Web Developer Security Engineer

Ardent, Inc.
Washington, DC, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security JavaScript (Programming Language) .NET Framework Application Programming Interfaces (APIs) Application Firewall HTML5 C Sharp (Programming Language) Cascading Style Sheets (CSS) Cloud Computing Security Cyber Security Information Systems System Configuration
+22 more
Monitoring of Systems Web Servers Intrusion Detection and Prevention Intrusion Detection Systems Log Analysis Open Web Application Security Secure Coding Web Application Security Security Software Security Information and Event Management Software Engineering SQL Databases Systems Integration Software Vulnerability Management Web Applications Cloud Platform System Software Security Information Technology Cybercrime Restful APIs Devsecops Docker

Job description

Ardent is seeking a Web Developer Security Engineer to support the security of mission-critical web applications, APIs, and supporting cloud environments. This role will focus on integrating security throughout the software development lifecycle, identifying and remediating application vulnerabilities, supporting compliance initiatives, and implementing security controls that help ensure applications remain resilient against evolving cyber threats.

The Web Developer Security Engineer will work closely with development, cybersecurity, infrastructure, and operations teams to support secure application design, vulnerability management, threat detection, incident response, and DevSecOps initiatives.

Responsibilities and Duties:

  • Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses.
  • Support vulnerability management activities throughout the software development lifecycle, including threat modeling, security assessments, remediation validation, and risk reduction efforts.
  • Integrate security controls into web applications, APIs, and supporting services using secure-by-design principles.
  • Support implementation of secure communication protocols, data protection mechanisms, and application security controls.
  • Obtain, review, and analyze web server and application logs to identify anomalies and indicators of compromise.
  • Support incident response activities related to web application security events and investigations.
  • Develop automation scripts and processes to improve threat detection, security monitoring, and compliance reporting.
  • Maintain documentation related to findings, remediation activities, security controls, and operational procedures.
  • Support compliance with federal cybersecurity frameworks including NIST SP 800-53, FISMA, and FedRAMP requirements.
  • Participate in audits, risk assessments, security reviews, and authorization activities.
  • Collaborate with cross-functional teams to improve application security posture and support continuous security enhancements.
  • Support implementation of DevSecOps practices and security controls throughout CI/CD pipelines.

Requirements

Do you have experience in Web applications?, * Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, or related field.

  • Minimum of 5 years of experience supporting Application Security, Web Application Security, Secure Software Development, DevSecOps, or related disciplines.
  • Experience supporting secure software development and vulnerability remediation activities.
  • Strong understanding of OWASP Top 10, secure coding standards, and web application security best practices.
  • Experience developing or supporting modern web applications utilizing technologies such as .NET, C#, HTML5, CSS3, JavaScript, REST APIs, and SQL.
  • Experience performing log analysis, security monitoring, and investigation of web application security events.
  • Experience deploying, configuring, and maintaining Web Application Firewalls (WAFs).
  • Experience supporting File Integrity Monitoring (FIM) solutions and security monitoring technologies.
  • Familiarity with security testing tools and technologies such as SIEM, IDS/IPS, EDR, NDR, or similar platforms.
  • Experience implementing DevSecOps principles and integrating security controls into CI/CD pipelines.
  • Ability to perform risk assessments, analyze cyber threats, and provide remediation recommendations.
  • Strong written and verbal communication skills.
  • Ability to work independently and collaboratively within multidisciplinary teams.
  • Ability to successfully complete and maintain a government background investigation.
  • Current security certification(s) such as:
  • CSSLP, GWEB, CASE, OSWE, OSCP, Security+, GSEC, or equivalent.

Preferred Qualifications:

  • Experience supporting federal government environments.
  • Experience supporting NIST SP 800-53, FISMA, FedRAMP, and security authorization activities.
  • Experience with threat modeling, security architecture reviews, and secure application design.
  • Experience implementing advanced DevSecOps practices and automated security controls.
  • Experience with AWS cloud security and container security technologies including Docker and Kubernetes.
  • Experience leveraging AI-assisted development tools to support security monitoring, automation, and compliance activities.
  • Experience developing security metrics, audit reporting, and compliance documentation.

Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process. We highly encourage all Veterans and those with disabilities to apply.

Benefits & conditions

Pulled from the full job description

  • Tuition reimbursement
  • Health insurance
  • Paid time off

Full job description

At Ardent, we hire people who want more than a job - they want to serve a mission that matters. Our teams support the federal government’s most critical national security and defense priorities, helping protect the nation, strengthen resilience, and advance the technologies and capabilities that keep America secure. For veterans, cleared professionals, and purpose-driven innovators, Ardent is a place to continue serving alongside a team that understands the importance of the mission and the people behind it.

We also know top talent has choices, which is why we back our mission with benefits and flexibility that stand out: competitive pay, comprehensive health coverage, flexible PTO, federal holidays off, tuition reimbursement, professional development support, wellness stipends, and a culture that values and rewards hard work, dedication, and adaptability. If you want to build something meaningful, while enjoying the kind of flexibility and support that you need to do your best work - Ardent is where your next mission begins.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:44 min

Playing synthesized backend audio objects in browsers

Lee Boonstra · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:58 min

Scaling security teams through developer advocates

Tanya Janca · WWC 2021

3:03 min

Building robust applications with standard web platforms

Dennie Declercq · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all