Application Security Engineer
Program Overview
About The Role
We are seeking a highly skilled and innovative Application Security Engineer to join our team in the greater DMV area, supporting the Army National Guard.
Key Responsibilities
- Define application security strategy, standards, and SDLC integration points; champion secure-by-design practices across engineering and DevSecOps teams.
- Lead threat modeling and secure architecture reviews for applications, APIs, and microservices.
- Design, implement, and manage automated security toolchain: SAST, DAST, SCA, IAST, secrets management, and pipeline gating.
- Triage, validate, prioritize, and manage remediation of application vulnerabilities; coordinate remediation with developers, platform, and cloud teams.
- Conduct exploit validation, root-cause analysis, and coordinate incident response for application security events.
- Establish governance for vulnerability lifecycle, release security validation, and compliance reporting.
- Develop security requirements, secure coding guidance, checklists, and developer training materials; deliver briefings to technical and executive audiences.
- Evaluate emerging application threats and tools; recommend and pilot defensive technologies and processes.
- Produce decision‑grade artifacts: architecture review reports, risk assessments, security test plans, and metrics dashboards.
#ENOCS
Qualifications
Required Qualifications
- Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D.
- Clearance: TS/SCI (active)
- Education / Training / Certification: Candidate must meet ONE of the following:
- Master’s or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering; OR
- Relevant DoD/Military training documented for application security or enterprise cybersecurity roles; OR
- Relevant professional certifications or demonstrated equivalent experience (examples: CISSP‑ISSEP, CSSLP, GWAPT, GIAC application security certs).
- Experience: Minimum 7 years application security/devsecops experience with at least 5 years in senior roles supporting enterprise or mission-critical systems.
- Technical skills: Demonstrated experience with SAST/DAST/SCA/IAST tooling, CI/CD integration, threat modeling, secure architecture reviews, vulnerability lifecycle management, scripting/programming (Python, Java, C#, JavaScript), and cloud-native platforms (AWS/Azure/GCP).
- Knowledge: OWASP Top 10, NIST SP 800 series, RMF/DoD policy, and secure coding best practices.
Preferred Qualifications
- Certifications: CISSP‑ISSEP preferred; CSSLP, GWAPT, GWEP, or other GIAC application security certifications desirable.
- Experience with container security, API security, secrets management, and pipeline gating in automated CI/CD environments.
#ENOCS
SCA / Union / Intern Rate or Range
Details
Target Salary Range: $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at
Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Recommended Jobs
Web Developer - 100% Remote / Active Secret Clearance Required
Job Type Contract Description Work is 100% Remote, but you must be local to either Washington, DC or San Antonio, TX. **Not for Staffing Firms, third …
Systems Engineer - VERSA Surge Support
Job Description Job Description Benefits: Competitive salary Health insurance Opportunity for advancement Training & development Overview Emergent Technologies Inc. is seeking…
Facilities Security Officer (FSO)
Program Overview About The Role Peraton is looking for a dynamic, well organized and highly motivated individual with prior relevant experience to serve as the Facility Security Officer (FSO)…
Azure Cloud Engineer with AI
Job Details Azure Cloud Engineer with AI Resources Location: Mechanicsville, VA Hybrid Role Experience providing guidance on the implementation of Al resources in Azure, and experience imple…
Cost Estimator II-536175
The Program Development, Coordination, and Support Directorate is responsible for the design, coordination, and management of OBO’s construction and renovation programs. The Department of State (D…
Practice Manager
Job Description Job Description Description: Role: Practice Manager Job Type: Full-Time Salary Range: $75,000.00-$85,000.00 Description: The Practice Manager collaborates with the D…
Scheduling & Logistics Coordinator
Defense Holdings, Inc. (DHi) Location: Hybrid/Remote (US) Employment Type: Full-Time Department: Administrative / Operations Reports To: Office Manager / Department Director Company Over…
Facilities Manager
Saint Joan of Arc Catholic Church Job Description Facility Manager SUMMARY/PURPOSE: Provides maintenance and preventive maintenance on equipment, buildings, and grounds of the Parish to ensure a safe…
Healthcare Strategy & Transformation Senior Consultant (Hiring Immediately)
Job Family : Strategy & Transformation Consulting Travel Required : Up to 10% Clearance Required : Ability to Obtain Public Trust What You Will Do : Senior Consultants help …
Plant Operator
Job Description: About Archaea ~ Archaea Energy, a leader in the landfill gas to energy industry has an immediate opening. we are looking for candidates with 1-5 years of operation & maintenance…