Application Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Kforce Inc · 17 hours ago

Application Security Engineer

Kforce Inc is seeking an Application Security Engineer for a client in McLean, VA. The role involves supporting Static and Dynamic Application Security Testing using tools like Veracode and Burp Suite, and requires experience in Linux environments and coding or scripting.

ConsultingEmploymentFinancial ServicesHuman ResourcesStaffing Agency
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode and Burp Suite
Designing and implementing enterprise-wide security controls to secure applications, systems, network, or infrastructure services
Working in Linux based environments, including navigating and troubleshooting basic website connectivity issues
Securing enterprise web applications and understanding OWASP Top 10, CVSS, CWE, WASC, and SANS-25
Ensuring compliance with federal standards, including NIST 800-53, FIPS, or FedRAMP

Qualification

VeracodeBurp SuiteStatic Application Security TestingDynamic Application Security TestingLinuxJavaPython.NETC#EclipseOWASP Top 10NIST 800-53SeleniumHackerOneBash scriptingOWASP ZAP

Required

Bachelors degree - IT related
6+ years of Information Technology experience
3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode and Burp Suite
3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services
2+ years of experience with Java, Python, .NET, or C#
2+ years experience working in Linux based environments, including navigating and troubleshooting basic website connectivity issues
Experience with Eclipse, JDeveloper, including pipeline development, or Visual Studio
Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25
Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP
Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information

Preferred

Experience with Interactive Application Security Testing (IAST) capabilities and tools
Experience with HackerOne
Experience with Selenium
Experience writing bash scripts
Experience with OWASP ZAP or Burp Proxy

Benefits

Medical/dental/vision insurance
HSA
FSA
401(k)
Life, disability & ADD insurance

Company

Kforce Inc

company-logo
Kforce is a solutions firm specializing in technology, finance and accounting, and professional staffing services.

Funding

Current Stage
Public Company
Total Funding
unknown
2024-05-20IPO
2014-06-08Acquired

Leadership Team

leader-logo
Aaron Travis
Digital Experience Delivery Director | Kforce Consulting Solutions
linkedin
Company data provided by crunchbase