Application Security Engineer
$115k - $145kVeilant
We were early to the fight against Ubiquitous Technical Surveillance, and we’ve been pushing the edge ever since.
Our mission is to help government and enterprise organizations understand and manage commercial data risks, shape their digital signatures, and operate with confidence in an increasingly complex information landscape. We build and integrate advanced, tech-forward solutions to problems our customers often don’t know they have – until it matters most.
We move fast, think critically, and deliver where it counts.
What’s in it for you?
We work hard and do fun things.
You’ll work on high-impact, technically challenging problems alongside a team that values teamwork over competition. Veilant offers a solid work-life balance and flexible remote work options. At Veilant, you’ll work with the most talented software developers, systems engineers, and subject matter experts, building tools and systems that make a real difference.
Job Description
Veilant is looking for an Application Security Engineer to join our InfoSec team and help validate, secure, and continuously improve software developed by internal and partner engineering teams.
This role is ideal for someone who combines a software engineering foundation with an attacker mindset. You will review major and minor software releases before deployment, identify and validate vulnerabilities, create proof-of-concept demonstrations where appropriate, and provide practical remediation guidance that developers can act on.
You will not simply file security tickets and move on. You will work closely with engineering teams to understand application architecture, business logic, user workflows, data sensitivity, and production environments so that your findings are accurate, contextualized, and useful.
You will work collaboratively across Veilant’s software, DevSecOps, and infrastructure teams.
In this role, you will:
- Audit software releases across major and minor cycles to intercept and remediate security flaws before deployment.
- Analyze source code to identify, isolate, validate, and contextualize vulnerabilities in complex application codebases.
- Build safe proof-of-concept examples to demonstrate exploitation paths and verify the real-world impact of discovered risks.
- Contextualize findings based on application business logic, user workflows, data sensitivity, and production use cases.
- Author clear remediation guidance and partner with development teams to implement effective patches, controls, or architectural mitigations.
- Intercept and analyze application-layer network traffic using tools such as Burp Suite or similar intercepting proxies to inspect encrypted payloads, API calls, and authentication flows.
- Assess and help secure core architectures across REST APIs, SQL databases, PostgreSQL, JWT/OAuth, identity providers, and token-based authentication mechanisms.
- Perform threat modeling for web applications based on use cases, data flows, user roles, trust boundaries, and production environments.
- Improve DevSecOps pipelines by integrating, tuning, and operationalizing SAST, DAST, SCA, IaC scanning, secrets detection, and container security tooling.
- Support container runtime security efforts using monitoring and runtime protection tools such as Falco, NeuVector, or similar technologies.
- Create standardized security reporting that translates technical findings into clear risk narratives for both engineering teams and executive stakeholders.
What You Will Accomplish in Your First Six Months
Within your first six months, success in this role will look like:
Building a repeatable AppSec review process for major and minor software releases, helping engineering teams identify and resolve security issues before deployment.
Integrating and improving SAST, DAST, and SCA checks in CI/CD pipelines so that security testing becomes a reliable part of the development lifecycle rather than a late-stage blocker.
Establishing threat modeling practices for web applications using common frameworks and applying them to Veilant’s Angular front-end, Java Spring Boot back-end, REST APIs, SQL databases, and authentication flows.
Partnering with engineering and software teams to improve secure coding practices through practical feedback, remediation guidance, and collaborative reviews.
Implementing best practices in container runtime security , including visibility, monitoring, and runtime protections for containerized workloads.
Writing standardized security reports that clearly communicate risk, impact, and remediation steps for both executive-level stakeholders and engineering teams.
Qualifications
What We Are Looking For
Strong candidates will bring:
- Ability to obtain a Security Clearance
- 2+ years of software development experience in Java.
- Hands-on experience reviewing or securing applications built with Java Spring Boot, Angular, REST APIs, SQL databases, and PostgreSQL.
- Working knowledge of authentication and authorization technologies, including JWT, OAuth, identity providers, Entra, Keycloak, and token-based access models.
- Experience intercepting, decrypting, manipulating, and analyzing web or application network traffic.
- Demonstrated ability to find, validate, and explain vulnerabilities in a real codebase.
- Familiarity with CI/CD tools such as GitLab CI, Azure DevOps, or GitHub Actions.
- Experience with containerized environments and orchestration tools such as Kubernetes.
- Exposure to infrastructure-as-code and container scanning tools such as Trivy, Kubesec, or similar technologies.
- Understanding of cloud hosting environments such as Azure or AWS.
- Familiarity with secrets management tools such as GitLab Secrets Manager, AWS KMS, Azure Key Vault, or Ansible Vault.
- Experience with automated application security testing, including SAST, DAST, and SCA.
- Familiarity with runtime security and monitoring tools for containers, such as Falco, NeuVector, or similar platforms.
- Hands-on web security testing experience using Burp Suite or comparable tooling.
- Strong written communication skills, including the ability to write reports for both technical and non-technical audiences.
- OSWE, OSCP, and/or GXPN certifications are highly desirable.
The Kind of Person Who Will Thrive Here
You will do well in this role if you are curious, collaborative, and comfortable working across both code and security. You know how to speak with developers in practical terms, explain risk without creating unnecessary friction, and help teams ship secure software without slowing the mission down.
You are someone who can move from reviewing source code, to analyzing an API request, to modeling a threat scenario, to writing a report that an executive can understand. You enjoy solving problems at the root cause, not just documenting symptoms.
Additional Information
Why You’ll Love Working Here:
- Innovative Environment: Work in a setting where your ideas and expertise are valued.
- Collaborative Culture: Be part of a team that supports each other and works toward shared goals.
- Career Growth: Opportunities for professional development and career advancement.
What is the Compensation Range for this role?
The salary range for this position is $115,000 to $145,000 annually for full-time status. Actual compensation within this range at Veilant is determined by numerous factors including but not limited to the candidate's
qualifications
, including experience, education, certifications, technical skills, as well as contract-specific affordability and labor categories, the scope and responsibilities of the role, market and business considerations, and geographic location.Here are some Perks!
- Flexible PTO + holidays
- Generous 401k match benefit up to 10%, with an automatic 3% safe harbor contribution and additional matching based on employee contributions.
- Medical (HSA & PPO Plans Available), dental, vision, disability, and life insurance
- Employer Contribution to Health Savings Account (HSA)
- Learning & Development opportunities
- Professional coaching services
- Get the technology you want to do your job
- We have free daily snacks & drinks
Physical Requirements:
- Must be able to remain in a stationary position 50% of the time. The person in this position needs to occasionally move about inside the office
- Constantly work with computers and other information technology equipment
- The ability to communicate information and ideas in a classroom style format, may stand at a podium for long periods of time
We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace.
If you require a reasonable accommodation to apply for a position with Veilant through its online applicant system, please contact Veilant's Talent Management Department at View phone number on us.fitly.work or contact us through e-mail at contact_us@ veilant.com
$155k - $185k
Responsible for leading application security engineering efforts, designing scalable security architectures, performing advanced risk assessments, integrating security across the SDLC, driving AI‑related security controls, evaluating vendor solutions, scaling automation...SuggestedFull time- ...Job Title: Senior Application Security Engineer Get AI-powered advice on this job and access more exclusive features. Direct message the job poster from Unisys. Key Skills and Bonuses: Pentest, OWASP, SAST/DAST/IAST. Bonus: LLM, US citizenship preferred, AWS, GenAI, certifications...SuggestedFull time
$75k - $175k
...Technology, we use Appian to run Appian. Our team builds the internal applications that keep the company moving—streamlining operations,... ...what’s possible on our own platform.As an Appian Application Engineer, you’ll design and deliver enterprise applications on Appian with...SuggestedWork experience placementWork at officeLocal areaFlexible hours- Vacancy: Application Engineer Location: Herndon/McLean, VA May 15, 2023General Information Location: Herndon/McLean, VA Salary: Salary range is commensurate with candidate’s qualifications and experience. How to Apply: Send your resume to ****@*****.*** specifying...Suggested
- ...not provide sponsorship for this role. Applicants must be authorized to work in the United... ...proficiency, strong operational engineering capabilities, cloud infrastructure expertise... ...resolution, and own the technical health, security posture, and service performance of a...SuggestedInternshipMonday to Friday
$85k - $120k
...reporting and troubleshooting purposes. Work with our sales engineering team to ensure the successful operation of our partner and client... ...for this position. Job Details Seniority level: Not Applicable Employment type: Full‑time Job function: Information Technology...Full timeWorldwideMonday to FridayWeekend work$90k - $110k
Responsible for supporting application security through security testing, vulnerability management, secure design collaboration, automation... ...innovative security tools and a team of dedicated security engineers to protect our products throughout their lifecycle. Job Summary...Full time- ...POLY Required **About the Role:** Join our team as a Security Product Reverse Engineer to analyze and audit security products, focusing on... ...implementation of CNE techniques and methodologies, including application and mitigation for BSD/Linux/Unix, Windows, Mac OS,...
- We have open role for " Application Support Engineer" for one our direct clients and it's W2 requirement. Interested candidates please share your resume to ****@*****.*** Location: Hybrid, McLean, VA Duration: Full-time Experience: 10+ years Required...Full time
$90k - $95k
...Appian, the Business Technology team is the engine driving our technical strategy and... .... Appian is looking for an Associate Application Engineer to develop large-scale applications... ...optimize internal system performance, security, and UI/UX design. Participate in agile...Full timePart timeWork experience placementInternshipWork at officeLocal areaImmediate startFlexible hours- ...working for a safer, healthier, and more secure nation and world. Our workplace reflects... ...department is seeking highly motivated engineers to develop and secure next-generation embedded... ...related education and work experience. Applicants selected for this position will be...Work experience placementInternshipLocal areaImmediate start
- DescriptionOur Application Engineers work within a team, collaborating with other developers and analysts to design and develop business applications that support mission-critical customer needs. Our Application Engineers are innovative thinkers who can solve technical...
- ...working for a safer, healthier, and more secure nation and world. Our workplace reflects... ...seeking to hire talented and creative engineers with a focus on hardware reverse engineering... ...all, of the following technical areas:Application of side-channel analysis and/or fault...InternshipLocal area
$99k - $225k
Oracle AI Application EngineerThe Opportunity: Everyone is trying to “harness the cloud,” but... ...knows how. As an Oracle AI Application Engineer, you know how to create a cloud-based technical... ..., Spatial and Spatial Studio, APEX, security policies, security groups, and network...Full timeContract workPart timeWork at officeLocal areaRemote work$89.6k - $218.2k
Senior Forward Deployed Application Engineer Position Description CGI Federal is seeking a Senior Forward Deployed Application Engineer... ...existing workflows; the primary focus is building maintainable, secure, integrated solutions. This position is located in...Local area$62.9k - $153.3k
Forward Deployed Application Engineer Position Description CGI Federal is looking for a Forward Deployed Application Engineer to deliver... ...upon specific assignment and/or level of US government security clearance held. Dependent upon role and/or federal government...Local area- *This is an ON-SITE position at our Reston, VA office* The Application Support Engineer is responsible for delivering high-quality software application support to customers and partners, ensuring adherence to established service standards for quality, resolution efficiency...Temporary workWork at officeFlexible hours
- ...Job Description Job Description Job Summary: The Applications Engineer is responsible for providing technical support for sales team members and clients in both the acquisition and fulfillment stages of equipment projects. This position requires strong customer...Permanent employmentFor contractorsWork at office
- ...Job Description Job Description *This is an ON-SITE position at our Reston, VA office* The Application Support Engineer is responsible for delivering high-quality software application support to customers and partners, ensuring adherence to established service standards...Permanent employmentTemporary workWork at officeFlexible hours
$6,000 per month
...software solutions and implementing platform applications? Do you thrive in high-pressure... ...seeking a talented Software Integration Engineer with experience in platform application... ...that have a direct impact on national security and defense. Your expertise and skills...Full time$102.5k - $188.9k
...confidence, and proactively manage to secure success.Cyber threats continue to evolve... ...responsible for…Monitor networks, systems, and applications for indicators of compromise and... ...and adversary tools, including reverse engineering malicious code and simulating adversary...Work at office- Title: Lead Security Encryption EngineerWells Fargo is back in the office collaborating... ...this role.Join a high-impact security engineering team at the forefront of enterprise cryptography... ...Kanban methodologies.• Experience with application support in Linux and Windows server...Full timeWork experience placementWork at officeVisa sponsorship3 days per week
- ...working for a safer, healthier, and more secure nation and world. Our workplace reflects... ...to perform research, development, engineering, evaluation, and integration of secure AI... ...Commitment to Non-DiscriminationAll qualified applicants will receive consideration for...InternshipLocal areaImmediate start
$172.8k - $233.7k
...join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles.... ...of physical security principles and their practical application, including Crime Prevention Through Environmental Design...Local areaFlexible hours$99k - $225k
Cloud Security Engineer, SeniorThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone knows how to secure it. As a... ...use your cloud security skills to improve mission critical applications for the Intelligence Community (IC)? We need you to help us...Full timeContract workPart timeWork at officeLocal areaRemote work- ...systems design and analysis, and develops and tests mobile and web applications, and other application/database integrations that can be... ...to write documentation for internal use.Experience in end-user security administration helpful.Software: Microsoft Word, Outlook, and...Work at officeLocal areaRemote workFlexible hours
$128.7k - $292k
Frontier AI Research Engineer, LeadThe Opportunity:Frontier Research operates at the edge of what’s possible to convert breakthrough... ...passionate about building distributed AI systems, architecting agentic applications, and transforming cutting-edge research into production-grade...Full timeContract workPart timeWork at officeLocal areaRemote work$130k - $180k
OverviewAs a Senior Cloud Security Engineer, you will work within our growing DevSecOps practice delivering features to support developing... ...Identify, analyze, and resolve infrastructure vulnerabilities and application deployment issues Act as an individual contributor and...$86.8k - $198k
ICAM Security EngineerThe Opportunity:The user is the last frontier for cybersecurity. It... ..., and Access Management (ICAM) Security Engineer at Booz Allen, you’ll play a critical role... ...to Non-DiscriminationAll qualified applicants will receive consideration for employment...Full timeContract workPart timeWork at officeLocal areaRemote work- Navy Federal Credit Union is seeking a Principal Security Engineer to maintain and support the Palo Alto Prisma Access environment using Strata... ...Credit Union.Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to...InternshipMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!

