Application Security Engineer
ShorePoint Inc
Who we are:
ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a "work hard, play hard" mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.The Perks: As recognized members of the Cyber Elite, we work together in partnership to defend our nation's critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance, reimbursement and more. Who we're looking for: We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security Testing (SAST & DAST) methodologies and enterprise-level security controls. Your mission is to fortify our software supply chain by integrating rigorous security testing directly into the development lifecycle to preemptively neutralize vulnerabilities. The Application Security Engineer will be responsible for the end-to-end administration of Burp Suite and Veracode, managing Integrated Development Environment (IDE) plugins and ensuring all enterprise web applications align with federal compliance and OWASP standards. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market. What you'll be doing:
- Support and operate application security testing capabilities across SAST, DAST and IDE plug-in environments, with primary focus on Burp Suite and Veracode.
- Configure, maintain and troubleshoot Burp Suite and Veracode integrations to enable consistent application security testing workflows.
- Partner with development and engineering teams to identify, validate and remediate security vulnerabilities.
- Apply vulnerability standards and scoring methodologies to findings, including OWASP Top 10, CVSS, CWE, WASC and SANS-25.
- Navigate and troubleshoot within Linux or UNIX environments, including basic website connectivity issues.
- Support the design and implementation of enterprise-wide security controls that secure applications, systems, networks or infrastructure services.
- Use IDEs and development toolchains (Eclipse, JDeveloper, Visual Studio) to support developer workflows, including pipeline development activities where applicable.
- Support compliance-aligned security activities in federal environments leveraging NIST 800-53, FIPS and/or FedRAMP standards.
- Strong understanding of application security testing concepts and operational support for SAST, DAST and IDE plug-in environments.
- Hands-on capability with enterprise web application security and common vulnerability classes.
- Familiarity with vulnerability scoring, classification and prioritization frameworks (OWASP Top 10, CVSS, CWE, WASC, SANS-25).
- Working knowledge of federal compliance standards (NIST 800-53, FIPS, FedRAMP).
- Ability to work effectively in Linux or UNIX environments for navigation and basic troubleshooting.
- Ability to communicate findings clearly and work cross-functionally to support remediation.
- Bachelor's degree in an IT-related field.
- 6+ years of Information Technology experience.
- 3+ years of experience supporting SAST, DAST and IDE plug-in environments using Burp Suite, including 3+ years of hands-on Burp Suite experience.
- 1+ year of experience supporting SAST, DAST and IDE plug-in environments using Veracode.
- 3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, networks or infrastructure services.
- 2+ years of experience with Java, Python, .NET or C#.
- 2+ years of experience working in Linux-based environments, including navigating and troubleshooting basic website connectivity issues.
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
- Experience with Eclipse, JDeveloper and/or Visual Studio, including pipeline development experience.
- Experience securing enterprise web applications, including familiarity with OWASP Top 10, CVSS, CWE, WASC and SANS-25.
- Knowledge of federal compliance standards, including NIST 800-53, FIPS and/or FedRAMP.
- Applicants must be a U.S. citizen in compliance with federal contract requirements.
- Industry recognized certifications.
- Experience with Interactive Application Security Testing (IAST) tools and capabilities.
- Experience with HackerOne.
- Experience with Selenium.
- Experience writing bash scripts.
- Experience with OWASP ZAP or Burp Proxy.
- Remote (Herndon, VA).
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in Herndon, VA vacancy
$160k
...VISA CANDIDATES FOR THIS ROLE! Required Qualifications: Minimum of 5 years experience working "hands-on" in application security engineering Hands-on experience with Fortify, Veracode, Tenable, Black Duck, or similar platforms Hands-on experience with...Suggested2 days per week- ...Location- Hybrid in Memphis, TN, Addison, TX, or McLean, VA. Rate- $80-90/hr . ON W2 As Senior Lead Engineer for Application Security Architecture team, you will work closely with application team to help implement security solutions that are tailored...SuggestedWork experience placement
$100k - $155k
Overview As an Application Security Engineer , you will provide technical expertise and solutions to remediate persistent and challenging portfolio-wide vulnerabilities. We’re looking for someone who has passion for IT, resourceful problem‑solving abilities, and a desire...Suggested- If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Application Security Engineer (Veracode) — Federal DevSecOps Full Time Fairfax, VA, US 3 days ago Requisition...SuggestedFull timeContract workTemporary workRemote workMonday to FridayFlexible hours
$100k - $155k
Steampunk is seeking an Application Security Engineer in McLean, Virginia. This role involves providing expertise to remediate vulnerabilities and uphold security practices across enterprise applications. Ideal candidates need to have experience in application security...Suggested- ...Developer Responsibilities: Work as part of the software development team to design, develop, and debug web and mobile applications. Analyze, maintain, and implement software solutions following established development standards. Develop and maintain web...
- ...complex projects. Collaborate with Architects, Mechanical Engineers, Electrical Engineers, Structural Engineers, and other... ...Proficient computer skills and Microsoft Office suite of applications, with intermediate Excel skills Limited Travel Physical...Contract workWork at officeLong distance
- ...software solutions that enable military operators, national security agencies, spectrum regulators, and system integrators to... ...CRFS seeks a versatile and proactive Senior Field Applications Engineer (FAE) to serve as the primary technical bridge between our...Work at officeRemote workRelocationFlexible hours
$3,000 per month
...Overview Acuity, Inc. seeks an Application Engineer (Databricks Apps) to design, develop, and support data-driven applications that combine... ...that expose analytics, workflows, and data products in a secure and scalable manner. The Application Engineer translates...Work from home- ...software solutions that enable military operators, national security agencies, spectrum regulators, and system integrators to... ...The Opportunity CRFS is seeking a Junior Field Applications Engineer who will report to the Manager of the US FAE Team on the US...Permanent employmentWork at officeLocal areaRelocationFlexible hours
$116.8k - $160k
...join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles.... ..., and partners to collaborate in the real-world application of Physical Security throughout AWS. You will review...Work at officeFlexible hours$104k - $166k
...Cloud Application Support Engineer for Analytics Platforms (Tableau, Dremio, Posit) Job Locations US Requisition ID 2026... ...migration of legacy on-premises applications to a modern, secure and scalable multi-cloud platform. From sensors in active...Contract workWork at officeShift work- ...Senior Product Security Engineer Mountain View, California, United States Company Overview ID.me is the next-generation digital... ...remediation Execute vulnerability remediation workflows for application, container, Cloud, and SaaS vulnerabilities within defined...Full timeWork at office
- ...Technology, we use Appian to run Appian. Our team builds the internal applications that keep the company moving-streamlining operations,... ...showcasing what's possible on our own platform. As an Application Engineer, you'll design and deliver enterprise applications on Appian...Work at officeLocal area
- ...not provide sponsorship for this role. Applicants must be authorized to work in the United... ...API architecture. Collaborate with engineers, stakeholders, and team members to gather... ..., SOAP/XML, SFTP), with strong focus on secure authentication/authorization, robust error...InternshipMonday to Friday
- ...commercial markets. Nightwing is seeking an experienced Security Product Reverse Engineer (RE) to support advanced security research and... ...Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard...Contract work
- ...have excellent communication skills, both verbal and written (in English). Good to have experience with working on front end applications using JavaScript, JQuery, AngularJS and Bootstrap. Experience in working with API Management Tools. Experience in working...
- A leading financial institution is seeking a Remote Engineer III for Hogan Applications, responsible for technical analysis, design, and implementation within a critical banking environment. Candidates should have extensive experience in Hogan architecture and application...Remote work
- ...the duration of the internship. Please upload your transcripts by adding them to the "Intern Proof of Enrollment" section of the application. Responsibilities Designs and develop user interface features and backend processes. Serves as a resource to Web...Full timePart timeInternshipMonday to FridayFlexible hours
- ...Business Technology team at Appian is the engine driving our internal operational... ...environment. The Opportunity Our Appian application developers combine their technical... ...continuously optimize internal system performance, security, and UI/UX design. Participate in...InternshipWork at officeLocal areaImmediate start
- ...Applications Engineer - Power Monitoring Solutions Applications Engineer – Power Monitoring Solutions LOCATION: Hybrid or Remote Who We Are Janitza LP is the North American arm of Janitza electronics GmbH, a leading German manufacturer of electrical power monitoring...Work at officeRemote work
- ...re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT)... ...As we expand our product portfolio and global presence, our Engineering department is hiring a Product Security Engineer to lead the product...For contractorsFlexible hours
- ID.me is seeking a Product Security Engineer in McLean, VA, to enhance security solutions for millions of users. This role involves implementing security systems, troubleshooting production issues, and automating security processes using Python or Java. Candidates should...
$168k - $252k
...months, not years. ABOUT THE JOB We're seeking a Product Security Engineer focused on the hardware side, not the digital logic or... ...paths towards the future of defense technology. All qualified applicants will be treated with respect and receive equal consideration...Full timeWork experience placementLocal areaRelocation package$190k - $235k
...seeking a highly skilled Cyber Research Engineer with deep technical expertise in Offensive... ..., robust, and scalable offensive security software, tools, and frameworks, with an... ...artificial intelligence concepts and their application to cybersecurity, including adversarial...Full time$130k - $180k
...Must be a US Citizen MUST HAVE A MINIMUM SECURITY CLEARANCE OF TS/SCI with CI Poly As a Network Engineer working with Riverbeds SteelCentral product suite... ...you will solve clients enterprise-wide network, application, and server capacity and performance issues. This...Remote work- ...Join Our Team As A.NET Engineer We're hiring a hands-on.NET engineer with 3+ years of experience to join our team on-site in Ashburn... ...admin app (.NET desktop) Fix bugs across our broader.NET application stack Support Be the go-to technical contact for our internal...
- ...MIS Software Application Programmer/Coder - II/Systems and Application Engineer America Networks is a leading sensor and networking solutions partner for companies in any Industrial, Manufacturing, and Waste management space. We design and manufacture sensors for storage...
- Associate Product Security Engineer Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity. We... ...or equivalent practical experience) Basic understanding of application and/or product security concepts Familiarity with software...InternshipFlexible hours
- We have open role for " Application Support Engineer" for one our direct clients and it's W2 requirement. Interested candidates please share your resume to ****@*****.*** Location: Hybrid, McLean, VA Duration: Full-time Experience: 10+ years Required...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
Related searches
- senior application security engineer Herndon, VA
- application performance engineer Herndon, VA
- senior application support engineer Herndon, VA
- software applications developer Herndon, VA
- app developer Herndon, VA
- sr information security engineer Herndon, VA
- aws cloud security engineer Herndon, VA
- sr security engineer Herndon, VA
- senior cloud security engineer Herndon, VA
- cloud security engineer Herndon, VA


