1

Director Of Application Development Jobs in Washington

Application Development Expert

Annapolis, MD ยท On-site

$95K - $130K/yr

Every team member is a vital piece of our success story. We are not just a company, but a dynamic ... application development methodologies; G. Researching and maintaining knowledge in emerging ...

Director of Business Development

Oakton, VA ยท On-site

$150K - $175K/yr

Director of Business Development Industry: Government Contracting / Nonprofit Location: Oakton, VA (Hybrid) Assignment Type: Direct Hire Pay: $150,000 - $175,000 annually (depending on experience ...

Showing results 21-40

Director Of Application Development information

See Washington salary details

$94K

$172.6K

$271.3K

How much do director of application development jobs pay per year?

As of Aug 8, 2026, the average yearly pay for director of application development in Washington is $172,600.00, according to ZipRecruiter salary data. Most workers in this role earn between $146,700.00 and $198,200.00 per year, depending on experience, location, and employer.

What does a director of application development do?

A Director of Application Development oversees the planning, design, and implementation of software applications within an organization. They manage development teams, set technical standards, and ensure that projects align with business goals. This role typically involves collaborating with stakeholders, overseeing project timelines and budgets, and ensuring the quality and security of applications. Directors of Application Development also stay up-to-date with industry trends to recommend new technologies and best practices.

What are some common challenges faced by a director of application development, and how can they be addressed?

A Director of Application Development often navigates challenges such as balancing project deadlines with quality standards, managing cross-functional teams, and keeping up with rapidly evolving technologies. To address these, strong communication and leadership skills are essential for aligning team efforts and setting clear expectations. Additionally, staying current with industry trends and fostering a culture of continuous learning can help the team adapt to new tools and methodologies, ensuring successful project delivery and long-term growth.

What are the key skills and qualifications needed to thrive as a director of application development, and why are they important?

To thrive as a Director Of Application Development, you need deep expertise in software development, project management, and team leadership, often supported by a bachelor's or master's degree in computer science or a related field. Familiarity with agile methodologies, DevOps tools, cloud platforms, and enterprise application frameworks, along with certifications like PMP or Scrum Master, is highly valuable. Strong communication, strategic thinking, and the ability to inspire and manage cross-functional teams are essential soft skills. These competencies enable effective delivery of complex projects, drive innovation, and ensure alignment with business objectives.

What is the difference between Director Of Application Development vs Software Development Manager?

AspectDirector Of Application DevelopmentSoftware Development Manager
ResponsibilitiesOversees multiple application projects, sets strategic goals, manages teams, and aligns development with business objectives.Manages software development teams, oversees project execution, and ensures timely delivery of applications.
Required CredentialsBachelor's or master's in computer science, extensive experience in application development, leadership skills.Bachelor's in computer science or related field, experience in software development, team management skills.
Work EnvironmentExecutive-level, strategic planning, cross-department collaboration.Technical team management, project-focused, collaborative with developers.

The main difference is that the Director Of Application Development focuses on strategic leadership and overseeing multiple projects, while the Software Development Manager concentrates on managing development teams and project execution. Both roles require technical expertise, but the director role involves broader organizational responsibilities.

What are the most commonly searched types of Of Application Development jobs in Washington? The most popular types of Of Application Development jobs in Washington are:
What are popular job titles related to Director Of Application Development jobs in Washington? For Director Of Application Development jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Director Of Application Development jobs in Washington look for? The top searched job categories for Director Of Application Development jobs in Washington are:
What cities in Washington are hiring for Director Of Application Development jobs? Cities in Washington with the most Director Of Application Development job openings:
Infographic showing various Director Of Application Development job openings in Washington as of July 2026, with employment types broken down into 1% As Needed, 80% Full Time, 15% Part Time, and 4% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $172,600 per year, or $83 per hour.

ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME

Hiring Our Heroes

Arlington, VA โ€ข On-site

Full-time

Re-posted 16 days ago


Job description

ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME POSITION OVERVIEWThe Zero Trust Virtualization / Application Development Technical SME exists to serve as the agency's primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar - the pillar responsible for extending ZT enforcement to the application layer across the agency's enterprise software portfolio. This role advances TSA's application access control posture, API security maturity, and DevSecOps adoption by providing senior-level advisory on application security architecture, cloud workload protection, and secure software delivery in alignment with EO 14028 and OMB M-22-09. The expected outcome is a continuously advancing Applications & Workloads pillar maturity posture - with application access enforced at the authorization layer, API security posture assessed and advised, and DevSecOps practices integrated into the software delivery lifecycle. This is a senior technical advisory role requiring hands-on application security and cloud architecture experience. DUTIES & RESPONSIBILITIES General DutiesServe as the primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar across application security, cloud security, and secure software delivery domains.Continuously assess the agency's application portfolio posture against CISA ZTMM v2.0 Applications & Workloads criteria and NIST SP 800-207; proactively identify emerging application risk indicators, including access control drift, API exposure, and supply chain vulnerabilities, and deliver real-time advisory recommendations.Provide technical advisory guidance on application access control design options, API security strategies, and authorization gateway approaches, recommending solutions and implementation pathways for agency decision-making.Evaluate cloud-hosted and on-premises application environments for ZT compliance; develop recommended approaches for secure configuration, workload isolation, and least-privilege access enforcement for agency adoption.Advise on DevSecOps integration strategies, secure CI/CD pipeline practices, and software supply chain security aligned to OMB M-23-16 and EO 14028; develop recommended solutions for agency review.Assess container and virtualization environments for workload segmentation, access control, and ZT enforcement alignment; develop findings and recommended remediation approaches for agency concurrence.Provide advisory support for the development and maturation of Applications & Workloads pillar entries in the ZT Common Control Catalog (CCC), ensuring traceability to NIST SP 800-53 Rev. 5 control families.Develop recommended Applications & Workloads pillar inputs to the ZT Roadmap, IG CIGIE maturity reporting, and enterprise performance reporting for agency review and approval.Collaborate with Identity, Network, and Data SMEs to ensure application access control approaches integrate coherently across all ZTMM pillars.Review application-related policy documents and technical standards; identify gaps relative to ZT mandates and develop recommended updates for agency concurrence.Support all application and workload-related ZT data calls, audits, and compliance reporting by providing advisory analysis and recommended responses.Prepare and present application security findings, maturity assessments, and advisory recommendations to senior leadership and the CISO.Leverage AI-assisted analysis tools, automation platforms, and prompt engineering techniques to enhance advisory productivity, accelerate gap analysis and documentation tasks, and enable focus on higher-value technical advisory work; apply all AI capabilities in accordance with agency acceptable use policies and Zermount's ethical AI use guidelines. SUBJECT MATTER EXPERTISE SME Area #1 – Application Security, Cloud Workload Protection & DevSecOps AdvisoryExpert-level mastery of application security architecture including ZT application access control design, API security strategy, authorization gateway architecture, and DevSecOps integration demonstrated through operational implementation or senior advisory engagement in a federal or large enterprise environment.Authoritative knowledge of CISA ZTMM v2.0 Applications & Workloads pillar criteria, NIST SP 800-207 application access tenets, NIST SP 800-218 SSDF, EO 14028 software security requirements, OMB M-23-16, and NIST SP 800-53 Rev. 5 SA, SI, and CM control families.Expert-level proficiency with cloud platforms (Azure, AWS, or GCP) at a security architecture or engineering level, including IaaS, PaaS, and SaaS security constructs, cloud-native access control, and cloud workload protection.Expert-level knowledge of API security frameworks, authorization gateway design, and application-layer access control enforcement in a ZT context.Independent decision-making authority on Applications & Workloads pillar advisory scope, application portfolio assessment methodology, and recommended ZT enforcement approach. Bring solutions for concurrence.Problem-solving at the intersection of application security and cross-pillar ZT integration. Able to identify how application access control gaps create risk in Identity enforcement and Data pillar protection requirements. SME Area #2 – Container, Virtualization & Software Supply Chain SecurityStrong foundational knowledge of application development concepts, software architectures (microservices, monolithic, serverless), and API design patterns sufficient to assess application security controls and advise on ZT enforcement at the application layer.Working knowledge of container orchestration (Kubernetes, Docker) and virtualization platforms, including container runtime security, image scanning, and workload isolation, as they relate to ZT Applications & Workloads pillar requirements.Hands-on experience with CI/CD pipeline security integration, software supply chain risk management, and SSDF practice alignment in a federal or large enterprise environment.Foundational understanding of database security, data access patterns, and application-to-database authentication mechanisms as they relate to ZT workload protection and least-privilege enforcement.Supports Applications & Workloads pillar advisory by enabling technically credible engagement with agency application developers, cloud architects, DevSecOps engineers, and software delivery teams.Interacts directly with Identity SME on application-layer identity assertion and authorization, Network SME on application traffic segmentation, and the ZT Process Re-Engineering SME on DevSecOps process change advisory. QUALIFICATIONS Minimum RequirementsA minimum of 10 years in application security, cloud security architecture, or DevSecOps with demonstrated Zero Trust scope.Hands-on experience implementing ZT-aligned application access control in cloud environments (Azure, AWS, or GCP); must extend beyond administration to include ZT policy design and enforcement architecture.Expert knowledge of NIST SP 800-207, CISA ZTMM v2.0 Applications & Workloads pillar criteria, NIST SP 800-218, and federal secure software development standards.Experience with API security frameworks, authorization gateway design, and application-layer access control enforcement in a ZT context.Demonstrated familiarity with DevSecOps practices, CI/CD security integration, and software supply chain security under EO 14028 and OMB M-23-16.Experience assessing application security controls against NIST SP 800-53 Rev. 5 SA, SI, and CM control families.Demonstrated experience developing and implementing Zero Trust application security solutions operationally, not limited to framework mapping or documentation.Experience supporting ZT-related IG FISMA metrics reporting pertaining to applications and workloads.Strong written and oral communication skills; ability to translate complex application security concepts into CISO-ready recommendations.Demonstrated familiarity with AI-assisted analysis tools or prompt engineering; ability to apply AI capabilities ethically to accelerate advisory work and surface higher-value technical insights. Preferred QualificationsFive years of IT cybersecurity experience, including direct support to the U.S. Government. This experience can be concurrent with the minimum 10 years of application security experience.Prior direct involvement in a ZT Applications & Workloads pillar implementation or enterprise ZT-aligned deployment in a technical design or advisory capacity.Cloud security certification: AWS Security Specialty, Microsoft Azure Security Engineer Associate (AZ-500), or GCP Professional Cloud Security Engineer.Experience with Kubernetes security, container runtime protection, and image vulnerability management in a federal or enterprise environment.Experience with legacy application ZT advisory extending ZT controls to applications that cannot natively support modern authentication or authorization.Prior CISO-facing experience. CompetenciesTechnical: CISA ZTMM v2.0 Applications & Workloads pillar, NIST SP 800-207, NIST SP 800-218, EO 14028, OMB M-23-16, Azure/AWS/GCP cloud security, API security, authorization gateways, DevSecOps, CI/CD pipeline security, Kubernetes, Docker, NIST SP 800-53 SA/SI/CM, AI-assisted analysis.Leadership: Technical advisory leadership for Applications & Workloads pillar; cross-pillar SME coordination with Identity, Network, and Data teams; engagement with agency developers, cloud architects, and DevSecOps engineers.Behavioral: Proactive continuous application posture monitoring; precision in application security architecture assessment; continuous learning toward evolving cloud security capabilities, DevSecOps practices, and federal software security mandates. Education & CertificationsMinimum of a Bachelor of Science (or higher) in Information Technology, Computer Science, Software Engineering, Cybersecurity, or a related field.Required: Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP), or equivalent certification.Strongly preferred: Certified Information Security Manager (CISM) or equivalent senior security management certification.Strongly preferred: Cloud security certification. AWS Security Specialty, Microsoft Azure Security Engineer Associate (AZ-500), or GCP Professional Cloud Security Engineer. Clearance LevelActive Secret Clearance required. WORK LOCATION Hybrid – Primarily Remote. Occasional onsite work required at the client location in Springfield, VA and Zermount HQ in Arlington, VA. HOURS OF OPERATION Business Hours: 8:00 AM EST – 4:30 PM ESTCore Hours: 9:00 AM EST – 3:00 PM EST REPORTING STRUCTURE Reports To: ZT SME Team LeaderDirect Reports: None