Demo

Application Security Engineer

Tential Solutions
Rockville, MD Full Time
POSTED ON 2/20/2025
AVAILABLE BEFORE 3/19/2025
Our client, a Fortune 500 financial services group, is looking for a Senior Application Security Engineer. You would be responsible for promoting, designing, and evaluating application security in all phases of the application life cycle.

Essential Job Functions

  • Software Security Assessment: Evaluate applications for appropriate and effective use of security controls using tools and techniques such as source code analysis, vulnerability scanners, and manual testing techniques.
  • Application Security Control Development: Provide expert guidance to developers on the appropriate selection and implementation of relevant application security controls.
  • Security Awareness Training: Design, develop and deliver presentations focused on raising awareness for crucial security relevant considerations and defensive programming techniques.
  • Support the planning and execution of the application security testing and evaluation program with possibility to mentor junior team members
  • Advise and consult internal clients on appropriate application of security practices and existing security services to solve problems or enable new business opportunities.
  • Serve as subject matter expert on application and information security technologies and methodologies.

Education/Experience Requirements

  • B.S or M.S in Computer Science, or equivalent education or experience. Emphasis in software security a plus.
  • At least three (3) years of professional experience with M.S degree or at least five (5) years of experience with a B.S degree to include:
  • Two (2) or more years in software engineering and development with emphasis on the delivery of secure, Internet-exposed, multi-tier, web-based systems using Java/J2EE and/or C#/ASP/.NET (experience with both a plus).
  • At least one (1) year of hands-on experience evaluating the security of applications using both manual and automated techniques. Relevant tool experience should include code security scanners such as Fortify SCA, Checkmarx; web vulnerability scanners such as HP WebInspect or IBM Rational AppScan; assessment support tools such as BurpSuite, Metasploit, or Core Impact.
  • Experience mentoring and leading small teams and demonstrated responsibility for managing security assessments for a portfolio of applications is desirable.
  • Strong written and verbal communication skills. Specific relevant experience may include technical reports (especially application security assessment reports), technical whitepapers, presentation development and delivery (for both technical and business audiences), technical training, etc. Candidate should have experience making and defending sound technical arguments that incorporate relevant technical and business considerations, and building consensus among stakeholders.

Required Skills

  • Application Security (AppSec) domain knowledge/experience, including ALL of the following
  • Manual source code review
  • Experience analyzing DAST/SAST scan results (not just running the tools); Ideally with AppScan or Netsparker, and Checkmarx
  • Application penetration testing; ideally with BurpSuite
  • Solid Java Knowledge, and ideally at least historical Development Skills
  • Strong understanding of both Web Application and Web Service architectures, as well as associated protocols

Highly Desired Skills

  • Python Knowledge Development Skills
  • Capture the Flag (CTF) / red team exercise experiences.
  • Web Application Firewall (WAF) knowledge/experience
  • AWS Development Skills (e.g. ideally not just AWS Console access, but API level exposures) OR solid AWS Security knowledge.
  • Relevant Credentials, such as (Masters in Cybersecurity, OSCP, CEH)

#Dice

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Application Security Engineer?

Sign up to receive alerts about other jobs on the Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$117,871 - $153,580
Income Estimation: 
$109,939 - $144,341
Income Estimation: 
$114,500 - $144,633
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$117,871 - $153,580
Income Estimation: 
$109,939 - $144,341
Income Estimation: 
$114,500 - $144,633
Income Estimation: 
$131,745 - $167,716
Income Estimation: 
$150,756 - $194,140
Income Estimation: 
$172,191 - $221,861
Income Estimation: 
$114,549 - $164,025
Income Estimation: 
$153,752 - $200,235
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$131,745 - $167,716
Income Estimation: 
$144,503 - $184,592
Income Estimation: 
$102,541 - $137,871
Income Estimation: 
$153,752 - $200,235
Income Estimation: 
$70,239 - $89,209
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$92,017 - $124,111
Income Estimation: 
$90,707 - $120,959
Income Estimation: 
$91,486 - $118,193
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Tential Solutions

Tential Solutions
Hired Organization Address Tampa, FL Contractor
Who We Are Tential is a solutions provider specializing in recruiting IT and customer experience skill sets. Our two pri...
Tential Solutions
Hired Organization Address Annapolis, MD Contractor
Who We Are Tential is a solutions provider specializing in recruiting IT and customer experience skill sets. Our two pri...
Tential Solutions
Hired Organization Address Rockville, MD Full Time
This position performs a variety of specific duties in support of the Office of Hearing Officers’ operations and functio...
Tential Solutions
Hired Organization Address Tampa, FL Contractor
Instructional Designer The Digital Design and Development team specializes in digital learning approaches, combining des...

Not the job you're looking for? Here are some other Application Security Engineer jobs in the Rockville, MD area that may be a better fit.

Web Application Security Engineer (Senior)

Iron Vine Security, LLC Career Center, Suitland, MD

Application Security Engineer (Security)

Zachary Piper Solutions, Mc Lean, VA

AI Assistant is available now!

Feel free to start your new journey!