1

Application Security Engineer Jobs in Washington

The Application Security Engineer protects mission-critical web applications, application programming interfaces (APIs), and sensitive data by embedding security across the software development ...

Application Security Engineer

Washington, DC ยท On-site

$66.50 - $89/hr

Work with application developers ensure adoption of security principals and best practices. 6. Provides direction and support in security management and security architecture standards and ...

APPLICATION SECURITY ENGINEER

Fairfax, VA ยท On-site

$60 - $80.25/hr

Application Security Engineer Location: Onsite in Fairfax, VA 3 days and in Washington, DC 2 days per week. Duration: Long Term Contract Positions Require a Secret Clearance The Application Security ...

Application Security Engineer

Annapolis, MD ยท On-site

$58.25 - $77.75/hr

Ryder System, Inc. is seeking a highly motivated and experienced Application Security Engineer to join their growing security team. The role involves ensuring that the software development lifecycle ...

Application Security Engineer

Washington, DC ยท On-site

$66.25 - $88.50/hr

Ryder System, Inc. is seeking a highly motivated and experienced Application Security Engineer to join their growing security team. The role involves ensuring that the software development lifecycle ...

Application Security Engineer

Herndon, VA ยท Remote

$60.50 - $80.75/hr

Application Security Engineer Company: VivSoft Work Type: Remote Employment: Full Time Location: US Seniority: Mid Level Technologies: GitHub Actions, SAST, DAST, SCA, OWASP Requirements: Experience ...

Application Security Engineer

Washington, DC ยท On-site

$66.50 - $89/hr

Application Security Engineer Location: Washington, DC * Support PeopleSoft HCM/FSCM/ELM/CRM/EPM application security. * Implement specifically SSO for Oracle ELM, HCM and Finance PeopleSoft Modules ...

Application Security Engineer

Herndon, VA ยท Hybrid

$60.25 - $80.75/hr

Minimum of 5 years experience working "hands-on" in application security engineering * Hands-on experience with Fortify, Veracode, Tenable, Black Duck, or similar platforms * Hands-on experience with ...

Application Security Engineer

Washington, DC ยท On-site +1

$180K - $200K/yr

As an application security engineer you will help our engineering teams maintain and develop our product, and directly have impact in a security centric company and product. An ideal candidate is ...

As an application security engineer you will help our engineering teams maintain and develop our product, and directly have impact in a security centric company and product. An ideal candidate is ...

Application Security Engineer

Ashburn, VA ยท On-site

$107K - $195K/yr

Primary Responsibilities Leidos is looking for an Application Security Engineer to support: Application Security Operations and Maintenance, Application Security Configuration Management and ...

Application Security Engineer

Ashburn, VA ยท On-site

$107K - $195K/yr

Primary Responsibilities Leidos is looking for an Application Security Engineer to support: Application Security Operations and Maintenance, Application Security Configuration Management and ...

next page

Showing results 1-20

Application Security Engineer information

See Washington salary details

$33

$75

$109

How much do application security engineer jobs pay per hour?

As of Aug 15, 2026, the average hourly pay for application security engineer in Washington is $75.21, according to ZipRecruiter salary data. Most workers in this role earn between $63.99 and $85.48 per hour, depending on experience, location, and employer.

What does an application security engineer do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by application security engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an application security engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an application security engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Washington?

The most popular types of Application Security Engineer jobs in Washington are:

What are popular job titles related to Application Security Engineer jobs in Washington?

For Application Security Engineer jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Application Security Engineer jobs in Washington look for?

The top searched job categories for Application Security Engineer jobs in Washington are:

What cities in Washington are hiring for Application Security Engineer jobs?

Cities in Washington with the most Application Security Engineer job openings:

What are popular job titles related to Application Security Engineer jobs in WA?

For Application Security Engineer jobs in WA, the most frequently searched job titles are:

Infographic showing various Application Security Engineer job openings in Washington as of August 2026, with employment types broken down into 77% Full Time, 19% Part Time, and 4% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $156,430 per year, or $75.2 per hour.

Application Security Engineer

Spry Methods

Washington, DC โ€ข On-site

$155K/yr

Contractor

Medical, Dental, Vision, Retirement, PTO

This job post hasย expired 1 day ago.ย Applications are no longer accepted.


Job description

Company Overview

Spry Methods is a proven provider of mission-focused technology, cybersecurity, and program management solutions supporting critical Federal and DoD missions. We specialize in delivering integrated, high-impact solutions across cyber operations, enterprise resource management, and mission support services. Our culture emphasizes collaboration, accountability, and innovation - empowering our teams to deliver meaningful outcomes in complex, high-security environments. 


Who Weโ€™re Looking For (Position Overview):

The Application Security Engineer protects mission-critical web applications, application programming interfaces (APIs), and sensitive data by embedding security across the software development lifecycle. This role combines application security engineering, secure software development, vulnerability remediation, monitoring, and compliance support.   

\\n


What Your Day-To-Day Looks Like (Position Responsibilities):
  • Identify, analyze, and remediate critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations in web applications and APIs. 

  • Drive the vulnerability lifecycle through threat modeling, security assessments, and technical validation of remediation actions. 

  • Support secure design patterns, data protection mechanisms, and secure communication protocols across applications and supporting services. 

  • Review and analyze web server and application logs to detect anomalies and indicators of compromise. 

  • Implement automation scripts for threat intelligence integration and application security monitoring. 

  • Participate in audits, risk assessments, and security authorization activities tied to federal frameworks. 


What You Need to Succeed (Minimum Requirements):
  • Minimum of three years of experience in web application security, application security engineering, or secure software development lifecycle work. 

  • Hands-on experience in secure software development, DevSecOps automation, and vulnerability remediation. 

  • Proven experience with .NET technologies, HTML5, CSS3, JavaScript, representational state transfer (REST) APIs, and structured query language (SQL). 

  • Ability to leverage AI-assisted development tools and scripting languages to automate monitoring and compliance efforts. 

  • Strong understanding of the Open Worldwide Application Security Project (OWASP) Top 10, secure coding standards, web application firewalls (WAFs), file integrity monitoring, and security testing tools. 

  • Ability to perform risk assessments and provide remediation guidance for core systems and dependencies. 

  • Bachelor\'s degree or higher in computer science, cybersecurity, information systems, engineering, or a related field. 

  • Ability to meet federal screening and suitability requirements prior to start. 

  • Current security certifications maintained for a minimum of five years: 

    • Specialized AppSec:
      • Certified Secure Software Lifecyle Professional (CSSLP)
      • GIAC Certified Web Application Defender (GWEB)
      • EC-Council Certified Application Security Engineer (CASE)
    • Offensive Security:
      • OffSec Web Expert (OSWE)
      • Offensive Security Certified Professional (OSCP)
    • Foundational Security:
      • Security+
      • GSEC


Ideally, You Also Have (Preferred Qualifications):
  • In-depth experience with federal cybersecurity frameworks and authorization processes. 

  • Experience with threat modeling, resilient security architecture, cloud security, and container security. 


\\n$135,000 - $155,000 a yearFinal compensation will be based on experience, qualifications, certifications, clearance level, and contract requirements. This position is contingent upon contract award.\\n

Perks of Working for Us (Benefits):

Medical Coverage โ€“ Cigna - 4 Options

- Traditional - PPO Open Access Plus Network

- (2) HDHP - PPO Open Access Plus Network

- HDHP - EPO Open Access Plus Network

Dental Coverage โ€“ Cigna - PPO Base & Buy-Up Plans

Vision Coverage โ€“ Principal - VSP Choice Network

Paid Holidays: Full-time employees receive 11 paid federal holidays

Paid Time Off (PTO) โ€“ PTO accrual starts at 15 days per year

Training Benefit โ€“ Annual training allowance available toward any job-related training or education

401(k) โ€“ Multiple Fund Choices through Fidelity with a company match

For our full list of benefits, please visit http://www.sprymethods.com/careers/benefits/

EEO Statement

At Spry, we believe talented and dedicated employees are our most valued assets and the foundation of our success. We are committed to crafting a diverse and inclusive workplace that endorses engagement, creativity, quality and innovation.

We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.