1

Application Security Engineer Jobs in Washington

Application Security Engineer

Washington, DC ยท On-site

$66.50 - $89/hr

MBL Technologies is seeking an experienced Application Security Engineer to support the security and integrity of enterprise applications within a federal environment. This role will focus on ...

Application Security Engineer

Hanover, MD ยท On-site

$58 - $77.25/hr

The Application Security (AppSec) Engineer will leverage their strong technical background and knowledge to support software assurance and security initiatives for a mission-critical organization ...

Application Security Engineer

Hanover, MD ยท On-site

$165K - $295K/yr

The Application Security (AppSec) Engineer will leverage their strong technical background and knowledge to support software assurance and security initiatives for a mission-critical organization ...

The Application Security (AppSec) Engineer will leverage their strong technical background and knowledge to support software assurance and security initiatives for a mission-critical organization ...

next page

Showing results 1-20

Application Security Engineer information

See Washington salary details

$33

$75

$109

How much do application security engineer jobs pay per hour?

As of Jun 14, 2026, the average hourly pay for application security engineer in Washington is $75.21, according to ZipRecruiter salary data. Most workers in this role earn between $63.99 and $85.48 per hour, depending on experience, location, and employer.

What Does an Application Security Engineer Do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by Application Security Engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an Application Security Engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an Application Security Engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Washington? The most popular types of Application Security Engineer jobs in Washington are:
What are popular job titles related to Application Security Engineer jobs in Washington? For Application Security Engineer jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Application Security Engineer jobs in Washington look for? The top searched job categories for Application Security Engineer jobs in Washington are:
What cities in Washington are hiring for Application Security Engineer jobs? Cities in Washington with the most Application Security Engineer job openings:
What are popular job titles related to Application Security Engineer jobs in WA? For Application Security Engineer jobs in WA, the most frequently searched job titles are:
Infographic showing various Application Security Engineer job openings in Washington as of June 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution, with an average salary of $156,430 per year, or $75.2 per hour.
Application Security Engineer

Application Security Engineer

MBL Technologies

Washington, DC โ€ข On-site

$66.50 - $89/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Job description

Description

MBL Technologies, Inc. offers a diverse set of management and technology consulting services to Federal government and commercial markets. Our solutions are tailored to support each client's mission, accounting for their unique needs and operating environments to ensure success. We bring the right people, capabilities, and expertise together to assist our clients with enabling their mission. Together our individual differences drive successful business results.


If you are transitioning from military to civilian life, have prior service, are a retired veteran, or a member of the National Guard or Reserves, or spouse of an active military service member, we encourage you to apply. Please visit our webpage for information on our policies and benefits for the military and veteran community.


Why Work with Us?

  • We trust, empower, and believe in our employees to soar to their fullest potential!ย 
  • We offer a robust benefits package (medical, dental, vision, STD, Accident, Life, Hospital Insurance, FSA, HSA, 401K match, professional development stipend, etc.).
  • We love to have fun and give back to the community. Community Service and Employee Engagement events are atop our calendar events!

MBL Technologies is seeking an experienced Application Security Engineer to support the security and integrity of enterprise applications within a federal environment. This role will focus on identifying, analyzing, and mitigating application security vulnerabilities through the use of industry-standard tools and best practices, with an emphasis on both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST).


The ideal candidate will have hands-on experience with Burp Suite Enterprise for DAST scanning and Veracode for SAST analysis, along with a strong understanding of secure coding practices, vulnerability management, and federal security compliance frameworks.


Key Responsibilities: ย 

  • Perform DAST scanning using Burp Suite Enterprise, including configuration, execution, and analysis of scan results.ย 
  • Conduct SAST assessments using Veracode, identifying code-level vulnerabilities and recommending remediation strategies.ย 
  • Analyze and prioritize vulnerabilities based on risk, leveraging frameworks such as CVSS, CWE, OWASP Top 10, WASC, and SANS-25.ย 
  • Collaborate with development, DevOps, and security teams to integrate security into the SDLC and CI/CD pipelines.ย 
  • Provide guidance on secure coding practices and assist developers with vulnerability remediation.ย 
  • Support the implementation and maintenance of IDE security plug-ins and secure development tools.ย 
  • Troubleshoot application and connectivity issues within Linux-based environments.ย 
  • Contribute to the design and implementation of enterprise-wide application security controls.ย 
  • Ensure alignment with federal compliance standards, including NIST 800-53, FIPS, and FedRAMP.ย 
  • Stay current with emerging threats, vulnerabilities, and application security best practices.

ย Required Experience Skills & Qualifications: ย ย 

  • 6+ years of overall Information Technology experience.
  • 3+ years of experience supporting SAST, DAST, and IDE plug-in environments using Burp Suite (with emphasis on Burp Suite Enterprise for DAST).
  • Experience supporting SAST/DAST environments using Veracode.ย 
  • 3+ years of development experience with Java, Python,. NET, or C#.ย 
  • 3+ years of experience designing and implementing enterprise-wide security controls for applications and systems.ย 
  • Experience with development environments such as Eclipse, JDeveloper, or Visual Studio, including pipeline integrationย 
  • Strong understanding of application security principles and vulnerability frameworks (OWASP Top 10, CVSS, CWE, WASC, SANS-25).ย 
  • Knowledge of federal security and compliance standards (NIST 800-53, FIPS, FedRAMP).ย 
  • 3+ years of experience working in Linux-based environments, including troubleshooting application and connectivity issues.ย 
  • Ability to obtain a security clearance.ย 
  • Bachelor's degree in Information Technology, Computer Science, or a related field.

ย Preferred Qualifications:ย 

  • Experience integrating security tools into CI/CD pipelines.
  • Familiarity with container security, cloud environments, or DevSecOps practices.ย 
  • Experience supporting federal agencies or government contracting environments.ย 
  • Strong scripting or automation experience (e.g., Bash, Python).


MILITARY OCCUPATIONAL SPECIALTY CODES (MOS codes):

170A, 170D, 17A, 17B, 17C, 17D, 24B, 25B, 47D, 94F, IT, 17 5309, 6203, 9735, 9740, 9890, 9891ย ย ย ย 

CORPORATE CITIZEN:

MBL Technologies' vision is to make a positive difference - for our people, our customers, and our communities. As such, a commitment to service and excellence has been woven into the very fabric of our culture. MBL employees demonstrate a willingness to consistently go above and beyond and strive for excellence in all we do - championing, protecting, and celebrating the core business through the mission, vision, and values. All are expected to be good corporate citizens, supporting one another and internal corporate initiatives to build a stable business platform and ensure lasting company success.

Benefits:

MBL Technologies offers a competitive salary adjusted for candidate qualifications partnered with an industry-leading benefits package. This package includes incentive plans with corporate and individual-based performance bonuses, 401K, PTO, remote work, health and wellness programs, employee discounts, and learning and development reimbursement.

EEO STATEMENT:

MBL Technologies is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or protected veteran status.