> Markdown version of [/jobs/ext/1489106-application-security-senior-manager](https://www.wearedevelopers.com/jobs/ext/1489106-application-security-senior-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Senior Manager - **Company:** Booz Allen Hamilton Inc. - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $125,300.0 - $233,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Applications Architecture, Code Review, Cyber Security, Programming Tools, Open Web Application Security, Systems Development Life Cycle, Software Engineering, Software Vulnerability Management, Software Security, Reliability of Systems, Operational Systems, Static Application Security Testing, Dynamic Application Security Testing - **Published:** July 29, 2026 - **Apply:** https://justjobs.com/main/sendform/8/8/28176/1/17733125?backUrl=%2Fcareer%2F17733125%2FApplication-Security-Senior-Manager-D-C-Washington ## About the Role * 10+ years of experience with application development and developing, architecting, and implementing software security solutions * 5+ years of experience leading technical teams in an Application Security field * Experience managing across SDLC, including vulnerability management considerations, threat modeling, and modern development tools and frameworks * Experience in application security testing methodologies, including DAST, SAST, IAST, and SCA * Experience with the integration of common infrastructure security technologies and solutions into business solution architectures * Experience developing and securing software with code scanning tools and CI/CD pipelines * Experience with AI scanning and Frontier models such as Mythos * Knowledge of OWASP Top 10 Vulnerabilities and prevention techniques and technology, security, risk, and compliance best practices * Bachelor's degree Nice If You Have: * Knowledge of common security frameworks, including OWASP and NIST * Ability to create collaborative relationships with colleagues and influence without authority ## Description Establish and grow Booz Allen's Application Security practice as part of a team.Define the Application Security team's direction, standards, and requirements for services and solutions sold to Booz Allen Commercial customers. Enable businesses to understand risks and overall security posture of their application constructs. Educate and influence client software engineering teams on cybersecurity best practices. Assist clients to establish Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) relevant to their product and market goals around cybersecurity assurance.Work proactively with leaders across all levels to design, implement, and support solutions that ensure clients have a secure-by-design and best practice approach across the full application security lifecycle in addition to working jointly with leaders across application development, technical and enterprise architecture, software reliability, and cybersecurity to ensure application architectures and designs properly consider security best practices.Lead, hire, and inspire teams of Application Security Engineers and Architects to perform security posture assessments of development and operational systems and provide recommendation and remediation plans along with development, implementation, and support of operational models supporting solutions and services meeting client requirements. Integrate latest Frontier AI solutions into client environments and to assist with delivery. Lead the business development and sales activities related to Application Security. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [AI Pair Programming with GitHub Copilot at SAP: Looking Back, Looking Forward!](https://www.wearedevelopers.com/videos/1546-ai-pair-programming-with-github-copilot-at-sap-looking-back-looking-forward) - [Security Blindspots and How to Learn About Them - Anna Oliveira](https://www.wearedevelopers.com/videos/1754-security-blindspots-and-how-to-learn-about-them-anna-oliveira) - [Why Security-First Development Helps You Ship Better Software Faster](https://www.wearedevelopers.com/videos/1568-why-security-first-development-helps-you-ship-better-software-faster) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)