Application Security Engineer
$140k - $160kEdgewaterit
Overview Edgewater is currently seeking an Application Security Engineer who will be a hands‑on subject matter expert in Microsoft Azure cloud technologies, application security, security architectures, security tools, and methodologies. The Application Security Engineer will support our federal customer in Washington DC. This is a hands‑on technical role that will provide the right candidate with an exciting opportunity to develop the federal customer’s application security program, working with developers and the organization to meet the strategic security goals of the agency. This is a remote position but requires the candidate to work at the federal site in Washington DC at least two days a month so candidates local to the Washington, DC area strongly preferred. Due to the contract and nature of the work, US Citizenship is required to obtain a Department of Energy security clearance. Responsibilities Drive the strategic maturation of the agency’s Application Security (AppSec) program by defining security standards, scaling automation, and embedding secure development practices across all product lifecycles. Perform SAST assessments using Veracode and GitHub Advanced Security, identifying code‑level vulnerabilities and providing remediation guidance. Conduct and analyze DAST scans, including configuration, execution, and triage of results. Evaluate and prioritize vulnerabilities using industry frameworks such as CVSS, CWE, OWASP Top 10, WASC, and SANS Top 25. Collaborate with development, DevOps, and security teams to integrate security controls into CI/CD pipelines and the broader SDLC. Provide expert advice on secure coding principles and assist developers in resolving security findings. Troubleshoot application and connectivity issues in Linux‑based environments. Contribute to the design and implementation of enterprise‑wide application security controls. Ensure alignment with federal security and compliance standards, including NIST 800‑53, FIPS, and FedRAMP. Maintain awareness of emerging threats, vulnerabilities, and best practices in application security. Qualifications Experience supporting SAST/DAST environments using Veracode. Experience with SCA tools and vulnerability remediation. Experience leveraging CI/CD deployment methodologies and infrastructure as code (IaC). Experience writing playbooks and scripts for automation tools including Terraform, Ansible for IaC. Demonstrate proficiency with a scripting or coding language, preferably Python. Proficiency in automation and scripting, such as PowerShell, Python, Bash, and Terraform. Ability to discuss Information Security concepts such as defense in depth and zero trust. Demonstrate ability to communicate ideas both verbally and in writing to management, business and IT stakeholders, and technical resources in language that is appropriate for each group. Ability to work collaboratively with developers across multiple departments. Ability to work effectively in a fast‑paced, project‑oriented environment. Ability to analyze and prioritize vulnerabilities based on risk. Strong technical acumen, communication, and influence skills. Working knowledge of system hardening (CIS, STIGs regulatory compliance). Experience working with and supporting Unix/Linux and Windows systems. Experience with SCA tools and vulnerability remediation in containers. Container orchestration and container security experience. 3+ years in application security supporting SAST, DAST, and SCA environments. 3+ years of experience designing and implementing application security controls. 3+ years of experience working in Linux‑based environments, including troubleshooting application and connectivity issues. Knowledge of federal security and compliance standards (NIST 800‑53, FIPS, FedRAMP). Preferred Qualifications: Experience in securing Azure cloud infrastructure (i.e., inspection, logging, WAF, VM). Experience with Azure DevOps. Practical implementation and architectural experience in encryption techniques, including data at rest and in transit. Prior experience as a software developer is highly preferred. Requirements: Bachelor’s degree in computer science or related fields. Minimum of 8 years of experience in Information Security or related fields. CISSP or equivalent (CompTIA Security+, CEH, or DoD equivalent). Preferred Certifications: ISC2 Certified Information Systems Security Professional (CISSP). ISC2 Certified Secure Software Lifecycle Professional (CSSLP). GIAC Web Application Penetration Tester (GWAPT). Microsoft Azure Security Engineer (AZ‑500). HashiCorp Terraform Associate (Infrastructure as Code). Salary: $140,000 - $160,000 About Us Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000‑1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2025. It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law. #J-18808-Ljbffr Edgewaterit
- ...SourcePro Search is conducting a search for an experienced Senior Application Security Engineer in Washington, DC. The ideal candidate will serve as subject matter expert integrating secure design for applications and services within the system development lifecycle. This...Suggested
- ...Application Security Engineer I Responsible for supporting application security through security testing, vulnerability management, secure design collaboration, automation support, and incident response participation, contributing to secure development practices across...Suggested
- ...Community Service and Employee Engagement events are atop our calendar events! MBL Technologies is seeking an experienced Application Security Engineer to support the security and integrity of enterprise applications within a federal environment. This role will focus on...SuggestedFull timeRemote work
- ...Application Security Engineer We're looking for an Application Security Engineer who lives in the code. Braintrust is a real-time, high-availability data platform that runs in both SaaS and self-hosted environments, with open source libraries embedded inside thousands...SuggestedFlexible hours
- ...crucial skill that they are seeking expertise in here is securing AI systems. The hiring manager needs someone who can enhance... ...AWS cloud security architecture and services Cloud application security engineering Docker and Kubernetes security Infrastructure...SuggestedRemote work
- ...Application Security Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise...
$62k - $141k
Application Security Engineer Work together with the client and application community to maintain a resilient security posture for highly visible applications. Remediate application security flaws in conjunction with the application security team. Lead security discussions...Local area$110k
Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data...Full time$210k - $230k
...report into the Director, Information Security and build relationships with technology... ...payment systems to identify and remediate application vulnerabilities. This individual... ...increase our AppSec posture and enable our engineers to code safely. Innovate with AI and deliver...Full timeWork at officeFlexible hours- ...A leading security solutions firm is seeking a Senior Application Security Engineer in Washington, DC. The ideal candidate will integrate secure design in application development and collaborate on security solutions. They should have extensive experience in cybersecurity...
- Ernst & Young Oman seeks an Application Security Engineer to enhance security tools and manage development platforms. You will collaborate with teams to integrate security processes and automate deployments while ensuring optimal security measures throughout the software...
- Ernst & Young Oman is hiring an Application Security Engineer in Arlington, Virginia. The role involves managing application development platforms and optimizing security tools while ensuring operational efficiency through automation. Ideal candidates should have a relevant...Flexible hours
$210k - $230k
Upside is seeking an experienced Security Engineer to identify and mitigate application vulnerabilities. This role requires expertise in application security and a deep understanding of AWS architecture. Responsibilities include innovating security solutions and conducting...Work at office$100k - $155k
Overview As an Application Security Engineer , you will provide technical expertise and solutions to remediate persistent and challenging portfolio-wide vulnerabilities. We’re looking for someone who has passion for IT, resourceful problem‑solving abilities, and a desire...$100k - $155k
Steampunk is seeking an Application Security Engineer in McLean, Virginia. This role involves providing expertise to remediate vulnerabilities and uphold security practices across enterprise applications. Ideal candidates need to have experience in application security...$77.5k - $140.9k
...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to...Summer holidayFlexible hours- SourcePro Search is seeking a Mid-Level Application Engineer - Cyber Security Analytics Engineer in Washington, DC. The ideal candidate will develop and manage software tools to support Enterprise Management, focusing on software specifications, program design, and documentation...
- We are conducting a search for a Mid‑Level Application Engineer - Cyber Security Analytics Engineer. We are seeking an ideal candidate who can develop and manage software tools to support Enterprise Management. This role involves formulating and defining specifications...
$105k - $130k
...government and nonprofit organizations and individuals. Applications Engineer The Applications Engineer is a highly skilled technical position... ...project work with minimal supervision, ensuring stable, secure, and scalable application solutions aligned with business...Temporary workWork at officeRemote work- ...A technology company is looking for an Application Engineer in Washington, DC. The role involves developing and maintaining software applications, collaborating with engineering teams, and staying updated on software trends. This position also includes developing quantum...
- ...Role Summary The Application Engineer is responsible for developing and maintaining software applications to support the company's business operations. Main Responsibilities and Duties Develop and maintain software applications. Collaborate with the engineering team to...
$107.63k
...Posting Title Application Engineer II Overview Application Engineer II in Washington, D.C. Application development, integration, maintenance... .... Participate in new functionality development to ensure secure, elegant and low maintenance date designs are adopted. Email...$133k - $166k
...What You'll Do We are seeking a Senior Application Engineer I to lead the advanced configuration, integration, and optimization... ...vendors, and internal stakeholders to ensure applications are secure, scalable, and fully leveraged to meet complex business needs...WorldwideFlexible hours$150k - $160k
...Suvi is seeking an Applications Engineer III in Washington, DC. The applications developer will design, develop and maintain the FBI's Electronic... ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee , you will be...Full timePart timeFor contractorsRemote work$150k - $160k
...Suvi is seeking an Applications Engineer III in Washington, DC. The applications developer will design, develop and maintain the FBI's Electronic... ...technologies that accomplish customers' missions safely, securely, and efficiently. As a Suvi employee , you will be...Full timePart timeFor contractorsLocal areaRemote work$118.72k - $190.04k
...Fortune 500 companies. The Red Hat Product Security Compliance team is seeking a knowledgeable and proactive Product Security Engineer to achieve our security and compliance... ...not limited to job location, experience, applicable skills and training, external market...Permanent employmentFull timeContract workWork experience placementWork at officeRemote workWork from homeWorldwideFlexible hours- ...Product Security Engineer Gecko Robotics is helping the world's most important organizations ensure the availability, reliability, and... ...We are building the Product Security team to build and scale application security at Gecko. As a Product Security Engineer you will play...Work at officeLocal areaWork from homeFlexible hours
- ...Senior OCI Application Engineer (Level III) Tharseo IT is seeking a senior OCI Application Engineer (Level III) to support a federal program... ...connectivity issues that may involve network security group (NSG) rules and related controls. Supervise software...For subcontractorRemote work
$108.6k - $181k
...Job Description Summary About the Role: We're seeking a highly skilled and experienced Senior Application Engineer with a strong background in technical solution design, system integration, and precise cost estimation for large-scale EPC (Engineering, Procurement...Contract workRemote workRelocation package$140k - $170k
...Application Engineer - US New York City; Washington, D.C. Gibson Dunn is a leading global law firm, advising clients on significant transactions... ...enterprise applications—ensuring reliability, performance, security, and continuous improvement. This role involves...Contract workWork at officeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- application system engineer Washington DC
- junior application support engineer Washington DC
- hydraulic application engineer Washington DC
- senior application security engineer Washington DC
- application performance engineer Washington DC
- application engineer Washington DC
- application engineering manager Washington DC
- network applications engineer Washington DC
- cnc applications engineer Washington DC
- field applications engineer Washington DC


