Web Application Security Testing Team Lead Location: National Capital Region Security Clearance: Secret Duties and Responsibilities The Web Application Security Testing Team Lead supports this ...
Web Application Security Testing Team Lead Location: National Capital Region Security Clearance: Secret Duties and Responsibilities The Web Application Security Testing Team Lead supports this ...
SAP NS2 Application Security-Onsite - Chantilly, VA Must be able to obtain and maintain a clearance SAP is the global market leader for business software and related services. SAP National Security ...
SAP NS2 Application Security-Onsite - Chantilly, VA Must be able to obtain and maintain a clearance SAP is the global market leader for business software and related services. SAP National Security ...
SAP NS2 Application Security-Onsite - Chantilly, VA Must be able to obtain and maintain a clearance SAP is the global market leader for business software and related services. SAP National Security ...
SAP NS2 Application Security-Onsite - Chantilly, VA Must be able to obtain and maintain a clearance SAP is the global market leader for business software and related services. SAP National Security ...
The ideal candidate combines strong software development experience with application security engineering expertise and has hands-on experience implementing secure coding practices, threat modeling ...
The ideal candidate combines strong software development experience with application security engineering expertise and has hands-on experience implementing secure coding practices, threat modeling ...
AppSec Security Engineer
$67.50 - $90.25/hr
None POSITION SUMMARY STATEMENT We are seeking an experienced Application Security Engineer to build, mature, and scale our AppSec program. In this role, you will embed directly with our Product and ...
AppSec Security Engineer
$67.50 - $90.25/hr
None POSITION SUMMARY STATEMENT We are seeking an experienced Application Security Engineer to build, mature, and scale our AppSec program. In this role, you will embed directly with our Product and ...
SAP Application Security and GRC Analyst (Sr.) - U.S. Citizenship Required Category: ERP/CRM/Tools Main location: United States, Virginia, Fairfax Alternate Location(s): United States, Louisiana ...
SAP Application Security and GRC Analyst (Sr.) - U.S. Citizenship Required Category: ERP/CRM/Tools Main location: United States, Virginia, Fairfax Alternate Location(s): United States, Louisiana ...
The work The Application Security Lead is responsible for leading the endtoend security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO processes ...
The work The Application Security Lead is responsible for leading the endtoend security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO processes ...
Security Specialist
Arlington, VA · On-site
The Application Security Lead is responsible for leading the end-to-end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO processes, and ...
Security Specialist
Arlington, VA · On-site
The Application Security Lead is responsible for leading the end-to-end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO processes, and ...
The work The Application Security Lead is responsible for leading the end‑to‑end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO ...
The work The Application Security Lead is responsible for leading the end‑to‑end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO ...
Security Specialist
Arlington, VA · On-site
The work The Application Security Lead is responsible for leading the end‑to‑end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO ...
Security Specialist
Arlington, VA · On-site
The work The Application Security Lead is responsible for leading the end‑to‑end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO ...
Security Specialist
Arlington, VA · On-site
The Application Security Lead partners with product, engineering, cloud, and compliance teams to understand system requirements and implement secure-by-design solutions. This role develops and ...
Security Specialist
Arlington, VA · On-site
The Application Security Lead partners with product, engineering, cloud, and compliance teams to understand system requirements and implement secure-by-design solutions. This role develops and ...
SAP Application Security Lead - U.S. Citizenship Required Category: Cyber Security Main location: United States, Virginia, Lebanon Position ID:J0726-1566 Employment Type: Full Time U.S. - CGI Federal ...
SAP Application Security Lead - U.S. Citizenship Required Category: Cyber Security Main location: United States, Virginia, Lebanon Position ID:J0726-1566 Employment Type: Full Time U.S. - CGI Federal ...
SAP Application Security Lead - U.S. Citizenship Required Category: ERP/CRM/Tools Main location: United States, Virginia, Fairfax Alternate Location(s): United States, Louisiana, Lafayette United ...
SAP Application Security Lead - U.S. Citizenship Required Category: ERP/CRM/Tools Main location: United States, Virginia, Fairfax Alternate Location(s): United States, Louisiana, Lafayette United ...
Senior Security Engineer Product Security
Sterling, VA · On-site
$176 - $242/hr
Engineer systems and internal security tools to improve application security across all FalconX via SSDLC improvements. * Interface with Engineering on the security of FalconX's software products ...
Senior Security Engineer Product Security
Sterling, VA · On-site
$176 - $242/hr
Engineer systems and internal security tools to improve application security across all FalconX via SSDLC improvements. * Interface with Engineering on the security of FalconX's software products ...
DevSecOps Engineer
Arlington, VA · On-site
$67.50 - $90.25/hr
Integrate automated security testing tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and container ...
DevSecOps Engineer
Arlington, VA · On-site
$67.50 - $90.25/hr
Integrate automated security testing tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and container ...
Information Security SME
Arlington, VA · On-site
Innovate new application security testing methods and support team effort to leverage tools and develop effective process to automate the security test cases. * Serves as a Subject Matter Expert (SME ...
Information Security SME
Arlington, VA · On-site
Innovate new application security testing methods and support team effort to leverage tools and develop effective process to automate the security test cases. * Serves as a Subject Matter Expert (SME ...
CompTIA Network+ certification having excellent understanding of Networking topologies CompTIA Security+ certification having excellent understanding of Network and Application security Hands-on ...
CompTIA Network+ certification having excellent understanding of Networking topologies CompTIA Security+ certification having excellent understanding of Network and Application security Hands-on ...
Application Penetration Tester
Chantilly, VA · On-site
$62K - $141K/yr
Perform web application security testing, network penetration testing, and cloud penetration testing. Develop comprehensive and accurate reports, and presentations for both technical and executive ...
Application Penetration Tester
Chantilly, VA · On-site
$62K - $141K/yr
Perform web application security testing, network penetration testing, and cloud penetration testing. Develop comprehensive and accurate reports, and presentations for both technical and executive ...
Application Penetration Tester
Chantilly, VA · On-site
$62K - $141K/yr
Perform web application security testing, network penetration testing, and cloud penetration testing. Develop comprehensive and accurate reports, and presentations for both technical and executive ...
Application Penetration Tester
Chantilly, VA · On-site
$62K - $141K/yr
Perform web application security testing, network penetration testing, and cloud penetration testing. Develop comprehensive and accurate reports, and presentations for both technical and executive ...
Application Security Analyst Location: Vienna, VA Contract Length: 6 months+ Interview Process: Phone, to in person- will hire off video chat if out of the area Hourly Rate: $50-55/hour MAX ...
Application Security Analyst Location: Vienna, VA Contract Length: 6 months+ Interview Process: Phone, to in person- will hire off video chat if out of the area Hourly Rate: $50-55/hour MAX ...
Application Security information
What is the difference between Application Security vs Security Analyst?
| Aspect | Application Security | Security Analyst |
|---|---|---|
| Primary Focus | Securing software applications and code | Monitoring and analyzing overall security threats |
| Certifications | CSSLP, CEH, CISSP | CISSP, Security+, CEH |
| Work Environment | Development teams, software projects | Security operations centers, incident response |
| Industry Usage | Tech, finance, healthcare | All industries, including government and corporate |
Application Security specialists focus on protecting software applications through secure coding practices, vulnerability assessments, and security testing. Security Analysts monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity field, Application Security is more development-oriented, whereas Security Analysts focus on threat detection and response.
What are some common challenges faced by professionals working in application security roles?
How to become an application security?
What is application security?
What are the key skills and qualifications needed to thrive as an application security professional?
What are examples of application security?

Job description
gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:
- National Security Programs
- Professional, Administrative, and Management Support
- Mission and Warfighter Support
We are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.
Requisition Type: Full Time
Position Status: Contingent
Position Title: Web Application Security Testing Team Lead
Location: National Capital Region
Security Clearance: Secret
Duties and ResponsibilitiesThe Web Application Security Testing Team Lead supports this Transportation Security Administration Information Technology (TSA IT) Task Order (TO) by web application testing that require testing both via automated tools and with manual testing techniques. Application testing will require authenticated and non-authenticated testing to ensure full evaluation of the cybersecurity controls for the applications. Off hours testing conducted on a as needed basis. Periodic travel required.
Team duties include the following:
- Become, and remain, familiar with TSA and DHS security policies and Technical Standards relating to web applications and web application development to facilitate effective security assessments. Make recommendations for updates, additions, and modifications to TSA security policy as gaps or deficiencies in security policy are identified.
- Engage with testing engagement stakeholders to gather all required information needed to create detailed test plans.
- Conduct security testing of web applications and services (and other web-related assets) using both Information Assurance and Cybersecurity Division (IAD)-provided automated testing tools and manual testing techniques.
- Troubleshoot any technical issues preventing successful completion of testing engagements within the scheduled time allotted for the engagement (i.e. insufficient credentials, proxy blocking, accounts blocked/expired, etc.).
- Participate in findings meetings to review and provide input on the validity of application stakeholder responses to IAD findings.
- Recommend adjustments of finding validity (valid or false positive) and severity (high, medium, low) to Governance, Risk, and Compliance (GRC) Portfolio Managers and Primary Assessors based on stakeholder responses.
- Review application stakeholder mitigation or remediation actions to address valid findings to assist IAD with determining the applicability and effectiveness of those actions.
- Provide Subject Matter Expertise for a variety of topics concerning web applications in a variety of formats (verbal or written). Includes common and emerging web and mobile technologies, languages, and frameworks to discuss the benefits and security detriments of those technologies.
- Provide support for external security audits conducted of the TSA. Such support would include items such as: providing technical insight into data calls required by external Federal entities, offering technical information to facilitate external auditors work, or validating findings identified in external audit reports.
Knowledge and Qualifications
- At least eight (8) years of technical IT security experience. Such experience can come from system or network administration, security analysis, security testing and evaluation, security incident response, security monitoring, IT project implementation, or other similar technical activities.
- At least five (5) years of experience performing security control assessments (i.e. security testing such as security auditing, primary assessor for Security Control Assessments, etc.).
- At least three (3) years of experience performing web application security testing.
- At least one (1) year of experience performing security testing of Federal IT systems.
- Experience with NIST and FIPS security controls, DISA STIGs, and CIS standards.
- Experience working in groups acting as the sole security practitioner, as well as experience working in team(s) of various sizes of security personnel reviewing the same system.
- Experience with HP WebInspect, IBM/HCL AppScan, Portswigger BurpSuite, SmartBear SoapUI, Nessus Professional, HP Fortify, Apple Developers Toolkit, Eclipse, and Wireshark.
- Excellent communication skills to be able to understand concepts being verbally presented, participate in group discussions, and to present recommendations.
- Strong organizational, analytical, and technical writing skills to be able to document findings in reports.
gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.
About gTANGIBLE
Sourced by ZipRecruiter
Industry
Business consulting services
Company size
11 - 50 Employees
Headquarters location
Alexandria, VA, US
Year founded
2009