs) for API security testing
  • Collaborate closely with cross‑functional teams, including system administrators and Information System Security Officers (ISSOs)
Security Clearance Requirement
  • Active Public Trust and eligible to obtain a Secret clearance
Required Qualifications
  • At least Ten (10) years of experience working in cybersecurity or information technology with a bachelor’s degree. Minimum of 5 years’ experience in vulnerability management, application and software security team, Malware analysis, digital forensics, data/network analysis, penetration testing, information assurance, leading incident handling.
  • Solid experience in application security and software development in one or more programming languages such as C#, Java, Python, etc.
  • Experience with security tools such as SAST, DAST, IAST, SCA, IaC and other security tools.
  • Familiarity with industry-standard security frameworks such as OWASP, NIST, BSIMM etc.
  • Experience with CICD pipeline, security tools integration and secure SDLC.
  • Knowledge of current and emerging threats and techniques for exploiting security vulnerabilities.
  • CISSP, OSCP, any DevSecOps or other related Information Security certification.
  • Experience with cloud-based infrastructure (AWS, Azure, GCP or OCI).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Security Development Engineering
Security Development Engineering

FSR, LLC. • Herndon (VA)

Hybrid
USD 90,000 - 130,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Application Security Engineer
Application Security Engineer

IPolarity • Hanover Township (NJ)

On-site
USD 68,000 - 97,000
Application Security Architect & Engineer
Application Security Architect & Engineer

Mbi Llc • Richmond (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer – Software Engineer
Senior Security Engineer – Software Engineer

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000
Lead Security Engineer
Lead Security Engineer

Dev Technology • Suitland (MD)

On-site
USD 120,000 - 190,000
Generous time-off policy
Flexible work schedules
401K matching
+1
IT Security Specialist
IT Security Specialist

PlanIT Group, LLC • Reston (VA)

Remote
USD 100,000 - 130,000