Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Software Assurance (SwA) Engineer
Huntsville, AL · On-site
$110 - $170/hr
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
New
Software Assurance (SwA) Engineer
Huntsville, AL · On-site
$110 - $170/hr
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
New
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$110 - $160/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$110 - $160/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
Vulnerability Management Analyst
Birmingham, AL · On-site
$90 - $130/hr
You'll cover code vulnerabilities (SAST, DAST, SCA, OSS licencing), Cloud Security Posture Management (CSPM), Internal Vulnerability Scanning (IVS), and penetration testing. You'll also help design ...
New
Vulnerability Management Analyst
Birmingham, AL · On-site
$90 - $130/hr
You'll cover code vulnerabilities (SAST, DAST, SCA, OSS licencing), Cloud Security Posture Management (CSPM), Internal Vulnerability Scanning (IVS), and penetration testing. You'll also help design ...
New
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
Quick apply
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
Montgomery, AL · On-site
$55.25 - $73.75/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application ...
DevSecOps Engineer / Cloud Administrator (AWS)
$52.25 - $71.50/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
DevSecOps Engineer / Cloud Administrator (AWS)
$52.25 - $71.50/hr
Integrate automated security capabilities into the software development lifecycle, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Open Source ...
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Quick apply
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Information Security Development Engineer
Birmingham, AL · On-site
$110 - $160/hr
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Information Security Development Engineer
Birmingham, AL · On-site
$110 - $160/hr
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Information Security Development Engineer
Birmingham, AL · On-site
$110 - $140/hr
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
Information Security Development Engineer
Birmingham, AL · On-site
$110 - $140/hr
Integrate automated security testing throughout the software development lifecycle. (SAST, DAST, dependency, and container scanning) * Embed secure development practices, threat modeling, and ...
DEVSECOPS Engineer
Huntsville, AL · On-site
... testing, and deployment through the entire Continuous Integration and Continuous Deployment ... Experience with **application security tools** (SAST, DAST, vulnerability scanning)* Familiarity ...
Quick apply
DEVSECOPS Engineer
Huntsville, AL · On-site
... testing, and deployment through the entire Continuous Integration and Continuous Deployment ... Experience with **application security tools** (SAST, DAST, vulnerability scanning)* Familiarity ...
Lead vulnerability management, penetration testing, and red team exercises to proactively identify ... Drive adoption of SAST, DAST, SCA, and container/image scanning tools across development teams.
Lead vulnerability management, penetration testing, and red team exercises to proactively identify ... Drive adoption of SAST, DAST, SCA, and container/image scanning tools across development teams.
Director of Cybersecurity
Birmingham, AL · On-site +1
... testing, and red team exercises to proactively identify and remediate risk across production ... SIEM, EDR, SAST/DAST, vulnerability scanners, secrets management platforms, and cloud security ...
Director of Cybersecurity
Birmingham, AL · On-site +1
... testing, and red team exercises to proactively identify and remediate risk across production ... SIEM, EDR, SAST/DAST, vulnerability scanners, secrets management platforms, and cloud security ...
Lead vulnerability management, penetration testing, and red team exercises to proactively identify ... Drive adoption of SAST, DAST, SCA, and container/image scanning tools across development teams.
Lead vulnerability management, penetration testing, and red team exercises to proactively identify ... Drive adoption of SAST, DAST, SCA, and container/image scanning tools across development teams.
Dast Tester information
What is a DAST tester?
What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?
What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?
What is the difference between Dast Tester vs Manual Tester?
| Aspect | Dast Tester | Manual Tester |
|---|---|---|
| Certifications | ISTQB, Certified Ethical Hacker (CEH) | ISTQB, ISTQB Foundation |
| Work Environment | Automated testing tools, CI/CD pipelines | Test case execution, defect reporting |
| Industry Usage | Software development, DevOps teams | Quality assurance, software testing teams |
While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.
What are popular job titles related to Dast Tester jobs in Alabama?
For Dast Tester jobs in Alabama, the most frequently searched job titles are:
What job categories do people searching Dast Tester jobs in Alabama look for?
The top searched job categories for Dast Tester jobs in Alabama are:
What cities in Alabama are hiring for Dast Tester jobs?
Cities in Alabama with the most Dast Tester job openings:
Job description
COLSA Corporation is seeking an experienced Software Assurance (SwA) Engineer to join our team in Huntsville, Alabama. This role will support the security and integrity of complex software applications throughout the software development lifecycle (SDLC), with a focus on identifying vulnerabilities, conducting application security testing, and supporting software assessment, authorization, and readiness for materiel release.
The ideal candidate brings strong technical expertise in software assurance and application security, with the ability to analyze complex software systems, identify and assess security weaknesses, and develop effective solutions to mitigate risk.
Principal Duties and Responsibilities (*Essential functions)
-
Conducts Application Security Testing: Plans and executes investigations and tests of considerable complexity, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application Security Testing (IAST), fuzzing, and penetration testing.*
-
Vulnerability Analysis & Remediation: Analyzes source code and compiled binaries to identify security flaws, mapping findings to Common Weakness Enumerations (CWEs) and Common Vulnerabilities and Exposures (CVEs).*
-
Advanced Problem Solving: Develops and applies advanced methods, theories, and research techniques in the investigation and solution of complex and advanced software security problems.*
-
Project Coordination: Coordinates efforts of software engineers, development teams, and technical support staff in the performance of assigned SwA projects, ensuring security is integrated throughout the SDLC.*
-
Materiel Release Support: Plans, conducts, and technically directs major phases of significant SwA projects to ensure software meets the rigorous safety and security standards required for materiel release.*
-
Technical Review: Reviews the completion and implementation of technical products, ensuring that vulnerability remediations are effective and compliant with current security practices.*
-
Tool & Vendor Evaluation: May evaluate vendor capabilities and commercial/open-source SwA tools (e.g., Fortify, Coverity, Semgrep, Cppcheck, etc.) to provide required security testing products or services.
-
Industry Research: Reviews literature, patents, and current practices relevant to the solution of assigned application security projects and threat landscapes.*
-
Technical Leadership: May provide technical consultation to other organizations regarding secure coding practices and may provide work leadership to lower-level employees.
At COLSA, people are our most valuable resource and centered at our core value. We invite you to unite your talents with opportunity and be a part of our “Family of Professionals!” Learn about our employee-centric culture and benefits here: https://www.colsa.com/culture_benefits
Required Skills
Required Experience
- Bachelors’ degree in Computer Science, Software Engineering, Cybersecurity, Information Systems, Engineering, or a related field (or equivalent experience).
- Minimum of 8 years of related experience
- Experience integrating security practices throughout the Software Development Lifecycle (SDLC).
- Experience supporting software assessments, authorization, or materiel release activities
- Hands-on experience performing application security testing, such as SAST, DAST, IAST, fuzzing, and/or penetration testing.
- Ability to obtain and maintain a Secret Security Clearance prior to start; and willing and able to obtain a Top Secret clearance, if required by the customer
- US Citizenship required
Preferred Qualifications
- Active Secret clearance
- Proficiency in technical documentation, reporting, and vulnerability tracking using standard desktop applications, spreadsheets, and database/issue-tracking programs.
- Working knowledge of modern operating systems (e.g., Linux, Windows) and programming languages common in defense and complex systems (e.g., C/C++, Java, Python, Ada, and Rust) to effectively analyze and secure diverse codebases.
Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.
About COLSA
Sourced by ZipRecruiter
Industry
Guided missile and space vehicle manufacturing
Company size
1,001 - 5,000 Employees
Headquarters location
Huntsville, AL, US
Year founded
1980