Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Application Security Engineer

CertiPath

Want to energize your career?

At CertiPath, you'll join a fast-moving team with a meaningful mission, delivering high-assurance identity and trust solutions that matter. We are seeking a Senior Application Security (AppSec) Engineer to strengthen our security posture across our TrustSuite products, driving positive customer impact and rapidly innovating and optimizing application security across traditional and cutting-edge AI-enabled environments.

This high-impact role blends advanced offensive security (penetration testing) with adversarial emulation, threat modeling, and AI security expertise. You will serve as a senior technical SME, proactively identifying and exploiting vulnerabilities in applications before adversaries can. You will use both best-of-breed AppSec tooling and frontier AI systems, while defining and driving the strategic direction of application security across our scaling, mission-driven organization. This is not a people-management role, but a deeply technical, hands-on position for senior engineers who love offensive security and advanced penetration testing while influencing application security architecture and strategy at the highest level.

This role is approximately 60-70% hands-on with AI-enabled advanced penetration testing, 20% strategic planning and reporting, and 10% attack surface mitigation and threat modeling. You will operate autonomously, drive solutions, and think outside the box in a high-touch, high-consciousness environment with senior stakeholder support.


Location : This role is primarily hybrid, based at our Reston, VA (HQ), with an average of 2 office days per week.

I've never heard of CertiPath. What do you do?


CertiPath is a trusted leader in high-assurance digital identity and access management solutions. Since 2004, we have helped commercial organizations and government agencies modernize how people securely access facilities, networks, and critical resources. With the stability of an established company and the agility of a growing technology business, we foster a culture of innovation, collaboration, and continuous growth. Our mission is simple: enable secure, trusted access in an increasingly connected world.

What will my responsibilities include as Senior AppSec Engineer at CertiPath?

  • Perform advanced penetration testing and security assessments on AI-enabled applications and traditional systems, with heavy focus on breaking code rather than writing it.
  • Lead application security strategy, including defining direction, applying and enhancing enterprise security standards, and conducting threat modeling on iterative designs and COTS applications.
  • Critically evaluate system and solution attack surfaces, architectures, and implementations for vulnerabilities.
  • Automate and enhance offensive security testing practices with a focus on Kubernetes environments, Linux systems, and AI-enabled CI/CD pipelines.
  • Deliver strategic reporting and risk assessments to leadership, as well as actionable recommendations to engineering teams.
  • Design and execute creative attacks with an adversarial lens to uncover vulnerabilities, injection attacks, supply chain and model poisoning, data leakage, and AI-specific risks.
  • Collaborate cross-functionally to embed strong application security practices while staying current with emerging technology, cloud, and AI threats.
  • Support go-to-market efforts for highly regulated environments.
What qualifications do you look for?
  • U.S. citizenship and the ability to obtain a government clearance.
  • 7+ years of experience in hands-on application security and penetration testing with recent focus on AI-enabled testing.
  • Senior-level offensive security background with proven comfort breaking applications through advanced penetration testing.
  • Certifications such as OSCP, GPEN, or similar advanced certifications (one or more).
  • Strong expertise in OWASP Top 10 (Web and LLM variants), enterprise security standards, ISO 27001 series, and FedRAMP.
  • Hands-on experience with commercial AppSec tools, including the Kali Linux and Burp Suite Professional tool kits.
  • Experience with Kubernetes, Python, cloud security, and memory-safe language best practices.
  • Demonstrated experience AI-enabled testing tools and technologies, using frontier AI capabilities (e.g. Anthropic Claude, xAI Grok).
  • Proven ability to define and drive high-level application security strategy and plans.
  • Excellent communication skills for reporting findings and influencing outcomes.
We're extra impressed by folks who have:
  • Experience performing security testing and assessments across multiple products and platforms (rather than a single product or system)
  • Prior experience testing in government or regulated environments
What kind of benefits does CertiPath offer?

At CertiPath, we value trust, flexibility, and investing in our people. We are committed to creating an environment where employees can do meaningful work, continue to grow, and enjoy life outside of work.
  • Competitive medical, dental, and vision coverage (including domestic partner coverage).
  • Health Savings Account (HSA) options, 401(k) with a generous company match, company-paid Life, AD&D, Short-Term, and Long-Term Disability.
  • Unlimited PTO, seven company holidays, & a company-wide week-long break at the end of each year, flexible working hours that support work-life balance
  • LifeMart employee discount program
  • Professional development opportunities and ongoing learning support
CertiPath is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran, or any other status protected by applicable federal, state, local, or international law.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Application Security Engineer in Reston, VA vacancy
  •  ...Ernst & Young Oman is seeking an Application Security Engineer to enhance security tools and processes. Your role includes managing application security platforms, automating processes, and ensuring the adoption of secure coding practices. Collaborate with cybersecurity... 
    Senior

    Ernst & Young Oman

    McLean, VA
    4 days ago
  • $160k

     ...VISA CANDIDATES FOR THIS ROLE! Required Qualifications: Minimum of 5 years experience working "hands-on" in application security engineering Hands-on experience with Fortify, Veracode, Tenable, Black Duck, or similar platforms Hands-on experience with... 
    Suggested
    2 days per week

    Griffin Global Systems Inc

    Herndon, VA
    20 days ago
  •  ...TrellisWare Technologies in Reston, Virginia is seeking a Field Applications Engineer – Special Programs to serve as a primary technical contact for customers. This role involves providing technical expertise, supporting new business capture, and enhancing customer relationships... 
    Senior

    TrellisWare Technologies

    Reston, VA
    8 hours ago
  •  ...Design, develop, and optimize software applications that bridge technical teams and end-users...  ...scalable API architecture. Collaborate with engineers, stakeholders, and team members to...  ..., SOAP/XML, SFTP), with strong focus on secure authentication/authorization, robust... 
    Senior
    Internship
    Monday to Friday

    Navy Federal Credit Union

    Vienna, VA
    3 days ago
  •  ...Position Summary CRFS seeks a versatile and proactive Senior Field Applications Engineer (FAE) to serve as the primary technical bridge between our...  ...or defense contracting environments is highly desirable. Security Clearance: Active or prior Secret/TS clearance preferred... 
    Senior
    Work at office
    Remote work

    Motorola Solutions

    Reston, VA
    4 days ago
  •  ...A cybersecurity firm is seeking a highly skilled Cyber Research Engineer with expertise in offensive cyber operations and low-level software engineering. The successful candidate will lead the design, development, and deployment of advanced cyber capabilities. Key responsibilities... 
    Senior

    Amatriot Group, LLC

    Reston, VA
    3 days ago
  •  ...Application Security Engineer Vector is seeking an Application Security Engineer supporting DIA-NMEC under our 10-year DOMEX Technology Platform (DTP) contract. We are seeking a talented Mid-Level Application Security Engineer to join our dynamic team and contribute... 
    Contract work
    Remote work
    Flexible hours

    Vector Talent Resources

    McLean, VA
    3 days ago
  •  ...A leading financial institution is seeking a Remote Engineer III for Hogan Applications, responsible for technical analysis, design, and implementation within a critical banking environment. Candidates should have extensive experience in Hogan architecture and application... 
    Senior
    Remote work

    PENFED Credit Union

    McLean, VA
    4 days ago
  •  ...Steely, located in Reston, Virginia, is hiring a Reverse Engineer to design and develop software while analyzing system vulnerabilities...  ...in debugging embedded systems. The role requires maintaining a security clearance, and offers benefits including a 401(k) match, health... 
    Flexible hours

    Steely DDS

    Reston, VA
    3 days ago
  • $163.8k - $245.8k

     ...modern technology, responsible AI, and secure infrastructure to some of the most complex...  ...with Product Managers and QA Engineers on functional design and analysis of requirements...  ...clearance at the TS/SCI w/CI Poly level. Applicants must have the ability to obtain and maintain... 
    Senior
    Work experience placement
    Work at office
    Remote work
    Home office
    Flexible hours

    Workday

    Reston, VA
    3 days ago
  •  ...We have open role for " Application Support Engineer" for one our direct clients and it's W2 requirement. Interested candidates please share your resume to ****@*****.*** Location: Hybrid, McLean, VA Duration: Full-time Experience: 10+ years Required Skills... 
    Senior
    Full time

    Zillion Technologies

    McLean, VA
    4 days ago
  • $168k - $252k

     ...months, not years. ABOUT THE JOB We're seeking a Product Security Engineer focused on the hardware side, not the digital logic or...  ...paths towards the future of defense technology. All qualified applicants will be treated with respect and receive equal consideration... 
    Senior
    Full time
    Work experience placement
    Local area
    Relocation package

    Anduril Industries

    Reston, VA
    more than 2 months ago
  •  ...Embedded Systems Security Engineer Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both....  ...equivalent combination of related education and work experience. Applicants selected for this position will be subject to a US... 
    Senior
    Work experience placement
    Local area
    Immediate start

    MITRE

    McLean, VA
    4 days ago
  • $100k - $110k

     ...Software EngineeringHerndon,VirginiaUnited States Salary: USD 100000.00 - 110000.00 Annually Our Application Engineers work within a team, collaborating with other developers and analysts to design and develop business applications that support mission-critical customer... 

    Tyler Technologies

    Herndon, VA
    19 hours ago
  • $66.59k - $110k

     ...Application Engineer Apply Online Tyler Technologies is seeking an application engineer to design, develop, and support high-performance web-based applications using our low-code platform for business process management. In this role, you'll work closely with... 
    Work experience placement
    Local area

    Tyler Technologies

    Herndon, VA
    4 days ago
  • ## Job Description# Sr Applications Engineer**Location:** Falls Church, Virginia (Remote) **Employment Type:** Contract to Perm* Implement and...  ...Active Directory Services and manage application security, including Single-Sign-On and Certificate Management.* Ensure... 
    Senior
    Permanent employment
    Contract work
    Remote work

    Apex Systems

    Falls Church, VA
    2 days ago
  • $131k - $271.6k

     ...SAP Belgium NV/SA is seeking a cybersecurity professional in Reston, Virginia, to improve security compliance and FedRAMP operations. This role focuses on automation, analytics, and controls monitoring, enhancing operational efficiency, accuracy, and scalability of federal... 
    Senior

    SAP Belgium NV/SA

    Reston, VA
    4 days ago
  •  ...Resources ****@*****.*** Position Software/Applications Architect/Developer/Engineer Location Reston, VA Job Id 101 Openings 1 Description...  ...detailed specifications; contribute to development of security authorization documentation; represent program in... 
    Contract work
    For contractors
    Work at office
    Flexible hours

    CSI

    Reston, VA
    4 days ago
  •  ...Dormont Manufacturing Co is seeking a Senior PCB Design Engineer in Reston, Virginia. This role involves full cycle PCB design, working closely with engineers and maintaining a U.S. Secret security clearance. The ideal candidate will have over 5 years of experience in... 
    Senior

    Dormont Manufacturing Company

    Reston, VA
    2 days ago
  • $172k - $225.7k

     ...platform, Snowflake requires a secure-by-design foundation to...  ...The Security Applied Field Engineering (AFE) organization is at the...  ...than a bottleneck. As a Senior Security Architect on the Applied...  ..., and Infrastructure for applications built on Snowflake. AI... 
    Senior
    Flexible hours

    Snowflake Computing

    McLean, VA
    4 days ago
  •  ...boundaries are being pushed, you belong at TrellisWare. Field Applications Engineer As a primary technical point of contact for TrellisWare’s...  ...and supports sales and business development leads in securing new business, troubleshooting products, performing demonstrations... 
    Work experience placement
    Work at office
    Remote work
    Worldwide

    Jobr

    Reston, VA
    3 days ago
  •  ...Field Applications Engineer – Special Programs Reston, Virginia TrellisWare launched in 2000 with an innovative culture striving to push technological...  ...support to sales and business development leads in securing new business, field troubleshooting of products and... 
    Work experience placement
    Work at office
    Remote work
    Worldwide

    TrellisWare Technologies

    Reston, VA
    8 hours ago
  •  ...Senior Security Operations Center (SOC) Engineer Overview ITDC is seeking a Senior SOC Engineer to lead detection engineering, SIEM/EDR operations, threat hunting, and SOC tooling for a federal cybersecurity program. Responsibilities Engineer SIEM (Splunk preferred) detection... 
    Senior

    IT Data Consulting LLC

    Reston, VA
    3 days ago
  •  ...Overview Acuity, Inc. seeks an Application Engineer (Databricks Apps) to design, develop, and support data‑driven applications that combine...  ...applications that expose analytics, workflows, and data products in a secure and scalable manner. The Application Engineer translates... 

    Acuity

    Reston, VA
    3 days ago
  •  ...Bridge Core, located in Herndon, Virginia, is seeking a SME Network Engineer with a minimum of 16 years of experience. The role involves...  ...firewall solutions, monitoring network traffic, and ensuring security compliance. Candidates should possess expertise in Cisco and Palo... 
    Senior

    Bridge Core

    Herndon, VA
    2 days ago
  • $131k - $271.6k

     ...Senior Security Compliance Automation Engineer - Federal Role Overview Help transform how SAP Concur manages security compliance and FedRAMP operations...  ...other factors. Equal Employment Opportunity Qualified applicants will receive consideration for employment without regard... 
    Senior

    SAP SE

    Reston, VA
    1 day ago
  • $65 - $70 per hour

     ...Boeing Future of Flight is seeking a Contract DevOps Engineer in Herndon, VA to support our Mission Operations team. The role involves...  ..., scripting languages, and AWS, along with a valid TS/SCI U.S. Security Clearance. The position offers a pay range from $65 to $70 per... 
    Senior
    Hourly pay
    Contract work

    Boeing Future of Flight

    Herndon, VA
    3 days ago
  • $131k - $271.6k

     ...Help transform how SAP Concur manages security compliance and FedRAMP operations through...  ...combines security compliance, controls engineering, and automation to improve the...  ...Equal Employment Opportunity Qualified applicants will receive consideration for employment... 
    Senior

    SAP Belgium NV/SA

    Reston, VA
    3 days ago
  •  ...that enable military operators, national security agencies, spectrum regulators, and...  ...CRFS is seeking a Junior Field Applications Engineer who will report to the Manager of the...  ...The successful candidate will support senior engineers in technical customer engagement... 
    Permanent employment
    Work at office
    Local area
    Relocation
    Flexible hours

    Motorola Solutions

    Reston, VA
    3 days ago
  •  ...A technology services provider in Reston, VA is seeking an Application Support Engineer for on-site application support. The role involves diagnosing and resolving technical issues while ensuring customer satisfaction. Ideal candidates will have relevant experience or... 

    Apptium Technologies

    Reston, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Application Security Engineer. Be the first to apply!