Senior Application Security Engineer

1 day ago


Washington DC United States Global Solutions Consulting LLC. Full time

Position Summary:

GSC is a leading cyber security and information technology company based in Washington, DC. We are looking to hire a Senior Security Application Engineer to support a full range of cyber security services on a long-term contract in Washington DC. The position is full-time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background and security clearance.

Job Requirements:

  1. Strong written and verbal communication skills
  2. Must have GitLab CI/CD pipeline experience
  3. Assist in the development and implementation of the DevSecOps strategy to include the definition and goals of the over-arching framework and methodologies
  4. Assist customers with implementing a secure CI/CD pipeline utilizing DevSecOps principles and practices to increase automation and reduce human involvement in the process
  5. Reviewing source code for potential security vulnerabilities
  6. Strong analytical skills to assess risks and vulnerabilities in complex systems
  7. Writing security test cases to check for vulnerabilities or broken/missing security controls.
  8. Implement automated security controls as part of CI/CD pipelines
  9. Support development teams with secure code (DAST, SAST, Dependency, Secret Detection, Container scans, etc.) reviews and other assessments to identify security weaknesses and vulnerabilities
  10. Establish and maintain secure coding standards and best practices to provide guidance and training to development teams on security best practices
  11. Recommend cyber defense and vulnerability assessment tools
  12. Review and research monthly continuous monitoring controls documentation tasks that is required by OIS
  13. Continuous Process Improvement, actively contribute to the development of standardized operating procedures (SOPs) for API security testing
  14. Collaborate closely with cross-functional teams, including system administrators and Information System Security Officers (ISSOs)

Security Clearance Requirement:

  1. Active Public Trust and eligible to obtain a Secret clearance

Required Qualifications:

  1. At least Ten (10) years of experience working in cybersecurity or information technology with a bachelor’s degree. Minimum of 5 years’ experience in vulnerability management, application and software security team, Malware analysis, digital forensics, data/network analysis, penetration testing, information assurance, leading incident handling.
  2. Solid experience in application security and software development in one or more programming languages such as C#, Java, Python, etc.
  3. Experience with security tools such as SAST, DAST, IAST, SCA, IaC and other security tools.
  4. Familiarity with industry-standard security frameworks such as OWASP, NIST, BSIMM etc.
  5. Experience with CICD pipeline, security tools integration and secure SDLC.
  6. Knowledge of current and emerging threats and techniques for exploiting security vulnerabilities.
  7. CISSP, OSCP, any DevSecOps or other related Information Security certification.
  8. Experience with cloud-based infrastructure (AWS, Azure, GCP or OCI).
#J-18808-Ljbffr

  • Washington, DC, United States ZipRecruiter Full time

    Position Title: Senior Application Security Engineer Location: Washington, DC (Hybrid) Job Requirements: Strong written and verbal communication skills Must have GitLab CI/CD pipeline experience Responsibilities: Assist in the development and implementation of the DevSecOps strategy to include the definition and goals of the over-arching framework and...


  • Washington, United States SourcePro Search, LLC Full time

    Our top rated global client is looking for an experienced Senior Application Security Engineer for their Washington, DC office. The ideal candidate will serve as subject matter expert integrating secure design for applications and services within the system development lifecycle. This position collaborates with business units, project management, and...


  • Washington, United States Global Solutions Consulting (GSC) Full time

    Job DescriptionJob DescriptionPosition Title: Senior Application Security EngineerLocation: Washington, DC (Hybrid)Job Requirements:Strong written and verbal communication skills· Must have GitLab CI/CD pipeline experience· Assist in the development and implementation of the DevSecOps strategy to include the definition and goals of the over-arching...


  • Washington, DC, United States Booz Allen Hamilton Full time

    Job Number: R0210035 Application Security EngineerKey Role: Work together with the client and application community to maintain a resilient security posture for highly visible applications. Remediate application security flaws in conjunction with the application security team. Lead security discussions with the application teams to prescribe security best...


  • Draper, UT, United States BAMM Staffing Full time

    Contract to Hire, Onsite in Draper Utah (US Citizen or GC Only)As a Senior Application Security Engineer, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the...


  • Draper, UT, United States BAMM Staffing Full time

    Contract to Hire, Onsite in Draper Utah (US Citizen or GC Only)As a Senior Application Security Engineer, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the...


  • Washington, DC, United States Cannon Security Products Full time

    About the jobThe Integrity, Investigations, Intelligence and Events (i3E) teams at Meta are dedicated to protecting the users of our family of applications (e.g. Facebook, Instagram, WhatsApp, Oculus) from a multitude of threats including criminal organizations, human trafficking and exploitation, and scams/fraud. We are seeking security engineers to...


  • Washington, DC, United States Modern Technology Solutions, Inc. Full time

    Overview Own Your Future. Modern Technology Solutions, Inc. (MTSI) is seeking a Senior Cyber Security Engineer/Information Systems Security Engineer (ISSE) in Dayton, OH. As a Senior Cybersecurity Engineer / Information Systems Security Engineer (ISSE) with MTSI you will support a customer operating out of Wright Patterson AFB, Dayton, OH with travel up to...


  • Woodland Hills, CA, United States Ekman Associates, Inc Full time

    Job Description Remember to check your CV before applying Also, ensure you read through all the requirements related to this role. Title: Senior Application Security Engineer Location: Remote - Southern California preferred Ekman Associates is a management consulting firm that specializes in developing business, digital, and technology strategy,...


  • Washington, DC, United States Reston Consulting Group Full time

    RCG is a growing federal contracting company and Certified as a Great Place to Work. We are looking for strongly qualified people to help support our clients. We are currently seeking a Senior Security Engineer for a full-time position as part of an ongoing contract in Washington, DC. Please note: Due to the secure nature of this government agency, all...


  • Tysons Corner, VA, United States Take2 Consulting, LLC Full time

    Take2 has proven experience bridging the intersection of technology and people solutions. As a proven, trusted provider for our Federal and commercial clients, we provide the right solutions, at the right time through trusted partnerships, customized to solve our client’s unique business challenges. Take2 invests time, discipline, and rigor into our...


  • Washington, DC, United States Glocomms Full time

    We are are partnered with a leading real estate data analytics company to bring on a Senior Security Engineer to join their offensive security team. This role requires a technical leader who can drive advanced red team engagements and coordinate purple team activities to enhance their security posture. This engineer will conduct thorough adversary emulation...


  • Washington, DC, United States GLO Comms Full time

    We are are partnered with a leading real estate data analytics company to bring on a Senior Security Engineer to join their offensive security team. This role requires a technical leader who can drive advanced red team engagements and coordinate purple team activities to enhance their security posture. This engineer will conduct thorough adversary emulation...


  • Washington, DC, United States Amida Technology Solutions, Inc. Full time

    Amida Technology Solutions is a DC-based software services company focused on the most difficult problems in data interoperability, exchange, governance, and security. We design, develop, and deploy software solutions that collect, reconcile, and transform data for business intelligence, predictive analytics, and decision support. We specialize in taking...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, DC, United States Aditi Consulting Full time

    Experience: Must have Bachelor’s degree or equivalent and eighteen (18) years of related experience; master’s degree and sixteen (16) years of related experience; Ph.D. and thirteen (13) years of experience; twenty (20) years of related experience with no degree. Duties: Responsible for providing unique cyber domain expertise and guidance to the delivery...


  • Washington, DC, United States Improvix Technologies Full time

    Job Title: Senior Cybersecurity EngineerLocation: Remote from Washington, DCPosition Type: Full-TimeClearance Level: Secret ClearanceOverview:We are seeking a Senior Cybersecurity Engineer with an active Secret Clearance to join our team in supporting the Department of State’s multi-cloud platforms, including AWS, Azure, and GCP. In this fully remote role,...


  • Washington, United States Micro Data Systems Full time

    Senior Security EngineerRemote - Washington DC Metro Area preferredYour ImpactWork full-time at the customer siteCommunicate with the customer(s), sales teams, peers, engineering and support teams as appropriateUnderstand the customer environment, requirements, and security roadmap to implement the appropriate security solutionConfigure, implement, and...


  • Washington, DC, United States ALTA IT Services Full time

    Systems Engineer Do not wait to apply after reading this description a high application volume is expected for this opportunity. TS/SCI with the ability to obtain CI Poly Location: Chantilly, VA - On-Site Email: Cdinnocenti@altaits.com As a Systems Engineer, Senior you will help ensure today is safe and tomorrow is smarter. Our work depends on TS/SCI...

  • DHS HSEN

    1 day ago


    Washington, DC, United States ZipRecruiter Full time

    Position Summary BayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Engineer (Process Improvement) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity...