Application Security Engineer

Ascii Group, LLC
McLean, VA, United States
3 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$145,600.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) JavaScript (Programming Language) Code Review Github Open Web Application Security Systems Development Life Cycle Secure Coding Software Engineering SonarQube TypeScript Software Vulnerability Management Spring-boot
+11 more
Sonatype Software Security Veracode AngularJS Checkmarx Software Coding Restful APIs Devsecops Static Application Security Testing Microservices Dynamic Application Security Testing

Job description

  • Lead security remediation efforts across multiple VTS engineering teams.

  • Analyze findings from ArmorCode, Contrast, Snyk, SonarQube, and related security tools.

  • Prioritize, track, and drive closure of security vulnerabilities.

  • Perform hands-on coding and implement security fixes in Java/Spring Boot and Angular applications.

  • Conduct code reviews and recommend secure coding practices.

  • Develop reusable remediation patterns to reduce vulnerabilities across multiple applications.

  • Collaborate with engineering, architecture, and security teams.

  • Lead and mentor a 3-5 member security remediation team.

  • Provide status updates, dashboards, and executive-level reporting.

Requirements

  • 10+ years of software engineering experience.

  • Strong hands-on expertise in Java, Spring Boot, Angular, JavaScript/TypeScript, REST APIs, and Microservices.

  • Experience working with GitHub, CI/CD pipelines, and modern software delivery practices.

  • Deep understanding of OWASP Top 10, Secure SDLC, DevSecOps, SAST, DAST, and vulnerability management.

  • Experience with security tools such as ArmorCode, Contrast Security, Snyk, Veracode, Checkmarx, or SonarQube.

  • Strong leadership, communication, and stakeholder management skills.

Must Have Skills:

Vulnerability Management & Healthcare Security

Governance Change

Management Software Security

Java / Spring Boot / Angular

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:15 min

Correlating OpenSSF scorecard metrics with real vulnerability data

Niels Tanis Niels Tanis · World Congress 2024

4:37 min

Executing verified publishing workflows on Sonatype Maven Central

Johan Hutting Johan Hutting · World Congress 2024

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

2:41 min

Dynamic application security testing during the test phase

Milecia Mcgregor · LIVE

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

Videos

See all

Related articles

See all