1

Dast Jobs in Virginia (NOW HIRING)

Application Security Engineer

Herndon, VA ยท Remote

$60.50 - $80.75/hr

Mid Level Technologies: GitHub Actions, SAST, DAST, SCA, OWASP Requirements: Experience in security testing, CI/CD, and DevSecOps; strong knowledge of SAST/DAST/SCA and OWASP Top 10; BS in CS ...

Cybersecurity Engineer - DSOP

Chantilly, VA ยท Remote

$160K - $200K/yr

This role integrates automated SAST/DAST/container security and SBOM/SCA scanning, enforces secure coding gates, validates cyber artifacts, and ensures all pipeline evidence is routed to ...

Conduct security assessments using Microfocus WebInspect and other DAST tools. * Collaborate with development teams to address and remediate dynamic security findings. * Implement and manage ...

Application Security Engineer

Ashburn, VA ยท On-site

$107K - $195K/yr

Conduct security assessments using Microfocus WebInspect and other DAST tools. * Collaborate with development teams to address and remediate dynamic security findings. * Implement and manage ...

AppSec Security Engineer

Arlington, VA ยท On-site

$67.50 - $90.25/hr

Embed SAST, SCA, DAST, container/IaC scanning, and secret detection tools into pipelines for home-grown apps. * Infrastructure as Code: Develop secure IaC patterns using Terraform, Helm, and ...

Cybersecurity Engineer - DSOP

Chantilly, VA ยท On-site

$160K - $200K/yr

This role integrates automated SAST/DAST/container security and SBOM/SCA scanning, enforces secure coding gates, validates cyber artifacts, and ensures all pipeline evidence is routed to ...

Senior DevSecOps Engineer

Mclean, VA ยท On-site

$117K - $161K/yr

Proven experience implementing automated security testing and vulnerability management, including SAST, DAST, vulnerability scanning, and SBOM creation and management. * Strong scripting skills in ...

Senior Product Manager, AppSec

Richmond, VA

$125K - $165K/yr

Lead the strategic evaluation of Appsec security tools (e.g., SAST/DAST/SCA), ensuring we maximize ROI and maintain a best-in-class toolset. * AI Transformation: Define the product strategy for AI ...

next page

Showing results 1-20

Dast information

What is a DAST?

DAST stands for Dynamic Application Security Testing. Professionals in DAST roles use tools and techniques to test web applications for security vulnerabilities while the application is running, simulating real-world attacks to find issues like SQL injection, cross-site scripting, and other flaws. DAST specialists typically analyze application behavior, report vulnerabilities, and provide recommendations for mitigation. These roles are crucial in helping organizations maintain secure software by identifying and addressing security risks before attackers can exploit them.

What are the key skills and qualifications needed to thrive as a DAST?

I'm sorry, but 'Dast' does not appear to be a recognized real-world professional occupation. Please provide a valid job title for an accurate response.

What is the difference between Dast vs Penetration Tester?

AspectDastPenetration Tester
CertificationsCertified Web Application Defender, OSCP (optional)OSCP, CEH, CPT
Work EnvironmentAutomated testing tools, CI/CD pipelinesManual testing, on-site or remote assessments
Industry UsageWeb app security, DevSecOpsBroader security testing, including networks

While Dast (Dynamic Application Security Testing) uses automated tools to identify vulnerabilities in web applications during runtime, Penetration Testers perform manual and automated testing to find security flaws across systems. Dast is often integrated into development pipelines, whereas Penetration Testing is more comprehensive and manual, typically conducted periodically for in-depth security assessment.

What are some common challenges faced by DAST professionals in their day-to-day work?

DAST professionals often encounter challenges such as handling dynamic and complex web applications that may have frequent code changes, which can impact test accuracy and coverage. They also need to manage false positives and ensure that security scans do not disrupt development workflows or impact application performance. Collaboration with development and DevOps teams is crucial for prioritizing and remediating vulnerabilities effectively. Staying current with evolving security threats and adjusting testing methodologies is also an ongoing part of the role.
What cities in Virginia are hiring for Dast jobs? Cities in Virginia with the most Dast job openings:
Infographic showing various Dast job openings in Virginia as of August 2026, with employment types broken down into 91% Full Time, 3% Part Time, and 6% Contract. Highlights an 73% Physical, 8% Hybrid, and 19% Remote job distribution.

DevSecOps Engineer (SAST/DAST)

Cognize Tech Solutions LLC

Reston, VA โ€ข On-site

Contractor

Re-posted 8 days ago


Job description

Job Title: DevSecOps Engineer (SAST/DAST)
Location: Reston, VA (Onsite)

Job Summary:
  • Seeking a DevSecOps Engineer to integrate and automate SAST (e.g., SonarQube, Checkmarx) and DAST (e.g., OWASP ZAP, Burp Suite) tools into CI/CD pipelines, ensuring secure code and application runtime protection.
Key Responsibilities:
  • Automate SAST and DAST in CI/CD workflows.
  • Collaborate with teams to remediate vulnerabilities.
  • Streamline security testing and reporting.
Required Skills:
  • Experience with SAST/DAST tools and CI/CD pipelines.
  • Proficiency in scripting (Python, Bash).
  • Knowledge of secure coding practices.