StaffAttract
  • Login
  • Create Account
  • Products
    • Private Ad Placement
    • Reports Management
    • Publisher Monetization
    • Search Jobs
  • About Us
  • Contact Us
  • Unsubscribe

Login

Forgot Password?

Create Account

Job title, industry, keywords, etc.
City, State or Postcode

Senior Application Security Engineer - Veracode/Burp ...

ClearanceJobs - Washington, DC

Apply Now

Job Description

Senior Application Security Engineer - Veracode/Burp SME with Security ClearanceJoin to apply for the Senior Application Security Engineer - Veracode/Burp SME with Security Clearance role at ClearanceJobsSenior Application Security Engineer - Veracode/Burp SME with Security Clearance14 hours ago Be among the first 25 applicantsJoin to apply for the Senior Application Security Engineer - Veracode/Burp SME with Security Clearance role at ClearanceJobsGet AI-powered advice on this job and more exclusive features.At phia we hire talented and passionate people who are focused on collaborative, meaningful work, providing technical and operational subject matter expertise and support services to our partners and clients. phia is seeking a Senior Application Security Engineer with hands-on experience using Veracode and Burp Suite for application security testing and vulnerability management. The ideal applicant should be proficient in planning, coordinating, and conducting application security testing (SAST/DAST) utilizing static and dynamic analysis tools, interpreting scan results, and providing effective reporting and remediation guidance. This individual will work with a Federal client to maintain a resilient security posture for highly visible applications. With customer approval, this position allows you to work remotely from anywhere within the United States. U.S. citizenship and ability to obtain Public Trust approval is required. What You'll Do * Collaborate with the federal client and application teams to maintain a robust security posture for high-visibility applications.Plan and conduct comprehensive application security assessments using dynamic and static testing methodologies (SAST/DAST).Lead proactive security discussions with development teams to integrate best practices throughout the software development lifecycle.Perform threat modeling and security requirements municate and collaborate with developers and system owners as part of the CI/CD pipeline.Execute in-depth application testing using industry-standard tools such as Burp Suite.Implement and leverage the latest OWASP frameworks to enhance application security.Develop and maintain security controls to protect applications, systems, and infrastructure services.Provide expert guidance on remediating identified security flaws and vulnerabilities.Stay current with evolving security threats and compliance standards to ensure continuous improvement of security measures. Required: Education + Experience * Expert-level experience using Veracode and Burp Suite6+ years of Information Technology experience3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments2+ years of experience with Java, Python, .NET, or C#3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure servicesExperience with Eclipse, JDeveloper, including pipeline development, or Visual StudioExperience with securing enterprise web applications in accordance with established frameworks and priorities (OWASP Top 10, CVSS, CWE, WASC, and SANS-25)Knowledge of Federal compliance standards, including NIST 800-53, FIPS, or FedRAMPKnowledge of Linux or UNIX environments, including navigating and troubleshooting basic website connectivity issuesHS diploma or GED Desired Skills and Experience * Bachelor's degree in Computer Science, Information Technology, Information Security, or a related fieldExperience with Interactive Application Security Testing (IAST) tools and methodologiesExperience with HackerOneExperience with SeleniumSkill in writing bash scripts for automationHands-on experience with OWASP ZAP or Burp ProxyCertifications in application security or related fields (e.g., CSSLP, OSCP, GWAPT) Security Clearance * U.S. Citizenship requiredApplicants selected will be subject to a security investigation; Public Trust determination is required If you thrive on complex problem-solving, enjoy providing innovative solutions, and want to have a meaningful impact on national security, let's explore the possibility of working for phia! Who You Are A proactive problem solver that appreciates the challenges of working in a fast-paced, dynamic environment. Intellectually curious with a genuine desire to learn and advance your career. An effective communicator, both verbally and in writing. Customer service-oriented and mission-focused. Critical thinker with excellent problem-solving skills If your experience and qualifications aren't a match for this position, you will remain in our database for consideration for future opportunities that may be a better fit. Who We Are phia, LLC is a Northern Virginia-based, small business established in 2011 with a focus on Cyber Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident Response, Cyber Architecture & Capability Analysis, Cyber Policy & Strategy, and Information Assurance/Security. we proudly support various agencies and offices within the Department of Defense (DoD), Federal government, and private/commercial entities. phia values work-life balance and offers the following benefits to full-time employees: Comprehensive medical insurance to include dental and vision Short Term & Long-Term Disability 401k Retirement Savings Plan with Company Match Tuition and Professional Development Assistance Flex Spending Accounts (FSA) phia does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity, or any other reason prohibited by law in the provision of employment opportunities and benefits. Please be aware job applicants have rights under federal employment laws. You can find more information about The Family Medical Leave Act (FMLA), Know Your Rights (EEO), and Employee Polygraph Protection Act (EPPA) on The U.S. Department of Labor (DOL)'s website HERE . Frequently Asked Questions - United States Department of LaborSeniority levelSeniority levelMid-Senior levelEmployment typeEmployment typeFull-timeJob functionJob functionInformation TechnologyIndustriesDefense and Space ManufacturingReferrals increase your chances of interviewing at ClearanceJobs by 2xGet notified about new Senior Application Security Engineer jobs in Washington, DC.Washington, DC $200,000.00-$221,000.00 3 weeks agoTysons Corner, VA $150,000.00-$180,000.00 3 days agoSenior/Lead Application Security EngineerSenior Application Security Engineer (WAF) 3956Senior Application Security Engineer - Veracode/Burp SMESenior ADC Windows Client Engineer, Region Services Operations (RSO) - VECTOR TeamColumbia, MD $139,500.00-$226,800.00 3 days agoSenior ADC Windows Client Engineer, Region Services Operations (RSO) - VECTOR TeamArlington, VA $139,500.00-$226,800.00 2 weeks agoSenior ADC Windows Client Engineer, Region Services Operations (RSO) - VECTOR TeamHerndon, VA $139,500.00-$226,800.00 1 week agoChantilly, VA $150,000.00-$160,000.00 11 hours agoMaryland, United States $185,000.00-$220,000.00 7 months agoWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr

Created: 2025-09-17

➤
Footer Logo
Privacy Policy | Terms & Conditions | Contact Us | About Us
Designed, Developed and Maintained by: NextGen TechEdge Solutions Pvt. Ltd.