1

Dast Tester Jobs in Minnesota (NOW HIRING)

Lead Information Security Engineer

Minneapolis, MN · On-site

$131K - $206K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Strong experience integrating SAST, DAST, and SCA tools into SDLC workflows and source code ... Leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting * Apply ...

Cloud Security Engineer/Architect (Remote)

Eagan, MN · Remote

$66.75 - $88.75/hr

Deep expertise embedding automated security testing (SAST/DAST/SCA) directly into CI/CD pipelines. * Advanced understanding of secure connectivity, including SD-WAN, Cloud WAF, and Zero Trust Network ...

Dast Tester information

What is a DAST tester?

DAST testers are professionals who use Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in web applications while they are running. Unlike static testing, which examines code without executing it, DAST testers simulate real-world attacks to find security flaws from the outside in, much like a hacker would. Their primary goal is to detect and help remediate issues such as SQL injection, cross-site scripting (XSS), and other security threats before malicious actors can exploit them. DAST testers work closely with development and security teams to ensure applications are secure throughout the software development lifecycle.

What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?

To thrive as a DAST Tester, you need a solid understanding of web application security, common vulnerabilities (such as those in the OWASP Top 10), and experience in penetration testing, often supported by a degree in computer science or a related field. Familiarity with Dynamic Application Security Testing (DAST) tools like OWASP ZAP, Burp Suite, or Acunetix, as well as relevant certifications such as CEH or OSCP, is typically required. Analytical thinking, attention to detail, and strong communication skills help DAST Testers identify risks and clearly report findings to stakeholders. These skills are critical to ensuring robust application security and safeguarding organizations from cyber threats.

What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?

A common challenge for DAST Testers is ensuring that security tests fit seamlessly into the existing CI/CD workflow without causing significant delays in deployment. Dynamic testing can sometimes result in false positives or require fine-tuning to accurately simulate real-world attacks, which may demand close collaboration with developers and DevOps teams. Effective communication is key, as DAST Testers often need to help interpret results and prioritize remediation of vulnerabilities. Balancing comprehensive security coverage with development speed is crucial to maintaining both secure and agile delivery cycles.

What is the difference between Dast Tester vs Manual Tester?

AspectDast TesterManual Tester
CertificationsISTQB, Certified Ethical Hacker (CEH)ISTQB, ISTQB Foundation
Work EnvironmentAutomated testing tools, CI/CD pipelinesTest case execution, defect reporting
Industry UsageSoftware development, DevOps teamsQuality assurance, software testing teams

While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.

What are popular job titles related to Dast Tester jobs in Minnesota?

For Dast Tester jobs in Minnesota, the most frequently searched job titles are:

What job categories do people searching Dast Tester jobs in Minnesota look for?

The top searched job categories for Dast Tester jobs in Minnesota are:

What cities in Minnesota are hiring for Dast Tester jobs?

Cities in Minnesota with the most Dast Tester job openings:

Infographic showing various Dast Tester job openings in Minnesota as of August 2026, with employment types broken down into 82% Full Time, 11% Part Time, and 7% Contract. Highlights an 71% Physical, 1% Hybrid, and 28% Remote job distribution.

Principal Engineer - Application Security (SDLC, SAST, DAST, SCA, Threat Modeling, Pen Testing, DevS

Target Corporation

Brooklyn Park, MN • On-site

$168K - $303K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Target rating

6.6

Company rating: 6.6 out of 10

Based on 6,992 frontline employees who took The Breakroom Quiz

14th of 39 rated national retailers


Job description

The pay range is $168,000.00 - $303,000.00
Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well-being and beyond at ;br>
JOIN TARGET AS A PRINCIPAL ENGINEER - APPLICATION SECURITY
About us:
Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.
About the Role:
We are seeking a Principal Application Security Engineer to provide technical leadership for our enterprise Application Security program. This role is responsible for advancing secure development practices, integrating security into the software development lifecycle, and partnering with engineering teams to reduce application risk through scalable security solutions.
The ideal candidate combines deep technical expertise with strategic thinking, enables developers, scales security through automation, and influences engineering organizations without direct authority.
Application Security Expertise
  • Provide technical leadership across Secure Software Development Lifecycle (SSDLC), Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Threat Modeling, and Penetration Testing.
  • Guide engineering teams in vulnerability remediation and secure coding best practices.
  • Evaluate emerging application security technologies, emerging risks, and recommend pragmatic, risk-based improvements to application security capabilities.
  • Partner with Security Architecture to ensure application security practices align with enterprise security standards and design principles.

Software Engineering and Automation
  • Design and build automation that integrates security seamlessly into CI/CD pipelines.
  • Develop tooling, APIs, and automation to improve developer experience and reduce manual effort.
  • Partner with platform engineering teams to implement security controls within modern development workflows.
  • Identify and implement opportunities to leverage AI and generative AI technologies to improve application security processes, automate repetitive tasks, enhance developer enablement, and accelerate vulnerability detection and remediation while ensuring responsible and secure use of AI.

Security Strategy and Program Leadership
  • Help define the technical roadmap for the Application Security program.
  • Develop strategies that scale security across a large engineering organization through automation, standardization, and self-service capabilities.
  • Champion developer enablement by creating security guidance, reusable frameworks, documentation, and training.
  • Establish and track metrics that measure program effectiveness and continuously improve security maturity.

Cross-Functional Collaboration
  • Influence technical decisions through collaboration and technical leadership rather than organizational authority.
  • Communicate security risks and recommendations effectively to technical and non-technical audiences.
  • Mentor engineers and promote security best practices across the organization.

Problem Solving and Technical Leadership
  • Solve complex application security challenges involving modern software architectures and cloud-native platforms.
  • Drive continuous improvement across security tooling, developer workflows, and vulnerability management processes.
  • Provide technical leadership during the investigation and remediation of significant application security issues.

Core responsibilities of this job are described within this job description.
Job duties may change at any time due to business needs.
About You:
  • BS/MS in Computer Science, Information Security, Engineering or equivalent industry work experience
  • 10+ years of experience in software engineering, application security or related security engineering roles
  • Demonstrated expertise across SSDLC, SAST, DAST, SCA, Threat Modeling, and Penetration Testing
  • Strong software development experience in one or more modern programming languages
  • Experience integrating security into modern CI/CD pipelines and DevSecOps workflows
  • Proven experience building and scaling Application Security programs across large engineering organizations
  • Experience leveraging AI and Generative AI technologies to improve engineering productivity, security operations, or software development workflows
  • Demonstrated ability to evaluate, implement, and govern AI-enabled solutions while considering security, privacy, and organizational risk
  • Excellent communication, collaboration, and stakeholder management skills
  • Demonstrated ability to influence technical direction across multiple teams
  • Experience securing cloud-native applications in AWS, Azure or Google Cloud
  • Experience with Kubernetes, containers, APIs, and microservices architectures
  • Experience developing custom security tooling or automation
  • Knowledge of modern software supply chain security practices
  • Industry certifications such as CISSP, CSSLP, GIAC, OSCP, or cloud security certifications a plus

This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target's needs. A Hybrid/Flex for Your Day work arrangement means the team member's core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Click here if you are curious to learn more about Minnesota.
Benefits Eligibility
Please paste this url into your preferred browser to learn about benefits eligibility for this role: _F
Americans with Disabilities Act (ADA)
In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed through this channel.
Application deadline is : 09/10/2026

What Target employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Target logo

About Target

Sourced by ZipRecruiter

We're here to help all families discover the joy of everyday life. Target is a general merchandise retailer with stores in all 50 U.S. states and the District of Columbia. 75% of the U.S. population lives within 10 miles of a Target store. We employ 400,000+ Our tagline is "Expect More. Pay Less." We've been using it since 1994! The Target Corporation also owns Shipt and Roundel. More to love! Target is headquartered in Minneapolis, Minnesota, its hometown since the first Target store opened in 1962 under The Dayton Company.

Industry

Retail and scientific research and development services

Company size

10,000+ Employees

Headquarters location

Minneapolis, MN, US