Application Security Engineer

2 weeks ago


Bethesda MD United States Sunayu, LLC Full time
Location: Bethesda, MD Category: Systems Administration Travel Required: No Remote Type: Hybrid Remote Clearance: Top Secret/SCI Sunayu LLC has a opening supporting DIA-NMEC under our 10-year DOMEX Technology Platform (DTP) contract
We are seeking a talented Mid-Level Application Security Engineer to join our dynamic team and contribute to the security posture of our software development lifecycle
We are looking for someone who can demonstrate strong cross functional collaboration in areas such as, but not limited to, development, production, and QA in a dynamic, secure, fast paced environment
Have impact as part of a mission focused, solutions oriented, and adaptive team that values innovation, collaboration, and professional development
While most work is conducted on-site at our client location in Bethesda, MD, we offer a flexible schedule and, occasionally, some tasks may be performed remotely
Percentage of remote work will vary based on client requirements/deliverables
As an integral member of the team, you will work closely with other infrastructure, network engineers, and system engineers on the following key tasks:
• Integrate security best practices into the software development life cycle (SDLC) and ensure security is embedded from design to deployment.
* Utilize Microfocus Fortify and other SAST tools to analyze source code for vulnerabilities.
* Work closely with development teams to remediate identified security issues.
* Implement and manage Black Duck SCA tools from Synopsys to identify and manage open-source component risks.
* Provide guidance on secure usage of third-party libraries and components.
* Conduct security assessments using Microfocus WebInspect and other DAST tools.
* Collaborate with development teams to address and remediate dynamic security findings.
* Implement and manage container security tools, with a focus on Anchore, to ensure secure container deployments.
* Provide recommendations for secure container orchestration.
* Work on ensuring systems and applications comply with Security Technical Implementation Guide
You demonstrate clear devotion to the DevOps and Infrastructure as Code (IaC) mindset and meet the following qualifications:
• Bachelor's degree in computer science, Information Security, or related field and 3+ years of prior experience in application security with a focus on SAST, SCA, DAST or Master's with 1-2 years of prior experience in application security with a focus on SAST, SCA, DAST
* Must possess TS/SCI clearance with the ability to obtain and maintain TS/SCI with Polygraph.
* Experience in system integrations testing through a full system development life cycle, including implementing test plans, test cases and test processes.
* Strong experience with Microfocus Fortify, Black Duck, Microfocus WebInspect, Anchore, or similar products.
* Knowledge of secure coding practices and integration into SDLC
* Familiarity with common security frameworks and standards
* Strong programming/scripting skills
* Excellent communication and collaboration skills
* Working in an Agile project management environment
* Enthusiastic with the ability to work well on a team and a self-starter who can work on their own
You will wow us even more if you have some of these:
• Knowledge of Atlassian software such as JIRA, JIRA Service Desk, and Confluence
* Experience with data engineering tools such as Kubernetes/Rancher, Cloudera
* Experience with Configuration Management and IaC tools such as Salt or Ansible
* Experience with scripting languages, CI/CD tools, Elasticsearch, or Gitlab
* Experience working in an air-gapped environments
* Experience working in large computing environments (> 1,000 end-points)

  • Bethesda, United States SUNAYU Full time

    Location: Bethesda, MD Category: Systems Administration Travel Required: No Remote Type: Hybrid Remote Clearance: Top Secret/SCI Sunayu LLC has a opening supporting DIA-NMEC under our 10-year DOMEX Technology Platform (DTP) contract. We are seeking a talented Mid-Level Application Security Engineer to join our dynamic team and contribute to the security...


  • Chicago, IL, United States CME Group Full time

    Description Role Overview The Lead Security Engineer Application Security is responsible for performing advanced manual security assessments on applications and systems that require specialized knowledge, and provide detailed written reports to key business stakeholders (management, development teams). Additionally, the individual will provide application...


  • Bethesda, United States Urbane Systems Full time

    Job DescriptionJob DescriptionBethesda, MD (Hybrid) Must possess TS/SCI clearance with the ability to obtain and maintain TS/SCI with PolygraphExperience in system integrations testing through a full system development life cycle, including implementing test plans, test cases and test processes.Strong experience with Microfocus Fortify, Black Duck,...


  • Bethesda, United States Bethesda Marriott Full time

    Job Number 24077113Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThis position will be part of the Cloud Security Engineering Team within the Global Information Security...

  • Security Engineer

    4 weeks ago


    Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryServes as a Security Orchestration and Automated Response (SOAR) engineer responsible for design, development and...

  • Sr. Security Engineer

    2 weeks ago


    Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThis position will be part of the Cloud Security Engineering Team within the Global Information Security organization. The...

  • Security Engineer

    2 weeks ago


    Bethesda, United States ARK Solutions, Inc. Full time

    Job: Security EngineerLocation: Bethesda, MD/RemoteDuration: Long TermThis is Remote position, but candidate has to go onsite time to time.Only looking for local candidate.Only Open for W2 JOB DESCRIPTIONSupports the Identity & Access Management (IAM) function in Global Information Security organization. Ideal candidate will bring subject matter expertise...

  • Security Engineer

    2 weeks ago


    Bethesda, United States ARK Solutions, Inc. Full time

    Job: Security EngineerLocation: Bethesda, MD/RemoteDuration: Long TermThis is Remote position, but candidate has to go onsite time to time.Only looking for local candidate.Only Open for W2 JOB DESCRIPTIONSupports the Identity & Access Management (IAM) function in Global Information Security organization. Ideal candidate will bring subject matter expertise...

  • Security Engineer

    2 weeks ago


    Bethesda, United States ARK Solutions, Inc. Full time

    Job: Security EngineerLocation: Bethesda, MD/RemoteDuration: Long TermThis is Remote position, but candidate has to go onsite time to time.Only looking for local candidate.Only Open for W2 JOB DESCRIPTIONSupports the Identity & Access Management (IAM) function in Global Information Security organization. Ideal candidate will bring subject matter expertise...


  • Bethesda, United States cyDaptiv Solutions Inc Full time

    Overview cyDaptiv Solutions is seeking a Senior Cyber Security Engineer (CSE) with experience supporting Federal and DoD cyber security and information assurance projects. The CSE must have knowledge of the Risk Management Framework (RMF), security principles, concepts, policies and regulations and be able to identify risks in information systems and work...


  • Bethesda, United States cyDaptiv Solutions Full time

    Job DescriptionJob DescriptionSalary: $150K - $155K annual salaryOverview cyDaptiv Solutions is seeking a Senior Cyber Security Engineer (CSE) with experience supporting Federal and DoD cyber security and information assurance projects. The CSE must have knowledge of the Risk Management Framework (RMF), security principles, concepts, policies and...


  • Bethesda, United States Diverse Systems Group LLC Full time

    Job DescriptionJob DescriptionDescription:As a Senior Security Engineer, you will be a key leader in maintaining the security posture of our systems and ensuring compliance with the Department of Defense (DOD) and Defense Health Agency (DHA) policies and requirements. Your extensive experience, critical thinking skills, and deep technical knowledge will...

  • Security Engineer

    2 weeks ago


    Bethesda, United States Diverse Systems Group Full time

    Job Description Job Description As a \ Security Engineer, you will be a key leader in maintaining the security posture of our systems and ensuring compliance with the Department of Defense (DOD) and Defense Health Agency (DHA) policies and requirements. Your extensive experience, critical thinking skills, and deep technical knowledge will contribute to our...

  • Security Engineer

    3 weeks ago


    Bethesda, United States Diverse Systems Group Full time

    Job DescriptionJob DescriptionAs a \ Security Engineer, you will be a key leader in maintaining the security posture of our systems and ensuring compliance with the Department of Defense (DOD) and Defense Health Agency (DHA) policies and requirements. Your extensive experience, critical thinking skills, and deep technical knowledge will contribute to our...

  • Sr. Security Engineer

    3 weeks ago


    Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryAs the Sr. Engineer/Developer for SailPoint, you will be responsible for engineering & development of IGA features and...


  • Bethesda, United States Bethesda Marriott Full time

    Job Number 24062158Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Sr. Infrastructure Security Engineer ensures the stability, integrity and efficient operation of information...


  • Bethesda, United States Marriott Full time

    Job Number 24062158 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Sr. Infrastructure Security Engineer ensures the stability, integrity and efficient operation of...


  • Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Sr. Infrastructure Security Engineer ensures the stability, integrity and efficient operation of information systems and...


  • Bethesda, United States Bethesda Marriott Full time

    Job Number 24062106Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Sr. Systems Engineer ensures that stability, integrity, and efficient security operations that support core...


  • Bethesda, United States ALTA IT Services Full time

    Job DescriptionJob DescriptionRequired Experience: Minimum of five years’ hands-on experience with Linux/Unix variants, especially RedHat/RHEL version 7.x/8.x/9.x and its derivatives, including best practices for deploying LAMP (Linux, Apache, MySQL, PHP) applications and supporting variants of LAMP such as Tomcat, Java, Python, MariaDB, and...