1

Application Security Engineer Jobs in Washington

Application Security Engineer (REMOTE)

Glen Burnie, MD ยท Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Application Security Engineer (REMOTE)

Washington, DC ยท Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Application Security Engineer (REMOTE)

Centreville, VA ยท Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Showing results 21-40

Application Security Engineer information

See Washington salary details

$33

$75

$109

How much do application security engineer jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for application security engineer in Washington is $75.21, according to ZipRecruiter salary data. Most workers in this role earn between $63.99 and $85.48 per hour, depending on experience, location, and employer.

What does an application security engineer do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by application security engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an application security engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an application security engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Washington?

The most popular types of Application Security Engineer jobs in Washington are:

What are popular job titles related to Application Security Engineer jobs in Washington?

For Application Security Engineer jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Application Security Engineer jobs in Washington look for?

The top searched job categories for Application Security Engineer jobs in Washington are:

What cities in Washington are hiring for Application Security Engineer jobs?

Cities in Washington with the most Application Security Engineer job openings:

What are popular job titles related to Application Security Engineer jobs in WA?

For Application Security Engineer jobs in WA, the most frequently searched job titles are:

Infographic showing various Application Security Engineer job openings in Washington as of August 2026, with employment types broken down into 77% Full Time, 19% Part Time, and 4% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $156,430 per year, or $75.2 per hour.

Application Security Engineer 3

Bloomberg Industry Group

Arlington, VA โ€ข On-site

$155K - $185K/yr

Full-time

Re-posted 9 days ago


Job description

Responsible for leading application security engineering efforts, designing scalable security architectures, performing advanced risk assessments, integrating security across the SDLC, driving AI-related security controls, evaluating vendor solutions, scaling automation, and contributing to incident response and strategic security improvements.
About the Team:
Bloomberg Industry Group's Application Security team is focused on providing best-in-class security for all internal and external applications. We are constantly evolving our security practices to tackle modern-day threats and ensure our applications remain secure.
Job Summary:
As an Application Security Engineer III, you will lead security engineering initiatives, perform advanced risk assessments, and design scalable security controls across critical applications. You will serve as a subject matter expert (SME) in application, guiding engineering teams, influencing security strategy, and driving automation across the SDLC.
This role requires deep technical expertise, leadership potential, and the ability to shape long-term Application Security direction.
What You Will Do:
  • Design and implement security architectures and controls for large-scale, cloud-native applications.
  • Conduct in-depth risk assessments, including penetration testing and code reviews.
  • Collaborate with developers and DevOps teams to integrate security at all stages of the software development lifecycle (SDLC).
  • Drive security for AI-powered features by defining secure architectures, assessing AI/ML risks, and implementing advanced testing and controls for AI models, agents, and MCP servers.
  • Identify areas of improvements in security tools and practices, and remediate the identified gap by implementing innovative solutions.
  • Evaluate third-party security tools and vendor-provided controls for technical effectiveness, enterprise fit, and alignment with organization's security architecture and standards.
  • Collaborate with vendors to provide actionable technical feedback, drive product improvements, and ensure controls are implemented and configured appropriately for Bloomberg Industry Group's environment.
  • Build, improve, and scale security automation, integrating tooling across CI/CD pipelines and cloud platforms.
  • Provide guidance to junior engineers and cross-functional teams on security best practices.
  • Participate in incident response efforts and investigations into security incidents.
  • Stay ahead of the curve by keeping informed of industry trends and emerging threats, applying this knowledge to continually improve security.

You Need to Have:
  • Deep expertise in application security, secure software design, and risk management, including frameworks such as OWASP ASVS, OWASP Top 10, and NIST 800-53.
  • Extensive experience conducting complex security assessments and building automated security controls for large engineering environments.
  • Proficiency in multiple programming languages (e.g., Python, Java, JavaScript) and hands-on experience with SAST, DAST, SCA, IaC, container, and cloud security tools.
  • Strong understanding of modern architectures (cloud-native, microservices, Kubernetes, containers, serverless) and DevSecOps processes.
  • Advanced understanding of AI/ML security, including model vulnerability analysis, AI threat modeling, secure LLM integration patterns, and familiarity with NIST AI RMF or OWASP Top 10 for LLMs.
  • 5-7 years of relevant experience in Application Security, AppSec engineering, Cloud Security, or Software Engineering.

We would Love to See:
  • Certifications such as
  • AWS Certified Security - Specialty
  • CSSLP or CISSP
  • Certified DevSecOps Expert (CDE) or equivalent
  • A bachelor's degree in information security, Computer Science, or a related field, or equivalent experience.

Compensation Range:
$155,000.00-$185,000.00
Placement in the salary range will be decided upon completion of the interview process. Salary determination will be determined based on factors including but not limited to relevant experience, demonstrated skills related to the requirements of the role, education, certifications, and geographic location.
Equal Opportunity
Bloomberg Industry Group maintains a continuing policy of non-discrimination in employment. It is Bloomberg Industry Group's policy to provide equal opportunity and access for all persons, and the Company is committed to attracting, retaining, developing, and promoting the most qualified individuals without regard to age, ancestry, color, gender identity or expression, genetic predisposition or carrier status, marital status, national or ethnic origin, race, religion or belief, sex, sexual orientation, sexual and other reproductive health decisions, parental or caring status, physical or mental disability, pregnancy or maternity/parental leave, protected veteran status, status as a victim of domestic violence, or any other classification protected by applicable law ("Protected Characteristic"). Bloomberg prohibits treating applicants or employees less favorably in connection with the terms and conditions of employment, in all phases of the employment process, because of one or more Protected Characteristics ("Discrimination").