Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

$140k - $160k

Edgewaterit

Overview Edgewater is currently seeking an Application Security Engineer who will be a hands‑on subject matter expert in Microsoft Azure cloud technologies, application security, security architectures, security tools, and methodologies. The Application Security Engineer will support our federal customer in Washington DC. This is a hands‑on technical role that will provide the right candidate with an exciting opportunity to develop the federal customer’s application security program, working with developers and the organization to meet the strategic security goals of the agency. This is a remote position but requires the candidate to work at the federal site in Washington DC at least two days a month so candidates local to the Washington, DC area strongly preferred. Due to the contract and nature of the work, US Citizenship is required to obtain a Department of Energy security clearance. Responsibilities Drive the strategic maturation of the agency’s Application Security (AppSec) program by defining security standards, scaling automation, and embedding secure development practices across all product lifecycles. Perform SAST assessments using Veracode and GitHub Advanced Security, identifying code‑level vulnerabilities and providing remediation guidance. Conduct and analyze DAST scans, including configuration, execution, and triage of results. Evaluate and prioritize vulnerabilities using industry frameworks such as CVSS, CWE, OWASP Top 10, WASC, and SANS Top 25. Collaborate with development, DevOps, and security teams to integrate security controls into CI/CD pipelines and the broader SDLC. Provide expert advice on secure coding principles and assist developers in resolving security findings. Troubleshoot application and connectivity issues in Linux‑based environments. Contribute to the design and implementation of enterprise‑wide application security controls. Ensure alignment with federal security and compliance standards, including NIST 800‑53, FIPS, and FedRAMP. Maintain awareness of emerging threats, vulnerabilities, and best practices in application security. Qualifications Experience supporting SAST/DAST environments using Veracode. Experience with SCA tools and vulnerability remediation. Experience leveraging CI/CD deployment methodologies and infrastructure as code (IaC). Experience writing playbooks and scripts for automation tools including Terraform, Ansible for IaC. Demonstrate proficiency with a scripting or coding language, preferably Python. Proficiency in automation and scripting, such as PowerShell, Python, Bash, and Terraform. Ability to discuss Information Security concepts such as defense in depth and zero trust. Demonstrate ability to communicate ideas both verbally and in writing to management, business and IT stakeholders, and technical resources in language that is appropriate for each group. Ability to work collaboratively with developers across multiple departments. Ability to work effectively in a fast‑paced, project‑oriented environment. Ability to analyze and prioritize vulnerabilities based on risk. Strong technical acumen, communication, and influence skills. Working knowledge of system hardening (CIS, STIGs regulatory compliance). Experience working with and supporting Unix/Linux and Windows systems. Experience with SCA tools and vulnerability remediation in containers. Container orchestration and container security experience. 3+ years in application security supporting SAST, DAST, and SCA environments. 3+ years of experience designing and implementing application security controls. 3+ years of experience working in Linux‑based environments, including troubleshooting application and connectivity issues. Knowledge of federal security and compliance standards (NIST 800‑53, FIPS, FedRAMP). Preferred Qualifications: Experience in securing Azure cloud infrastructure (i.e., inspection, logging, WAF, VM). Experience with Azure DevOps. Practical implementation and architectural experience in encryption techniques, including data at rest and in transit. Prior experience as a software developer is highly preferred. Requirements: Bachelor’s degree in computer science or related fields. Minimum of 8 years of experience in Information Security or related fields. CISSP or equivalent (CompTIA Security+, CEH, or DoD equivalent). Preferred Certifications: ISC2 Certified Information Systems Security Professional (CISSP). ISC2 Certified Secure Software Lifecycle Professional (CSSLP). GIAC Web Application Penetration Tester (GWAPT). Microsoft Azure Security Engineer (AZ‑500). HashiCorp Terraform Associate (Infrastructure as Code). Salary: $140,000 - $160,000 About Us Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000‑1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2025. It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law. #J-18808-Ljbffr Edgewaterit

Vacancy posted 16 hours ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in Washington DC vacancy
  •  ...SourcePro Search is conducting a search for an experienced Senior Application Security Engineer in Washington, DC. The ideal candidate will serve as subject matter expert integrating secure design for applications and services within the system development lifecycle. This... 
    Suggested

    SourcePro Search

    Washington DC
    3 days ago
  •  ...Application Security Engineer I Responsible for supporting application security through security testing, vulnerability management, secure design collaboration, automation support, and incident response participation, contributing to secure development practices across... 
    Suggested

    Bloomberg Industry Group

    Arlington, VA
    4 days ago
  •  ...Community Service and Employee Engagement events are atop our calendar events! MBL Technologies is seeking an experienced Application Security Engineer to support the security and integrity of enterprise applications within a federal environment. This role will focus on... 
    Suggested
    Full time
    Remote work

    MBL Technologies

    Washington DC
    5 days ago
  •  ...Application Security Engineer We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted environments, with open source libraries embedded inside thousands... 
    Suggested
    Flexible hours

    Brain Trust Inc

    Washington DC
    5 days ago
  •  ...crucial skill that they are seeking expertise in here is securing AI systems. The hiring manager needs someone who can enhance...  ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure... 
    Suggested
    Remote work

    RIT Solutions, Inc.

    Washington DC
    a month ago
  •  ...Application Security Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise... 

    Comtech LLC

    Washington DC
    1 day ago
  • $62k - $141k

    Application Security Engineer Work together with the client and application community to maintain a resilient security posture for highly visible applications. Remediate application security flaws in conjunction with the application security team. Lead security discussions... 
    Local area

    Booz Allen Hamilton

    Washington DC
    4 days ago
  • $110k

    Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data... 
    Full time

    Ryder System, Inc.

    Washington DC
    5 days ago
  • $210k - $230k

     ...report into the Director, Information Security and build relationships with technology...  ...payment systems to identify and remediate application vulnerabilities. This individual...  ...increase our AppSec posture and enable our engineers to code safely. Innovate with AI and deliver... 
    Full time
    Work at office
    Flexible hours

    Upside

    Washington DC
    2 days ago
  •  ...A leading security solutions firm is seeking a Senior Application Security Engineer in Washington, DC. The ideal candidate will integrate secure design in application development and collaborate on security solutions. They should have extensive experience in cybersecurity... 

    SourcePro Search

    Washington DC
    3 days ago
  • Ernst & Young Oman seeks an Application Security Engineer to enhance security tools and manage development platforms. You will collaborate with teams to integrate security processes and automate deployments while ensuring optimal security measures throughout the software... 

    Ernst & Young Oman

    Washington DC
    2 days ago
  • Ernst & Young Oman is hiring an Application Security Engineer in Arlington, Virginia. The role involves managing application development platforms and optimizing security tools while ensuring operational efficiency through automation. Ideal candidates should have a relevant... 
    Flexible hours

    Ernst & Young Oman

    Arlington, VA
    2 days ago
  • $210k - $230k

    Upside is seeking an experienced Security Engineer to identify and mitigate application vulnerabilities. This role requires expertise in application security and a deep understanding of AWS architecture. Responsibilities include innovating security solutions and conducting... 
    Work at office

    Upside

    Washington DC
    2 days ago
  • $100k - $155k

    Overview As an Application Security Engineer , you will provide technical expertise and solutions to remediate persistent and challenging portfolio-wide vulnerabilities. We’re looking for someone who has passion for IT, resourceful problem‑solving abilities, and a desire... 

    Steampunk

    Mc Lean, VA
    5 days ago
  • $100k - $155k

    Steampunk is seeking an Application Security Engineer in McLean, Virginia. This role involves providing expertise to remediate vulnerabilities and uphold security practices across enterprise applications. Ideal candidates need to have experience in application security... 

    Steampunk

    Mc Lean, VA
    4 days ago
  • $77.5k - $140.9k

     ...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Arlington, VA
    2 days ago
  • SourcePro Search is seeking a Mid-Level Application Engineer - Cyber Security Analytics Engineer in Washington, DC. The ideal candidate will develop and manage software tools to support Enterprise Management, focusing on software specifications, program design, and documentation... 

    SourcePro Search

    Washington DC
    2 days ago
  • We are conducting a search for a Mid‑Level Application Engineer - Cyber Security Analytics Engineer. We are seeking an ideal candidate who can develop and manage software tools to support Enterprise Management. This role involves formulating and defining specifications... 

    SourcePro Search

    Washington DC
    2 days ago
  • $105k - $130k

     ...government and nonprofit organizations and individuals. Applications Engineer The Applications Engineer is a highly skilled technical position...  ...project work with minimal supervision, ensuring stable, secure, and scalable application solutions aligned with business... 
    Temporary work
    Work at office
    Remote work

    Katten Muchin Rosenman LLP

    Washington DC
    4 days ago
  •  ...A technology company is looking for an Application Engineer in Washington, DC. The role involves developing and maintaining software applications, collaborating with engineering teams, and staying updated on software trends. This position also includes developing quantum... 

    Beyond SOF

    Washington DC
    3 days ago
  •  ...Role Summary The Application Engineer is responsible for developing and maintaining software applications to support the company's business operations. Main Responsibilities and Duties Develop and maintain software applications. Collaborate with the engineering team to... 

    Beyond SOF

    Washington DC
    3 days ago
  • $107.63k

     ...Posting Title Application Engineer II Overview Application Engineer II in Washington, D.C. Application development, integration, maintenance...  .... Participate in new functionality development to ensure secure, elegant and low maintenance date designs are adopted. Email... 

    Catholic University

    Washington DC
    1 day ago
  • $133k - $166k

     ...What You'll Do We are seeking a Senior Application Engineer I to lead the advanced configuration, integration, and optimization...  ...vendors, and internal stakeholders to ensure applications are secure, scalable, and fully leveraged to meet complex business needs... 
    Worldwide
    Flexible hours

    Kirkland & Ellis

    Washington DC
    2 days ago
  • $150k - $160k

     ...Suvi is seeking an Applications Engineer III in Washington, DC. The applications developer will design, develop and maintain the FBI's Electronic...  ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee , you will be... 
    Full time
    Part time
    For contractors
    Remote work

    Akima

    Washington DC
    5 days ago
  • $150k - $160k

     ...Suvi is seeking an Applications Engineer III in Washington, DC. The applications developer will design, develop and maintain the FBI's Electronic...  ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee , you will be... 
    Full time
    Part time
    For contractors
    Local area
    Remote work

    NANA Regional Corp

    Washington DC
    4 days ago
  • $118.72k - $190.04k

     ...Fortune 500 companies. The Red Hat Product Security Compliance team is seeking a knowledgeable and proactive Product Security Engineer to achieve our security and compliance...  ...not limited to job location, experience, applicable skills and training, external market... 
    Permanent employment
    Full time
    Contract work
    Work experience placement
    Work at office
    Remote work
    Work from home
    Worldwide
    Flexible hours

    Red Hat

    Washington DC
    2 days ago
  •  ...Product Security Engineer Gecko Robotics is helping the world's most important organizations ensure the availability, reliability, and...  ...We are building the Product Security team to build and scale application security at Gecko. As a Product Security Engineer you will play... 
    Work at office
    Local area
    Work from home
    Flexible hours

    Gecko Robotics Inc

    Washington DC
    1 day ago
  •  ...Senior OCI Application Engineer (Level III) Tharseo IT is seeking a senior OCI Application Engineer (Level III) to support a federal program...  ...connectivity issues that may involve network security group (NSG) rules and related controls. Supervise software... 
    For subcontractor
    Remote work

    InstantServe LLC

    Washington DC
    5 days ago
  • $108.6k - $181k

     ...Job Description Summary About the Role: We're seeking a highly skilled and experienced Senior Application Engineer with a strong background in technical solution design, system integration, and precise cost estimation for large-scale EPC (Engineering, Procurement... 
    Contract work
    Remote work
    Relocation package

    GE Vernova

    Washington DC
    4 days ago
  • $140k - $170k

     ...Application Engineer - US New York City; Washington, D.C. Gibson Dunn is a leading global law firm, advising clients on significant transactions...  ...enterprise applications—ensuring reliability, performance, security, and continuous improvement. This role involves... 
    Contract work
    Work at office
    Local area
    Flexible hours

    Gibson Dunn

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!