Application Security Engineer

2 weeks ago


Arlington, United States Motion Recruitment Full time

Senior Engineer- Information Security

As a Senior Application Security Engineer, you will play a critical role in strengthening the security of our applications throughout their entire lifecycle. You will work closely with development teams to embed security best practices, conduct comprehensive threat modeling, and leverage OWASP ASVS techniques to identify and mitigate vulnerabilities.

The company is located in Reston, VA and will require onsite a couple times a month.

What You Will Be Doing

  • Lead and support the adoption of secure coding practices across development teams
  • Conduct in-depth threat modeling for both new and existing applications to identify potential security risks
  • Perform proactive security assessments and code analysis to uncover and address vulnerabilities
  • Participate in code reviews for languages such as Java, Python, etc.
  • Conduct both manual and automated secure code reviews for various programming languages
  • Collaborate with developers to provide actionable remediation guidance and promote secure coding practices
  • Implement and maintain automated security testing tools and processes
  • Assess third-party libraries and dependencies for potential security risks
  • Stay updated on evolving security threats, vulnerabilities, and technologies to continually enhance application security strategies
  • Work with cross-functional teams, including Engineering and Operations, to integrate security within the software development lifecycle (SDLC)
Required Skills & Experience:
  • Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience)
  • 10+ years of proven experience in Application Security Engineering or a similar position
  • Strong knowledge of OWASP ASVS and application security best practices
  • Solid experience with threat modeling methodologies and tools
  • 5+ years of hands-on development experience in one or more programming languages such as Java, C, C++, or Python
  • Expertise in secure coding practices (e.g., encryption, authentication, secure API design)
  • Proficiency in security assessments, including penetration testing and code reviews
  • Experience with SAST, DAST, and SCA tools like CodeQL, Burp Suite Enterprise, etc.
  • Strong communication skills, with the ability to explain technical concepts to non-technical audiences
  • Certifications such as CEH or equivalent are a plus

The Offer:
15% bonus

Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.
This position doesn't provide sponsorship.

Posted by: Ashton Corbett

Specialization:

  • Arlington, United States Motion Recruitment Full time

    Senior Engineer- Information Security As a Senior Application Security Engineer, you will play a critical role in strengthening the security of our applications throughout their entire lifecycle. You will work closely with development teams to embed security best practices, conduct comprehensive threat modeling, and leverage OWASP ASVS techniques to...


  • Arlington, United States Motion Recruitment Partners, LLC Full time

    Senior Engineer- Information Security As a Senior Application Security Engineer, you will play a critical role in strengthening the security of our applications throughout their entire lifecycle. You will work closely with development teams to embed security best practices, conduct comprehensive threat modeling, and leverage OWASP ASVS techniques to...


  • Arlington, Virginia, United States Shuvel Digital Full time

    Cyber Security Engineer Job DescriptionAbout the Role:This is a challenging and rewarding opportunity for a skilled Cyber Security Engineer to join our team at Shuvel Digital. As a Cyber Security Engineer, you will be responsible for designing, implementing, and maintaining the security of our computer systems, networks, and applications. You will work...


  • Arlington, Virginia, United States Motion Recruitment Full time

    Job SummaryMotion Recruitment is seeking a highly skilled Senior Security Engineer to join our team. As a key member of our security team, you will play a critical role in strengthening the security of our applications throughout their entire lifecycle.Key ResponsibilitiesWork closely with development teams to embed security best practices and conduct...


  • Arlington, United States Department of Homeland Security Full time

    The Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA) is recruiting a Deputy Chief Information Security Officer (CISO), to serve as the Deputy to the CISA CISO responsible for enabling this mission by strengthening the cybersecurity posture of CISA, while fostering collaborative networks across the federal...

  • Security Engineer II

    4 weeks ago


    Arlington, Virginia, United States Amazon Full time

    Job Summary:We are seeking a highly skilled Security Engineer II to join our team at Amazon. As a key member of our Information Security team, you will be responsible for providing frontline support for all information security related issues, including penetration testing, network and service configuration, and advising on security policy compliance.Key...

  • Sr. Security Engineer

    2 weeks ago


    Arlington, United States Metronome LLC Full time

    Metronome LLC has an immediate need for a Senior Security Engineer for a new customer on a highly visible and strategic Cybersecurity Task Order. The Senior Security Engineer will need to be a self-starter with excellent analytical and problem-solving skills, flexibility, good judgment, and the ability to coordinate multiple, concurrent tasks in an effective...


  • Arlington, Virginia, United States Glocomms Full time

    Job Title: Cloud Platform Security EngineerGlocomms is seeking a skilled Cloud Platform Security Engineer to join our team. As a key player in integrating security into the cloud infrastructure, you will work across teams to implement automated security controls within CI/CD pipelines.Key Responsibilities:Configure and manage Cloud-Native Application...


  • Arlington, United States Shuvel Digital Full time

    Title: Cyber Security Engineer Type: Contract Location: Arlington, VA Clearance: Active Secret. Must be able to obtain TS/SCI and DHS suitability prior to starting employment. Description: The successful Cyber Security Engineer applies current analytical and logical thinking to the design, architecture, development, evaluation, testing, and integration of...


  • Arlington, Virginia, United States Mastercard, Inc. Full time

    Job SummaryWe are seeking a highly skilled Information Security Engineer II to join our team at Mastercard, Inc. in Arlington, Virginia. As a key member of our Security Engineering team, you will be responsible for providing design and architecture advice to internal teams on how to securely develop and build applications and supporting systems. You will...


  • Arlington, Virginia, United States Amazon Full time

    About the RoleAWS Security is seeking a highly skilled Application Security Engineer to join our team. As a key member of our security team, you will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios.You will have the...


  • Arlington, Virginia, United States Cherokee Federal Full time

    Cyber Security EngineerCherokee Federal is seeking a highly skilled Cyber Security Engineer to join our team. As a key member of our security team, you will be responsible for overseeing the security posture of our OpenNet/ClassNet/Cloud environments, developing the overall security strategy, and assisting in the development of the information system...


  • Arlington, Virginia, United States Mastercard, Inc. Full time

    Secure the Future of Digital PaymentsWe're seeking a skilled Information Security Engineering Specialist to join our team at Mastercard, Inc. in Arlington, Va. As a key member of our Security Engineering team, you'll play a critical role in developing and implementing secure systems and applications that enable consumers and businesses to securely,...


  • Arlington, Virginia, United States Koniag Data Solutions, LLC Full time

    Job SummaryKoniag Data Solutions, LLC is seeking a highly skilled Network Engineer with an active Top Secret clearance to support our government customer in Arlington, VA.We offer competitive compensation and an extraordinary benefits package, including health, dental, and vision insurance, 401K with company matching, flexible spending accounts, paid...


  • Arlington, Virginia, United States Amazon Full time

    About the RoleWe are seeking a highly skilled Cloud Security Solutions Engineer to join our team at Amazon. As a key member of our security team, you will be responsible for designing and implementing secure cloud-based solutions to protect our customers' data and applications.Your primary focus will be on developing and maintaining secure cloud...


  • Arlington, Virginia, United States Mastercard, Inc. Full time

    Job SummaryMastercard, Inc. is seeking a highly skilled Information Security Engineering II to join our Security Engineering team in Arlington, Va. As a key member of our team, you will be responsible for providing design and architecture advice to internal teams on how to securely develop and build applications and supporting systems.Key...


  • Arlington, United States Cherokee Federal Full time

    Sr. Cyber Security Engineer Assist in oversight and the security posture of the Bureau's OpenNet/ClassNet/Cloud environments, develop the overall security strategy and assist in development of the information system security policy for the Bureau. In this role, you'll monitor security systems, detect and investigate threats, and enhance security solutions....


  • Arlington, Virginia, United States KeenLogic Full time

    Job Title: Cloud Security EngineerWe are seeking a highly skilled Cloud Security Engineer to join our team at KeenLogic. As a Cloud Security Engineer, you will play a critical role in designing, implementing, and maintaining security measures to protect our cloud-based infrastructure and data.Key Responsibilities:Design and implement secure cloud...


  • Arlington, United States Washington Headquarters Services Full time

    Position Description Defense Digital Service - Cyber Security Engineer Come do impactful work with a brilliant, motivated team. Position Description This position is being recruited as a GS-15 Cyber Security Engineer in the Excepted service. We are looking for a great hands-on engineer who can also help with securing and enhancing our resilient cyber...

  • Sr. Security Engineer

    2 weeks ago


    Arlington, United States American Association of Motor Vehicles Full time

    Position Summary: AAMVA's Security team is looking for a highly motivated, self-starter, certified senior security engineer, who enjoys the challenge of working in a fast pace environment. The engineer will be primarily tasked with the implementation of security in the Microsoft Azure cloud using code and automation. The engineer will join a team of skilled...