Job Closed
This listing is no longer active.
TOMORROW HIRE is revolutionizing the staffing industry by integrating advanced AI technology with deep human expertise.
Application Security Engineer – Public Trust/Secret Clearance
Location
District of Columbia + 1 moreAll locations: District of Columbia | Washington
Posted
137 days ago
Salary
$120K - $140K / year
Seniority
Senior
Job Description
Application Security Engineer – Public Trust/Secret Clearance
TOMORROW HIRE
• Support Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode and Burp Suite. • Design and implement enterprise-wide security controls to secure applications, systems, networks, or infrastructure services. • Secure enterprise web applications, with a focus on mitigating OWASP Top 10 risks, CVSS scoring, CWE, WASC, and SANS Top 25 vulnerabilities. • Integrate security practices into development workflows using IDEs such as Eclipse, JDeveloper (including pipeline development), or Visual Studio. • Perform application security testing and automation using tools such as OWASP ZAP, Burp Proxy, Selenium, and Interactive Application Security Testing (IAST) capabilities. • Write and maintain bash scripts to support security automation, testing, and troubleshooting tasks. • Participate in vulnerability discovery, triage, and remediation processes, including crowdsourced security programs via platforms like HackerOne. • Work in Linux or UNIX environments, including navigating file systems and troubleshooting basic website connectivity and security issues. • Ensure applications and security practices align with federal compliance standards, including NIST 800-53, FIPS, or FedRAMP.
Job Requirements
- Minimum **6+ years of Information Technology experience** with a focus on application and security engineering.
- 3+ years of hands-on experience supporting application security testing**, including **Static Application Security Testing (SAST)** and **Dynamic Application Security Testing (DAST)**.
- Demonstrated experience with **SAST, DAST, and IDE plug-in integrations** using tools such as **Veracode** and **Burp Suite**.
- Experience with **Interactive Application Security Testing (IAST)** tools and methodologies.
- Proficiency using **OWASP ZAP** and/or **Burp Proxy** for web application security testing.
- Experience participating in **vulnerability discovery and remediation programs**, including **HackerOne**.
- Experience with **test automation tools**, including **Selenium**.
- Proficiency in **bash scripting** for security automation, testing, and troubleshooting.
- 2+ years of development experience** in one or more programming languages, including **Java, Python, .NET, or C#**.
- Experience integrating security into development workflows using **Eclipse, JDeveloper (including CI/CD pipeline development), or Visual Studio**.
- 3+ years of experience designing and implementing enterprise-wide security controls** to secure applications, systems, networks, or infrastructure services.
- Hands-on experience securing **enterprise web applications**, with strong knowledge of **OWASP Top 10**, **CVSS**, **CWE**, **WASC**, and **SANS Top 25** vulnerabilities.
- Knowledge of **federal compliance and security frameworks**, including **NIST 800-53**, **FIPS**, and **FedRAMP**.
- Working knowledge of **Linux or UNIX environments**, including file system navigation and troubleshooting basic website connectivity issues.
- High School Diploma or GED** required.
- Public Trust Determination or Active Security clearance (preferred)**
Benefits
- Health, Vision, and Dental Insurance
- PTO
Related Guides
Related Categories
Related Job Pages
More Application Engineer Jobs
Field Application Engineer
TTM TechnologiesA leading global provider of printed circuit boards that go into just about everything you can imagine.
• Provide DFM (Design for Manufacturing) and DFV (Design for Value) support to customer engineering and design teams for new designs and existing design improvement with a focus on reducing customers design cycle time • Collaborate with customer designers to improve quality and completeness of their design packages and help them by identifying design problems related to manufacturability and reliability test • Support drawing reviews prior to design release and help architect drawing notes to support the specific design and manufacturing needs • Thorough knowledge of industry specification (IPC) requirements as well as customer developed specifications requirements • Update customer design and manufacturing groups on TTM capabilities and technology roadmap through formal presentations • Provide TTM manufacturing facilities insight into future customer needs, technology requirements and identify gaps in TTMs ability to support those future needs • Facilitate customer technical needs with TTM engineering and operations • Assist TTM site pre-production teams through the stack-up/DFM/TQ approval process and in getting “on-hold” issues addressed on the customer side expeditiously • Thorough understanding of TTM manufacturing and design capabilities and value add offerings to support QTA/NPI/Production Manufacturing for Aerospace & Defense customers • Establish technical contacts between customer and TTM to drive improved lines of technical communications and increased depth of relationships • Assist the Sales Account Managers in increasing customer revenue by providing technical support and service • Travel to and visit customer sights to support technical discussions, issues, and key programs as required • Create and conduct technical capability presentations in conjunction with the sales team
• Providing second-line technical support for company applications (L2) • Monitoring system performance and availability • Registering incoming tickets and performing initial analysis • Resolving incidents and service requests related to company applications • Collaborating with engineers and specialists from other teams to resolve issues • Participating in the incident management process • Documenting solutions and maintaining support documentation
• Collaborate with Colleagues – Work closely with colleagues to understand customers' business objectives and technical challenges, contributing to the design and development of effective GenAI solutions tailored to client needs. • Apply GenAI Principles – Utilize modern tools and frameworks like LangGraph, to build scalable, reliable, and maintainable Compound AI systems. • Leverage your understanding of AI fundamentals to ensure every project meets rigorous industry and ethical standards. • Adapt to the latest Technologies & Patterns – continue to research, learn, and stay abreast of the most recent state of the art for AI application development. • Promote Knowledge Sharing –Bolster our culture of continuous learning by sharing knowledge about AI engineering best practices through blog posts, articles, and internal talks.
• Serve as a lifeline for users of platforms and technology • Handle all incoming requests for assistance and resolve issues • Collaborate with internal and external departments • Maintain responsibility for system and user administration for the entire organization • Troubleshoot root cause issues and resolve inquiries through Zendesk or email • Actively participate in projects related to systems integration • Train and educate employees and end users on systems and integrations



