1

Dast Tester Jobs in Washington (NOW HIRING)

DevSecOps / Security Engineer

Arlington, VA ยท On-site

$120 - $180/hr

Integrate SAST/DAST testing and auto-generate compliance-as-code artifacts (e.g., Ports/Protocols/Services, topology diagrams) for eMASS Required Experience or Knowledge of the following technologies ...

Integrate SAST/DAST testing and auto-generate compliance-as-code artifacts (e.g., Ports/Protocols/Services, topology diagrams) for eMASS Required Experience or Knowledge of the following technologies ...

Integrate SAST/DAST testing and auto-generate compliance-as-code artifacts (e.g., Ports/Protocols/Services, topology diagrams) for eMASS Required Experience or Knowledge of the following technologies ...

Integrate SAST/DAST testing and auto-generate compliance-as-code artifacts (e.g., Ports/Protocols/Services, topology diagrams) for eMASS Required Experience or Knowledge of the following technologies ...

SAP DevOps Engineer

Washington, DC ยท On-site

$59.75 - $81.75/hr

Experience with SonarQube OR Fortify OR similar SAST/DAST tools * Strong understanding of DevSecOps principles and implementing security in automated pipelines * Experience integrating testing ...

DevSecOps Engineer

Washington, DC ยท On-site

$140 - $210/hr

Implement and maintain automated security testing solutions, including SAST, DAST, dependency scanning, and secrets detection * Automate configuration management and deployment processes using ...

DevSecOps Engineer

Washington, DC ยท On-site

$59.75 - $81.75/hr

Implement and maintain automated security testing solutions, including SAST, DAST, dependency scanning, and secrets detection * Automate configuration management and deployment processes using ...

DevSecOps Engineer

Washington, DC ยท On-site

$59.75 - $81.75/hr

Implement and maintain automated security testing solutions, including SAST, DAST, dependency scanning, and secrets detection * Automate configuration management and deployment processes using ...

DevSecOps Engineer

Washington, DC ยท On-site

$59.75 - $81.75/hr

Implement and maintain automated security testing solutions, including SAST, DAST, dependency scanning, and secrets detection * Automate configuration management and deployment processes using ...

DevSecOps Engineer

Washington, DC ยท On-site

$66.25 - $88.50/hr

CI/CD pipelines with security built into the path: automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion, so a release passes review because the pipeline ...

DevSecOps Engineer

Washington, DC ยท On-site

$66.25 - $88.50/hr

CI/CD pipelines with security built into the path: automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion, so a release passes review because the pipeline ...

Static Application Security Testing (SAST)Dynamic Application Security Testing (DAST)Software Composition Analysis (SCA)Penetration TestingParticipate in vulnerability management processes.Assist in ...

DevSecOps Engineer

Washington, DC

$66.50 - $89/hr

CI/CD pipelines with security built into the path: automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion, so a release passes review because the pipeline ...

next page

Showing results 1-20

Dast Tester information

What is a DAST tester?

DAST testers are professionals who use Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in web applications while they are running. Unlike static testing, which examines code without executing it, DAST testers simulate real-world attacks to find security flaws from the outside in, much like a hacker would. Their primary goal is to detect and help remediate issues such as SQL injection, cross-site scripting (XSS), and other security threats before malicious actors can exploit them. DAST testers work closely with development and security teams to ensure applications are secure throughout the software development lifecycle.

What are the key skills and qualifications needed to thrive as a DAST tester, and why are they important?

To thrive as a DAST Tester, you need a solid understanding of web application security, common vulnerabilities (such as those in the OWASP Top 10), and experience in penetration testing, often supported by a degree in computer science or a related field. Familiarity with Dynamic Application Security Testing (DAST) tools like OWASP ZAP, Burp Suite, or Acunetix, as well as relevant certifications such as CEH or OSCP, is typically required. Analytical thinking, attention to detail, and strong communication skills help DAST Testers identify risks and clearly report findings to stakeholders. These skills are critical to ensuring robust application security and safeguarding organizations from cyber threats.

What are the typical challenges faced by a DAST tester when integrating dynamic application security testing into the CI/CD pipeline?

A common challenge for DAST Testers is ensuring that security tests fit seamlessly into the existing CI/CD workflow without causing significant delays in deployment. Dynamic testing can sometimes result in false positives or require fine-tuning to accurately simulate real-world attacks, which may demand close collaboration with developers and DevOps teams. Effective communication is key, as DAST Testers often need to help interpret results and prioritize remediation of vulnerabilities. Balancing comprehensive security coverage with development speed is crucial to maintaining both secure and agile delivery cycles.

What is the difference between Dast Tester vs Manual Tester?

AspectDast TesterManual Tester
CertificationsISTQB, Certified Ethical Hacker (CEH)ISTQB, ISTQB Foundation
Work EnvironmentAutomated testing tools, CI/CD pipelinesTest case execution, defect reporting
Industry UsageSoftware development, DevOps teamsQuality assurance, software testing teams

While Dast Testers focus on automated security testing using tools like OWASP ZAP or Burp Suite, Manual Testers perform hands-on testing without automation. Both roles are essential in software quality assurance, but Dast Testers emphasize automation and security, whereas Manual Testers focus on detailed, exploratory testing.

What are popular job titles related to Dast Tester jobs in Washington?

For Dast Tester jobs in Washington, the most frequently searched job titles are:

What job categories do people searching Dast Tester jobs in Washington look for?

The top searched job categories for Dast Tester jobs in Washington are:

What cities in Washington are hiring for Dast Tester jobs?

Cities in Washington with the most Dast Tester job openings:

DevSecOps Engineer (SAST/DAST)

Cognize Tech Solutions LLC

Reston, VA โ€ข On-site

Contractor

Re-posted 25 days ago


Job description

Job Title: DevSecOps Engineer (SAST/DAST)
Location: Reston, VA (Onsite)

Job Summary:
  • Seeking a DevSecOps Engineer to integrate and automate SAST (e.g., SonarQube, Checkmarx) and DAST (e.g., OWASP ZAP, Burp Suite) tools into CI/CD pipelines, ensuring secure code and application runtime protection.
Key Responsibilities:
  • Automate SAST and DAST in CI/CD workflows.
  • Collaborate with teams to remediate vulnerabilities.
  • Streamline security testing and reporting.
Required Skills:
  • Experience with SAST/DAST tools and CI/CD pipelines.
  • Proficiency in scripting (Python, Bash).
  • Knowledge of secure coding practices.