1

Dast Jobs (NOW HIRING)

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings. Responsibilities · Conduct ...

The position also provides platform administration and analytics support for SAST, DAST, SCA, and vulnerability management tools, along with cloud and infrastructure assistance as required. Key ...

Lead Sales Engineer

Burlington, MA · On-site +1

$141K - $211K/yr

Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source ...

next page

Showing results 1-20

Dast information

See salary details

$68K

$126.8K

$191.5K

How much do dast jobs pay per year?

As of Jun 26, 2026, the average yearly pay for dast in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What are DAST jobs?

DAST stands for Dynamic Application Security Testing. Professionals in DAST roles use tools and techniques to test web applications for security vulnerabilities while the application is running, simulating real-world attacks to find issues like SQL injection, cross-site scripting, and other flaws. DAST specialists typically analyze application behavior, report vulnerabilities, and provide recommendations for mitigation. These roles are crucial in helping organizations maintain secure software by identifying and addressing security risks before attackers can exploit them.

What does a dast do?

A DAST (Dynamic Application Security Tester) is a cybersecurity professional who tests web applications for security vulnerabilities by simulating attacks in real-time. They use specialized tools to identify issues such as SQL injection, cross-site scripting, and other security flaws, often working closely with development teams to improve application security. Knowledge of security testing tools and web technologies is essential for this role.

What are the key skills and qualifications needed to thrive as a Dast, and why are they important?

I'm sorry, but 'Dast' does not appear to be a recognized real-world professional occupation. Please provide a valid job title for an accurate response.

What is the difference between Dast vs Penetration Tester?

AspectDastPenetration Tester
CertificationsCertified Web Application Defender, OSCP (optional)OSCP, CEH, CPT
Work EnvironmentAutomated testing tools, CI/CD pipelinesManual testing, on-site or remote assessments
Industry UsageWeb app security, DevSecOpsBroader security testing, including networks

While Dast (Dynamic Application Security Testing) uses automated tools to identify vulnerabilities in web applications during runtime, Penetration Testers perform manual and automated testing to find security flaws across systems. Dast is often integrated into development pipelines, whereas Penetration Testing is more comprehensive and manual, typically conducted periodically for in-depth security assessment.

How does DAST work?

A DAST (Dynamic Application Security Testing) professional uses automated tools to analyze running web applications for security vulnerabilities by simulating attacks. The process involves scanning the application in its operational state to identify issues like SQL injection or cross-site scripting, often requiring knowledge of security testing tools and protocols. Results help developers fix security flaws before deployment.

What are some common challenges faced by DAST (Dynamic Application Security Testing) professionals in their day-to-day work?

DAST professionals often encounter challenges such as handling dynamic and complex web applications that may have frequent code changes, which can impact test accuracy and coverage. They also need to manage false positives and ensure that security scans do not disrupt development workflows or impact application performance. Collaboration with development and DevOps teams is crucial for prioritizing and remediating vulnerabilities effectively. Staying current with evolving security threats and adjusting testing methodologies is also an ongoing part of the role.

What jobs pay $10,000 a month without a degree?

For a Dast (Data Application Security Tester) or similar cybersecurity roles, high-paying positions often require specialized skills and experience rather than formal degrees. Jobs such as freelance cybersecurity consulting, penetration testing, or security auditing can pay $10,000 or more monthly, especially for those with strong technical expertise, certifications like OSCP or CISSP, and a solid portfolio. These roles typically involve remote work, flexible schedules, and continuous learning to stay current with security threats.

What jobs pay 2000 a day?

High-paying jobs that can pay around $2,000 a day include specialized roles such as experienced surgeons, anesthesiologists, corporate lawyers, and certain high-level consultants or contractors. These positions typically require advanced education, certifications, and significant experience, often working in high-stakes environments or on a contract basis. Income levels vary based on industry, location, and workload.
More about Dast jobs
What cities are hiring for Dast jobs? Cities with the most Dast job openings:
What states have the most Dast jobs? States with the most job openings for Dast jobs include:
Infographic showing various Dast job openings in the United States as of June 2026, with employment types broken down into 81% Full Time, and 19% Contract. Highlights an 87% In-person, and 13% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.

DevSecOps Engineer (SAST/DAST)

Cognize Tech Solutions LLC

Reston, VA • On-site

Contractor

Posted 21 days ago


Job description

Job Title: DevSecOps Engineer (SAST/DAST)
Location: Reston, VA (Onsite)

Job Summary:
  • Seeking a DevSecOps Engineer to integrate and automate SAST (e.g., SonarQube, Checkmarx) and DAST (e.g., OWASP ZAP, Burp Suite) tools into CI/CD pipelines, ensuring secure code and application runtime protection.
Key Responsibilities:
  • Automate SAST and DAST in CI/CD workflows.
  • Collaborate with teams to remediate vulnerabilities.
  • Streamline security testing and reporting.
Required Skills:
  • Experience with SAST/DAST tools and CI/CD pipelines.
  • Proficiency in scripting (Python, Bash).
  • Knowledge of secure coding practices.