HYBRID::Application Security Engineer at Rockville, MD or McLean, VA

Hybrid in McLean, VA, US • Posted 4 hours ago • Updated 4 hours ago
Contract Corp To Corp
Contract W2
Hybrid
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

⭐ Evaluating experience...

Job Details

Skills

  • Application Security Engineer
  • cybersecurity
  • SAST
  • DAST
  • IAST
  • OWASP
  • Java
  • Python
  • CI/CD
  • Jenkins
  • GitLab
  • AWS cloud security
  • GWAPT
  • OSWE
  • CISSP
  • CSSLP
  • DevSecOps

Summary

Hello,

Greetings.!

This is Hima from Appridat Solutions LLC. I was reviewing your resume online and would like to talk to you regarding an exciting opportunity for Application Security Engineer at Rockville, MD or McLean, VA. We have with one of Appridat Solutions LLC premier clients.

Title: Application Security Engineer

Location: Rockville, MD or McLean, VA (Hybrid 3 days onsite with 2 days remote)

Duration: 6 Months with possible extension

Interview process: Prescreen, Phone, Onsite panel

Job Summary:

The Senior Application Security Engineer is responsible for designing, implementing, and advancing application security practices across the Software Development Life Cycle (SDLC). This role partners closely with engineering, DevOps, and security teams to identify vulnerabilities, support remediation efforts, evaluate security tooling, and strengthen secure development practices.

The ideal candidate brings strong hands-on application security expertise, experience integrating security into CI/CD pipelines, and the ability to leverage modern automation and GenAI technologies to scale secure code review and vulnerability analysis capabilities.

Key Responsibilities

Perform application security assessments, manual penetration testing, and vulnerability validation using tools such as Burp Suite and other proxy/security testing tools.

Analyze and triage findings from SAST, DAST, IAST, IaC, and secrets detection tools to identify, prioritize, and support remediation of security vulnerabilities.

Partner with engineering teams to integrate security controls and testing into CI/CD pipelines in support of DevSecOps initiatives.

Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis.

Evaluate, recommend, and implement application security tools and technologies, including emerging capabilities related to automated code analysis and cloud security.

Perform AWS configuration and cloud security reviews to ensure adherence to security best practices and compliance standards.

Develop and maintain documentation related to security findings, remediation activities, risk assessments, and compliance requirements.

Contribute to the development, interpretation, and enforcement of application security policies, standards, and procedures.

Support enterprise security compliance initiatives and participate in audit and risk management activities.

Deliver security awareness training and educate developers and QA engineers on common application security risks, secure coding practices, and remediation techniques.

Stay current on emerging threats, vulnerabilities, attack techniques, and security technologies to continuously improve the organization's security posture.

Required Qualifications

Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, or a related technical field.

5+ years of experience in cybersecurity with a strong focus on application security.

Hands-on experience with SAST, DAST, IAST, and related application security testing methodologies and tools.

Strong understanding of OWASP Top 10 vulnerabilities, secure coding principles, and remediation strategies.

Experience performing manual penetration testing and application vulnerability assessments.

Proficiency in one or more programming or scripting languages such as Java, Python, or JavaScript.

Experience integrating security tooling into CI/CD pipelines using platforms such as Jenkins and GitLab.

Strong knowledge of security engineering concepts including authentication, authorization, cryptography, network security, and secure application architecture.

Experience with AWS cloud security concepts, services, and configuration reviews.

Excellent communication skills with the ability to collaborate effectively across engineering and security teams.

Preferred Qualifications

Background in software engineering or application development.

Familiarity with GenAI-assisted security tooling and automated code analysis solutions.

Experience with Infrastructure as Code (IaC) security scanning and secrets management tools.

Experience conducting infrastructure or application-level vulnerability testing and security auditing.

Industry certifications such as:

GWAPT

OSWE

Burp Suite Certified Practitioner

CISSP

CSSLP

Experience supporting enterprise DevSecOps transformation initiatives.

Technical Environment

Application Security: SAST, DAST, IAST, Secure Code Review

Cloud Platforms: AWS

CI/CD Tools: Jenkins, GitLab

Security Testing Tools: Burp Suite and related proxy/testing tools

Programming Languages: Java, Python, JavaScript

DevSecOps & Automation: Security pipeline integration, GenAI-assisted analysis

Regards,

Hima Bindu

Appridat solutions LLC.

5655 Peachtree Parkway, Suite 212, Peachtree Corners, GA 30092

PHONE:*533 | Fax

Direct:

Email:

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10107680
  • Position Id: 9048495
  • Posted 4 hours ago

Company Info

About FutureTech Consultants LLC

Company Overview


Founded in 1997, FutureTech is a leader in information technology (IT) and business process services with the expertise and capabilities to serve the needs of businesses of all sizes serving clients world-wide. FutureTech provides end-to-end services through our flexible and cost efficient delivery model that combines onsite and offsite operations. Rooted in quality processes and frameworks, our goal is to fully satisfy client objectives, serving as an accountable, flexible and objective partner.

FutureTech is headquartered in Norcross, Georgia and we have sales offices located in Chicago and Dallas. We also have development facilities in Hyderabad, India.

Services and Capabilities


From providing consulting and systems integration services to managing IT and business functions on behalf of our clients, FTC provides an all-encompassing offering that includes the planning, design, development, implementation and management of highly effective business and IT environments. Our global delivery capabilities include onsite and offshore options, giving our clients the flexibility to choose the model that best meets their needs.

Through our vertical expertise in financial, government, healthcare, telecommunications, utilities, manufacturing, distribution and retail services, we provide clients with a partner that is not only expert in IT, but expert in their industries. This combination of business knowledge and technology expertise allows us to help our clients adapt as their industries change.

About_Company_OneAbout_Company_Two
Contact the job poster
Siva Kumar

Siva Kumar

Delivery Manager @ FutureTech Consultants LLC
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

McLean, Virginia

2d ago

Easy Apply

Third Party, Contract

$60 - $70

Hybrid in Rockville, Maryland

Yesterday

Easy Apply

Contract, Third Party

Depends on Experience

Search all similar jobs