Visibility. Analytics. Context. Secure
Application Security Engineer
Location
Virginia
Posted
132 days ago
Salary
0
Seniority
Senior
Job Description
Application Security Engineer
ShorePoint Inc
• Support and operate application security testing capabilities across SAST, DAST and IDE plug-in environments, with primary focus on Burp Suite and Veracode • Configure, maintain and troubleshoot Burp Suite and Veracode integrations to enable consistent application security testing workflows • Partner with development and engineering teams to identify, validate and remediate security vulnerabilities • Apply vulnerability standards and scoring methodologies to findings, including OWASP Top 10, CVSS, CWE, WASC and SANS-25 • Navigate and troubleshoot within Linux or UNIX environments, including basic website connectivity issues • Support the design and implementation of enterprise-wide security controls that secure applications, systems, networks or infrastructure services • Use IDEs and development toolchains (Eclipse, JDeveloper, Visual Studio) to support developer workflows, including pipeline development activities where applicable • Support compliance-aligned security activities in federal environments leveraging NIST 800-53, FIPS and/or FedRAMP standards
Job Requirements
- Bachelor’s degree in an IT-related field
- 6+ years of Information Technology experience
- 3+ years of experience supporting SAST, DAST and IDE plug-in environments using Burp Suite, including 3+ years of hands-on Burp Suite experience
- 1+ year of experience supporting SAST, DAST and IDE plug-in environments using Veracode
- 3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, networks or infrastructure services
- 2+ years of experience with Java, Python, .NET or C#
- 2+ years of experience working in Linux-based environments, including navigating and troubleshooting basic website connectivity issues
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking
- Experience with Eclipse, JDeveloper and/or Visual Studio, including pipeline development experience
- Experience securing enterprise web applications, including familiarity with OWASP Top 10, CVSS, CWE, WASC and SANS-25
- Knowledge of federal compliance standards, including NIST 800-53, FIPS and/or FedRAMP
- Applicants must be a U.S. citizen in compliance with federal contract requirements
Benefits
- 144 hours of PTO
- 11 holidays
- 85% of insurance premium covered
- 401k
- continued education
- certifications maintenance
- reimbursement and more
Related Guides
Related Categories
Related Job Pages
More Application Engineer Jobs
• Architect and design sound/supportable technical solutions to complex business requirements • Develop and maintain Foundry pipelines using Pipeline Builder to ingest, transform, and integrate data • Build modular applications and workflows leveraging Python and Foundry AIP • Collaborate with data engineers, analysts, and stakeholders to refine data models and ontology mapping • Assist in Foundry workshops to guide stakeholders through platform capabilities • Support testing, debugging, and performance tuning of Foundry applications • Work with aerospace data to identify patterns, trends, and insights using Palantir Foundry and AWS analytical tools • Develop custom applications and workflows within Foundry and AWS to address specific challenges • Ensure data integrity and compliance with aerospace industry standards • Apply lean methodologies to identify opportunities for process improvement • Share feedback with Palantir and AWS product teams to enhance tools and workflows
• Support sales activities, drive customer engagement, and provide techno-commercial tailored offers for industrial control system solutions • Review customer specifications, drawings, RFPs/RFQs and create tables of compliance • Serve as the main point of contact for deals, providing application engineering support to customers, partners, and internal teams • Lead the quoting process for both core and complex control system offerings • Ensure accurate cost estimates and manage technical, execution, and commercial risks throughout the ITO process • Present deals for approval, manage tender schedules, and ensure timely submissions and readiness for order booking • Lead proposal development, support customer meetings and negotiations, manage project handover to execution, and contribute to continuous improvement and KPI achievement
Spontaneous Application
TheSoul GroupTheSoul Group, formerly TheSoul Publishing, is a creator business platform committed to driving viral success for creators and brands worldwide. Through a comprehensive array of di
TheSoul Group is a leading creator business platform positioned at the heart of the creator economy. Our original videos, animations, and editorial stories inspire audiences in 21 languages, across 60 platforms and 20 websites. Together with our network of 15,000 talented creators, we reach over 5 billion followers and generate more than 100 billion monthly views on social media. As a global powerhouse in digital media, we drive viral success for creators and brands worldwide through a wide range of services, leveraging our expertise in content distribution, localization, and social media management. We’re the creators behind global phenomena such as 5-Minute Crafts and BrightSide, and we continue to expand our influence in the creator economy through strategic acquisitions like Mediacube and Underscore Talent. We’re a dynamic, remote-first global team, fostering award-winning creativity, a no-red-tape approach, and great vibes! Don’t see a role that fits you right now? Let’s still talk. At TheSoul Group, we’re constantly evolving with new projects, challenges, and roles. Sometimes the right people come along before the right job title does. If you’re excited about what we’re building and believe your skills could add real value, we’d love to hear from you, even if there isn’t a perfect opening today. This could be a great fit if you: - Have experience in areas relevant to our work (engineering, product, design, marketing, operations, or related fields). - Feel aligned with our mission and way of working. - Are curious, proactive, and open to growing with us. What happens next: - We’ll review your application and see if there’s a current opportunity that makes sense. - If not, we can just keep your profile in mind and let you know when a relevant role opens. - You’ll hear back from us either way.
Senior Application Security Engineer
Hims & Hers Health, Inc.Hims & Hers Health, Inc. is a health and wellness company that strives to innovate the industry with “a modern approach” and is on a mission to put an end to stigmas and make i
• Conduct security assessments using SAST, DAST, and SCA tools to identify vulnerabilities in applications • Perform code reviews and provide secure coding guidance to development teams • Implement and maintain GitHub Advanced Security, including secret scanning and code scanning • Assess and improve security of Infrastructure as Code (IaC) deployments using Terraform • Evaluate container security in our Docker and Kubernetes environments • Support CI/CD security integration and automation • Conduct penetration testing and red team/purple team exercises on applications • Review and secure API implementations, with focus on GraphQL security • Evaluate AI/ML model security and implement protections against prompt injection and other AI-specific threats • Collaborate with the Staff AppSec Engineer on CIAM and advanced AI security initiatives • Maintain security documentation and contribute to security awareness training



