1

Dast Tester Jobs in Virginia (NOW HIRING)

Senior Product Manager, AppSec

Richmond, VA

$125K - $165K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior Product Manager, AppSec

Mclean, VA · On-site

$127K - $168K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior Product Manager, AppSec

Mclean, VA

$127K - $168K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior DevSecOps Engineer

Mclean, VA · On-site

$117K - $161K/yr

Proven experience implementing automated security testing and vulnerability management, including SAST, DAST, vulnerability scanning, and SBOM creation and management. * Strong scripting skills in ...

Cybersecurity Engineer Senior

Fairfax, VA · On-site

$116K - $160K/yr

... automated testing, secure coding, and continuous monitoring into CI/CD pipelines. The engineer ... Integrate security into CI/CD pipelines by configuring automated SAST/DAST scans, container ...

... automated testing, secure coding, and continuous monitoring into CI/CD pipelines. The engineer ... Integrate security into CI/CD pipelines by configuring automated SAST/DAST scans, container ...

next page

Showing results 1-20

Dast Tester information

What is a DAST tester?

DAST testers are professionals who use Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in web applications while they are running. Unlike static testing, which examines code without executing it, DAST testers simulate real-world attacks to find security flaws from the outside in, much like a hacker would. Their primary goal is to detect and help remediate issues such as SQL injection, cross-site scripting (XSS), and other security threats before malicious actors can exploit them. DAST testers work closely with development and security teams to ensure applications are secure throughout the software development lifecycle.

What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?

To thrive as a DAST Tester, you need a solid understanding of web application security, common vulnerabilities (such as those in the OWASP Top 10), and experience in penetration testing, often supported by a degree in computer science or a related field. Familiarity with Dynamic Application Security Testing (DAST) tools like OWASP ZAP, Burp Suite, or Acunetix, as well as relevant certifications such as CEH or OSCP, is typically required. Analytical thinking, attention to detail, and strong communication skills help DAST Testers identify risks and clearly report findings to stakeholders. These skills are critical to ensuring robust application security and safeguarding organizations from cyber threats.

What is the difference between Dast Tester vs Manual Tester?

AspectDast TesterManual Tester
CertificationsISTQB, Certified Ethical Hacker (CEH)ISTQB, ISTQB Foundation
Work EnvironmentAutomated testing tools, CI/CD pipelinesTest case execution, defect reporting
Industry UsageSoftware development, DevOps teamsQuality assurance, software testing teams

While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.

What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?

A common challenge for DAST Testers is ensuring that security tests fit seamlessly into the existing CI/CD workflow without causing significant delays in deployment. Dynamic testing can sometimes result in false positives or require fine-tuning to accurately simulate real-world attacks, which may demand close collaboration with developers and DevOps teams. Effective communication is key, as DAST Testers often need to help interpret results and prioritize remediation of vulnerabilities. Balancing comprehensive security coverage with development speed is crucial to maintaining both secure and agile delivery cycles.
What are popular job titles related to Dast Tester jobs in Virginia? For Dast Tester jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Dast Tester jobs in Virginia look for? The top searched job categories for Dast Tester jobs in Virginia are:
What cities in Virginia are hiring for Dast Tester jobs? Cities in Virginia with the most Dast Tester job openings:

DevSecOps Engineer (SAST/DAST)

Cognize Tech Solutions LLC

Reston, VA • On-site

Contractor

Re-posted 8 days ago


Job description

Job Title: DevSecOps Engineer (SAST/DAST)
Location: Reston, VA (Onsite)

Job Summary:
  • Seeking a DevSecOps Engineer to integrate and automate SAST (e.g., SonarQube, Checkmarx) and DAST (e.g., OWASP ZAP, Burp Suite) tools into CI/CD pipelines, ensuring secure code and application runtime protection.
Key Responsibilities:
  • Automate SAST and DAST in CI/CD workflows.
  • Collaborate with teams to remediate vulnerabilities.
  • Streamline security testing and reporting.
Required Skills:
  • Experience with SAST/DAST tools and CI/CD pipelines.
  • Proficiency in scripting (Python, Bash).
  • Knowledge of secure coding practices.