1

Dast Jobs (NOW HIRING)

Lead Sales Engineer

Burlington, MA · On-site

$111.50K - $146.90K/yr

As pioneers in SAST, SCA, and DAST , we've spent years setting the standard for AppSec - and we're not done. Now we're looking for a Senior Staff Sales Engineer who can bring technical gravity, stage ...

Automate security gates in CI/CD pipelines (SAST, DAST, dependency scanning, secrets detection). * Security Architecture & Controls * Design secure system and API architectures for multi-tenant cloud ...

... DAST/Secrets/SBOM) in pipelines. Requirements • Strong with GitHub Actions/Azure DevOps/GitLab CI/Jenkins; Terraform; Kubernetes; secrets & policy-as-code. • Proven stakeholder management and ...

Senior DevSecOps Engineer

New York, NY · On-site

$125.30K - $171.80K/yr

Implement and manage SAST, DAST, SCA, and container vulnerability scanning solutions * Develop and enforce secrets management and credential protection strategies * Implement IAM governance and least ...

Implement DAST methodologies, configure scanning tools, and conduct regular assessments of running applications • Penetration Testing: Lead and oversee internal and external penetration testing ...

Evaluate SAST/DAST findings and manage issues in Jira. * Validate bug bounty vulnerabilities. * Translate business requirements into technical specifications. * Troubleshoot complex issues and ...

Integrate and manage SAST and DAST tools within CI/CD pipelines. * Collaborate with development teams to ensure secure coding practices and assist in vulnerability remediation. * Design and implement ...

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings. Responsibilities • Conduct ...

Sr DevOps Engineer

Chicago, IL · On-site

$134K - $172.20K/yr

Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...

Senior DevOps Engineer

Houston, TX · On-site

$112.60K - $144.70K/yr

Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...

next page

Showing results 1-20

Dast information

See salary details

$68K

$126.8K

$191.5K

How much do dast jobs pay per year?

As of May 30, 2026, the average yearly pay for dast in the United States is $126,833.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $145,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Dast, and why are they important?

I'm sorry, but 'Dast' does not appear to be a recognized real-world professional occupation. Please provide a valid job title for an accurate response.

What are some common challenges faced by DAST (Dynamic Application Security Testing) professionals in their day-to-day work?

DAST professionals often encounter challenges such as handling dynamic and complex web applications that may have frequent code changes, which can impact test accuracy and coverage. They also need to manage false positives and ensure that security scans do not disrupt development workflows or impact application performance. Collaboration with development and DevOps teams is crucial for prioritizing and remediating vulnerabilities effectively. Staying current with evolving security threats and adjusting testing methodologies is also an ongoing part of the role.

What are DAST jobs?

DAST stands for Dynamic Application Security Testing. Professionals in DAST roles use tools and techniques to test web applications for security vulnerabilities while the application is running, simulating real-world attacks to find issues like SQL injection, cross-site scripting, and other flaws. DAST specialists typically analyze application behavior, report vulnerabilities, and provide recommendations for mitigation. These roles are crucial in helping organizations maintain secure software by identifying and addressing security risks before attackers can exploit them.

What is the difference between Dast vs Penetration Tester?

AspectDastPenetration Tester
CertificationsCertified Web Application Defender, OSCP (optional)OSCP, CEH, CPT
Work EnvironmentAutomated testing tools, CI/CD pipelinesManual testing, on-site or remote assessments
Industry UsageWeb app security, DevSecOpsBroader security testing, including networks

While Dast (Dynamic Application Security Testing) uses automated tools to identify vulnerabilities in web applications during runtime, Penetration Testers perform manual and automated testing to find security flaws across systems. Dast is often integrated into development pipelines, whereas Penetration Testing is more comprehensive and manual, typically conducted periodically for in-depth security assessment.

More about Dast jobs
What cities are hiring for Dast jobs? Cities with the most Dast job openings:
What states have the most Dast jobs? States with the most job openings for Dast jobs include:
Infographic showing various Dast job openings in the United States as of May 2026, with employment types broken down into 91% Full Time, 1% Part Time, and 8% Contract. Highlights an 75% Physical, 8% Hybrid, and 17% Remote job distribution, with an average salary of $126,833 per year, or $61 per hour.
Lead Sales Engineer

Lead Sales Engineer

Black Duck Software, Inc.

Burlington, MA • On-site

$111.50K - $146.90K/yr

Other

Posted 13 days ago


Job description

Lead Sales Engineer - Application SecurityOwn the Room. Architect the Deal. Redefine AppSec.

Black Duck Software isn't here to play small. We help the world's top enterprises ship secure, highquality software without slowing down. As pioneers in SAST, SCA, and DAST, we've spent years setting the standard for AppSec - and we're not done.

Now we're looking for a Senior Staff Sales Engineer who can bring technical gravity, stage presence, and a bit of swagger. Someone who can walk into a room full of architects, CISOs, or developers and immediately take control of the conversation. Someone who sees complex customer problems and thinks: let's go.

If you're the SE who thrives on pressure, loves the chase, and delivers the technical knockout punch that makes deals close, keep reading.

Your Mission
  • Be the technical closer. Drive strategy with your AE partners and unlock enterprise deals others can't.
  • Run killer demos and POCs. Turn complex requirements into "wow, we need this" moments.
  • Diagnose customer pain fast. Architect solutions across SAST, SCA, DAST, SDLC, and DevSecOps pipelines.
  • Win competitive battles. You'll know exactly how to position Black Duck and outmaneuver the field.
  • Own the narrative. Deliver high-impact presentations that land with engineers and executives.
  • Embed in their stack. CI/CD, cloud, containers, you name it - you'll show them how it all fits.
  • Be the expert customers trust. When things get technical, you're the one they want in the room.
What You Bring
  • 8+ years of sales engineering / pre-sales in AppSec or something damn close
  • Real understanding of application security, vulnerabilities, and testing methodologies
  • Strong SAST, SCA, or DAST experience (bonus points if you've used multiple)
  • Software development or security engineering chops - you're not afraid of code
  • Elite communication skills (you can explain anything to anyone)
  • Curiosity, creativity, and a comfort with ambiguity - you don't need a script
Nice-to-Haves 
  • Consulting or enterprise architecture background
  • Experience with DevOps tools, CI/CD systems, and modern SDLC workflows
  • Ability to juggle multiple highstakes engagements without breaking a sweat
  • A strategic mindset - you solve the problem and shape the deal
  • Passion for AppSec and a desire to help customers level up their security posture
Why This Role Matters

You won't be "the demo person."
You'll be the technical brand customers remember.
The trusted advisor who shapes security programs.
The difference-maker between a maybe and a yes.

If you want a quiet job, this isn't it.
If you want impact, visibility, and big wins - welcome home.