1

Dast Tester Jobs in Utah (NOW HIRING)

Application Security Engineer

Lindon, UT · On-site

$53 - $70.75/hr

Hands-on experience with application security tooling, such as Static analysis (SAST), Dynamic analysis (DAST), Dependency and container scanning, and API security testing tools or frameworks.

Application Security Engineer

Lindon, UT · On-site

$53 - $70.75/hr

Handson experience with application security tooling, such as Static analysis (SAST), Dynamic analysis (DAST), Dependency and container scanning, and API security testing tools or frameworks.

Application Security Engineer

Lindon, UT · On-site

$53 - $70.75/hr

Hands-on experience with application security tooling, such as Static analysis (SAST), Dynamic analysis (DAST), Dependency and container scanning, and API security testing tools or frameworks.

Experience with Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) tools * Experience in Security incident management and reporting * Experience with ...

DevSecOps Engineer

Draper, UT · On-site

$145K - $170K/yr

Hands-on experience with application security testing tools (e.g., SAST, DAST, SCA) * Experience in security incident management, response, and reporting * Experience with vulnerability management ...

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

... penetration testing. * Vulnerability Management: Architect and manage the deployment of ... them (SAST, DAST, SCA). * IT Foundations: Strong grasp of foundational IT domains, including ...

Application Security Engineer

Salt Lake City, UT · On-site +1

$56.75 - $76/hr

Perform regular security testing, such as SAST, DAST, and penetration testing, to validate the security of applications. * Provide expert input on cryptography and key management for applications ...

Senior DevSecOps Engineer

Salt Lake City, UT · On-site

$110K - $151K/yr

Qualifications: * 10+ years of experience of security experience with SAST/DAST tools plus AWS and ... Experience in system tuning and performance testing * AWS certifications are a plus Kavaliro ...

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

... penetration testing. * Vulnerability Management: Architect and manage the deployment of ... them (SAST, DAST, SCA). * IT Foundations: Strong grasp of foundational IT domains, including ...

next page

Showing results 1-20

Dast Tester information

What is a DAST tester?

DAST testers are professionals who use Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in web applications while they are running. Unlike static testing, which examines code without executing it, DAST testers simulate real-world attacks to find security flaws from the outside in, much like a hacker would. Their primary goal is to detect and help remediate issues such as SQL injection, cross-site scripting (XSS), and other security threats before malicious actors can exploit them. DAST testers work closely with development and security teams to ensure applications are secure throughout the software development lifecycle.

What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?

To thrive as a DAST Tester, you need a solid understanding of web application security, common vulnerabilities (such as those in the OWASP Top 10), and experience in penetration testing, often supported by a degree in computer science or a related field. Familiarity with Dynamic Application Security Testing (DAST) tools like OWASP ZAP, Burp Suite, or Acunetix, as well as relevant certifications such as CEH or OSCP, is typically required. Analytical thinking, attention to detail, and strong communication skills help DAST Testers identify risks and clearly report findings to stakeholders. These skills are critical to ensuring robust application security and safeguarding organizations from cyber threats.

What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?

A common challenge for DAST Testers is ensuring that security tests fit seamlessly into the existing CI/CD workflow without causing significant delays in deployment. Dynamic testing can sometimes result in false positives or require fine-tuning to accurately simulate real-world attacks, which may demand close collaboration with developers and DevOps teams. Effective communication is key, as DAST Testers often need to help interpret results and prioritize remediation of vulnerabilities. Balancing comprehensive security coverage with development speed is crucial to maintaining both secure and agile delivery cycles.

What is the difference between Dast Tester vs Manual Tester?

AspectDast TesterManual Tester
CertificationsISTQB, Certified Ethical Hacker (CEH)ISTQB, ISTQB Foundation
Work EnvironmentAutomated testing tools, CI/CD pipelinesTest case execution, defect reporting
Industry UsageSoftware development, DevOps teamsQuality assurance, software testing teams

While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.

What are popular job titles related to Dast Tester jobs in Utah?

For Dast Tester jobs in Utah, the most frequently searched job titles are:

What cities in Utah are hiring for Dast Tester jobs?

Cities in Utah with the most Dast Tester job openings:

DevSecOps Engineer with Security Clearance

BLUE YONDER DEFENSE SOLUTIONS, LLC

Ogden, UT • On-site

Other

Re-posted 28 days ago


Job description

Role : DevOps Security Engineer ( US citizen) Location : Ogden, UTAH ( 100% Onsite role., NO REMOTE !! ) *** MUST relocate off their own to Ogden, Utah, if not local to that area *** US Citizens only with active clearance REQUIRED Blue Yonder Defense Solutions (BYDS) is seeking a DevSecOps Engineer to help integrate security practices into our software development and DevOps processes. This role will work closely with development, QA, and operations teams to build and maintain secure CI/CD pipelines, automate security testing, and ensure our platforms and applications meet enterprise security standards.The ideal candidate is passionate about automation, cloud-native security, and secure software delivery, and has experience embedding security into modern DevOps environments. Primary Duties and Responsibilities DevSecOps Implementation Design and implement security controls within CI/CD pipelines to ensure secure software delivery. Integrate automated security testing tools such as SAST, DAST, SCA, and container scanning. Embed security checks into build and deployment processes to identify vulnerabilities early in the SDLC. Platform & Infrastructure Security Work with DevOps teams to secure cloud infrastructure, containers, and Kubernetes environments. Implement Infrastructure-as-Code security scanning and policy enforcement. Automation & Tooling Develop automation scripts and integrations to support security workflows. Maintain and enhance CI/CD platforms and pipeline security tooling. Integrate vulnerability management tools with development workflows. Collaboration Partner with developers and QA teams to promote secure coding practices. Assist engineering teams in remediating vulnerabilities identified during testing and scanning. Collaborate with internal and customer security teams to implement organizational security standards. Compliance & Governance Support security compliance requirements such as SOC2, FedRAMP, or DoD security standards where applicable. Assist with security audits and vulnerability remediation tracking. Help maintain documentation of DevSecOps processes and controls. Required Qualifications 3–6 years of experience in DevOps, DevSecOps, or security engineering. Experience building and maintaining CI/CD pipelines (GitHub Actions, Jenkins, GitLab CI, or similar). Familiarity with cloud platforms such as AWS, Azure, or GCP. Experience with container technologies (Docker, Kubernetes). Understanding of secure software development lifecycle (SSDLC) practices. Experience integrating security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container vulnerability scanning Scripting experience (Python, Bash, or similar). Familiarity with Infrastructure as Code tools (Ansible, Terraform, CloudFormation, etc.). Preferred Qualifications Experience implementing DevSecOps practices in enterprise software environments. Knowledge of container and Kubernetes security best practices. Experience with secrets management solutions (Vault, AWS Secrets Manager, Azure Key Vault). Familiarity with security frameworks such as NIST, CIS Benchmarks, OWASP Top 10 Experience supporting government or regulated environments (FedRAMP, DoD Impact Levels, etc.). Security certifications such as Security+, CISSP (associate level), Certified Kubernetes Security Specialist (CKS) Key Skills DevSecOps and secure SDLC CI/CD automation Cloud security Container and Kubernetes security Vulnerability management Infrastructure as Code Security tooling integration Additional Skills Must be well versed in working with a diverse group of stakeholders - business analysts, solution architects, technical managers, developers, QA, customer IT •     Excellent communication (verbal and written) and interpersonal skills Ability to work while embedded in customers’ teams remotely •    High degree of initiative and ownership to take a task and own it from inception to completion