1

Dast Tester Jobs in Virginia (NOW HIRING)

Static Application Security Testing (SAST)Dynamic Application Security Testing (DAST)Software Composition Analysis (SCA)Penetration TestingParticipate in vulnerability management processes.Assist in ...

Senior Product Manager, AppSec

Richmond, VA ยท On-site

$125K - $165K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior Product Manager, AppSec

Mclean, VA

$127K - $168K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior Product Manager, AppSec

Mclean, VA ยท On-site

$127K - $168K/yr

Experience with automated DAST and manual Penetration Testing to develop adversarial-based threat prevention roadmaps At this time, Capital One will not sponsor a new applicant for employment ...

Senior DevSecOps Engineer

Mclean, VA ยท On-site

$117K - $161K/yr

Proven experience implementing automated security testing and vulnerability management, including SAST, DAST, vulnerability scanning, and SBOM creation and management. * Strong scripting skills in ...

Senior DevSecOps Engineer

Mclean, VA ยท On-site

$150 - $190/hr

Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management). * Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement.

SRE ENGINEER/ MANAGER

Reston, VA ยท On-site

$59.25 - $78.75/hr

... DAST/SCA). - Architect and manage microservices, serverless solutions, and APIs with a focus on ... testing practices (BDD, TDD, Unit, Regression). - Maintain architecture diagrams, knowledge ...

Junior DevSecOps Engineer - AWS

Reston, VA ยท On-site

$55 - $75.25/hr

Integrate SAST, DAST, SCA, and policy-as-code capabilities into CI/CD pipelines. * Automate ... Incorporate AI-assisted tooling for security scanning, testing, and pipeline development. * Monitor ...

New

... SAST/DAST/SCA and policy-as-code into pipelines; automate compliance evidence for FedRAMP/NIST ... testing and pipeline authoring; monitor pipeline health and improve delivery metrics 3+ years DevOp ...

Lead Security Engineer

Mclean, VA ยท On-site

$140/hr

Conduct penetration testing, threat modeling, SAST/DAST scanning, vulnerability assessments, and end-to-end remediation coordination * Support supply chain security initiatives including Software ...

Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management). * Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement.

Senior DevSecOps Engineer

Arlington, VA ยท On-site +1

$131K - $180K/yr

Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container and image scanning, Secret detection and credential management ...

Senior DevSecOps Engineer

Mclean, VA ยท On-site

$150K - $180K/yr

Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management). * Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement.

Systems Engineer Expert

Herndon, VA ยท On-site

$150K - $205K/yr

Collaborate with development teams to integrate secure coding, automated testing, and quality gates ... Experience integrating security scanning tools (SAST, DAST, dependency scanning) into pipelines.

next page

Showing results 1-20

Dast Tester information

What is a DAST tester?

DAST testers are professionals who use Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in web applications while they are running. Unlike static testing, which examines code without executing it, DAST testers simulate real-world attacks to find security flaws from the outside in, much like a hacker would. Their primary goal is to detect and help remediate issues such as SQL injection, cross-site scripting (XSS), and other security threats before malicious actors can exploit them. DAST testers work closely with development and security teams to ensure applications are secure throughout the software development lifecycle.

What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?

To thrive as a DAST Tester, you need a solid understanding of web application security, common vulnerabilities (such as those in the OWASP Top 10), and experience in penetration testing, often supported by a degree in computer science or a related field. Familiarity with Dynamic Application Security Testing (DAST) tools like OWASP ZAP, Burp Suite, or Acunetix, as well as relevant certifications such as CEH or OSCP, is typically required. Analytical thinking, attention to detail, and strong communication skills help DAST Testers identify risks and clearly report findings to stakeholders. These skills are critical to ensuring robust application security and safeguarding organizations from cyber threats.

What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?

A common challenge for DAST Testers is ensuring that security tests fit seamlessly into the existing CI/CD workflow without causing significant delays in deployment. Dynamic testing can sometimes result in false positives or require fine-tuning to accurately simulate real-world attacks, which may demand close collaboration with developers and DevOps teams. Effective communication is key, as DAST Testers often need to help interpret results and prioritize remediation of vulnerabilities. Balancing comprehensive security coverage with development speed is crucial to maintaining both secure and agile delivery cycles.

What is the difference between Dast Tester vs Manual Tester?

AspectDast TesterManual Tester
CertificationsISTQB, Certified Ethical Hacker (CEH)ISTQB, ISTQB Foundation
Work EnvironmentAutomated testing tools, CI/CD pipelinesTest case execution, defect reporting
Industry UsageSoftware development, DevOps teamsQuality assurance, software testing teams

While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.

What are popular job titles related to Dast Tester jobs in Virginia?

For Dast Tester jobs in Virginia, the most frequently searched job titles are:

What job categories do people searching Dast Tester jobs in Virginia look for?

The top searched job categories for Dast Tester jobs in Virginia are:

What cities in Virginia are hiring for Dast Tester jobs?

Cities in Virginia with the most Dast Tester job openings:

DevSecOps Engineer (SAST/DAST)

Cognize Tech Solutions LLC

Reston, VA โ€ข On-site

Contractor

Re-posted 19 days ago


Job description

Job Title: DevSecOps Engineer (SAST/DAST)
Location: Reston, VA (Onsite)

Job Summary:
  • Seeking a DevSecOps Engineer to integrate and automate SAST (e.g., SonarQube, Checkmarx) and DAST (e.g., OWASP ZAP, Burp Suite) tools into CI/CD pipelines, ensuring secure code and application runtime protection.
Key Responsibilities:
  • Automate SAST and DAST in CI/CD workflows.
  • Collaborate with teams to remediate vulnerabilities.
  • Streamline security testing and reporting.
Required Skills:
  • Experience with SAST/DAST tools and CI/CD pipelines.
  • Proficiency in scripting (Python, Bash).
  • Knowledge of secure coding practices.