2

Offensive Security Engineer Remote Jobs in Springfield, VA

Hybrid 3 days onsite / 2 days remote in either Tysons Corner, VA or Rockville, MD Our client seeks a senior application security engineer to plan, coordinate, and implement application security ...

MANTECH seeks a motivated, career and customer oriented Enterprise AI Security Engineer for a new ... For Remote Opportunities), education and certifications as well as Federal Government Contract ...

Senior Network Security Engineer

Suitland, MD · Remote

$63 - $82.50/hr

We are seeking a Senior Network Security Engineer for an operations-first role supporting ... VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues ...

Cloud Security Engineer

Washington, DC · On-site +1

$74.25 - $98.50/hr

... engineering, scientific, or management problems. * Serve as the lead Cloud Security Architect ... Remote * Work Hours: 40 * Travel: 20% * Extended Computer Use: Regular and prolonged periods of ...

Foundational knowledge of cyber threat concepts, including one or more of the following: scaled data extraction, ransomware, local and remote exploits, or offensive security operations * Familiarity ...

Data Security Engineer

Vienna, VA · Remote

$60.25 - $80.25/hr

Hybrid - onsite and remote Hours: 40.0 Responsibilities * Provide technical guidance and ... Engineers * Minimum (3-5) years experience with System design, administration and security

Showing results 41-60

Offensive Security Engineer Remote information

See Springfield, VA salary details

$64.2K

$159.6K

$214.7K

How much do offensive security engineer remote jobs pay per year?

As of Sep 4, 2026, the average yearly pay for offensive security engineer remote in Springfield, VA is $159,576.00, according to ZipRecruiter salary data. Most workers in this role earn between $149,400.00 and $165,600.00 per year, depending on experience, location, and employer.

What does an offensive security engineer do?

An Offensive Security Engineer is responsible for proactively identifying and mitigating security vulnerabilities in an organization’s systems, networks, and applications. Working remotely, they perform penetration testing, vulnerability assessments, and simulated cyberattacks to discover weaknesses before malicious actors can exploit them. They also provide detailed reports and recommendations to help organizations improve their overall security posture. Remote Offensive Security Engineers use a variety of tools and collaborate with other security professionals to ensure effective communication and secure operations across distributed environments.

What are the key skills and qualifications needed to thrive as an offensive security engineer?

To thrive as an Offensive Security Engineer (Remote), you need strong expertise in penetration testing, vulnerability assessment, and cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools like Metasploit, Burp Suite, and Kali Linux, as well as certifications such as OSCP or CEH, is typically required. Attention to detail, problem-solving skills, and effective written communication are critical soft skills for success in this role. These abilities are essential for identifying vulnerabilities, reporting findings clearly, and helping organizations strengthen their security posture against evolving threats.

What are some common challenges faced by remote offensive security engineers, and how can they be addressed?

Remote Offensive Security Engineers often face challenges such as coordinating effectively with geographically dispersed teams, maintaining secure access to sensitive systems, and staying updated on rapidly evolving threat landscapes. Overcoming these hurdles typically involves strong communication skills, leveraging secure collaboration tools, and establishing regular check-ins with colleagues. Additionally, continuous learning through online resources and industry forums is vital to remain effective and proactive in identifying and addressing security vulnerabilities.

What is the difference between Offensive Security Engineer Remote vs Penetration Tester?

AspectOffensive Security Engineer RemotePenetration Tester
CertificationsOSCP, OSWE, CEHOSCP, CEH, GPEN
Work EnvironmentRemote, collaborative security teamsOften client-site or remote assessments
Industry UsageSecurity teams, cybersecurity firmsConsulting firms, security assessments
Search & Comparison IntentUnderstanding roles, skills, and remote opportunitiesJob scope, certifications, and remote work options

Offensive Security Engineer Remote and Penetration Tester roles share overlapping skills and certifications like OSCP and CEH. However, Offensive Security Engineers typically work within security teams on ongoing security infrastructure, often remotely, focusing on offensive security strategies. Penetration Testers usually perform specific security assessments, sometimes on-site, and may have a broader consulting focus. Both roles are vital in cybersecurity but differ in scope and work environment.

What are popular job titles related to Offensive Security Engineer Remote jobs in Springfield, VA?

For Offensive Security Engineer Remote jobs in Springfield, VA, the most frequently searched job titles are:

What cities near Springfield, VA are hiring for Offensive Security Engineer Remote jobs?

Cities near Springfield, VA with the most Offensive Security Engineer Remote job openings:

Infographic showing various Offensive Security Engineer Remote job openings in Springfield, VA as of August 2026, with employment types broken down into 74% Full Time, and 26% Contract. Highlights an 100% Remote job distribution, with an average salary of $159,576 per year, or $76.7 per hour.

Application Security Engineer

Booz Allen Hamilton, Inc.

Bethesda, MD • On-site, Remote

$86K - $198K/yr

Full-time, Part-time

Medical, Life, Retirement, PTO

Posted 24 days ago


Key responsibilities

  • Integrate security practices throughout the software development lifecycle to enhance and maintain software security.

  • Apply technical expertise to develop solutions, perform architecture reviews, threat modeling, and security assessments.

  • Mentor and supervise team members in security-related activities and initiatives.


Booz Allen Hamilton rating

8.9

Company rating: 8.9 out of 10

Based on 49 frontline employees who took The Breakroom Quiz

11th of 72 rated business consultants


Job description


Remote Work:
Yes
Job Number:
R0246153
Location:
Annapolis Junction,MD,US
Share job via:
Share
Additional Locations:
  • Bethesda, Maryland, USA

Application Security Engineer
The Opportunity:
Integrate security practices throughout the software development lifecycle to enhance and maintain the security posture of software. Apply advanced consulting skills and extensive technical expertise, including full industry knowledge. Develop innovative solutions to complex problems. Work without considerable direction, and mentor and supervise team members.
You Have:
  • 5+ years of experience in cybersecurity, application security, product security, or software engineering
  • Experience implementing or assessing Secure SDLC and application security programs, leading client engagements, managing multiple priorities, and performing architecture reviews, threat modeling, or security assessments
  • Experience with software supply chain security concepts, including SBOMs, dependency management, code signing, artifact integrity, and secure build pipelines
  • Experience implementing or evaluating application security tools such as SAST, DAST, SCA, IaC scanning, container security, API security, secrets detection, and software composition analysis
  • Experience with Agile, Scrum, and DevSecOps operating models in large-scale software development environments
  • Knowledge of secure software development principles, modern application architectures, and modern software architectures, including cloud-native, microservices, APIs, containers, Kubernetes, and serverless environments
  • Knowledge of authentication, authorization, cryptography, API security, and cloud security
  • Knowledge of vulnerability management processes, risk prioritization methodologies, and remediation workflows
  • Ability to translate complex technical risks into executive-level briefings, business cases, and actionable roadmaps, and communicate effectively with both technical and executive stakeholders
  • Bachelor's degree in CS, Cybersecurity, Information Systems, or Engineering

Nice If You Have:
  • Experience designing or maturing enterprise application security and product security programs
  • Experience with secure development requirements for regulated industries, including healthcare, financial services, industrial control systems, automotive, aerospace, or critical infrastructure
  • Experience applying industry frameworks such as OWASP SAMM, BSIMM, NIST SSDF, NIST CSF, NIST AI RMF, ISO 27001, ISO/IEC 42001, IEC 62443, and MITRE ATT&CK or ATLAS
  • Experience developing technical proposals, responding to RFPs, creating Statements of Work (SOWs), and supporting business development initiatives
  • Experience leading executive workshops, stakeholder interviews, and technical design sessions
  • Ability to mentor junior consultants, provide technical leadership, and contribute to practice development and thought leadership
  • Ability to travel up to 50% of the time, depending on client needs
  • Possession of strong written and verbal communication skills
  • Possession of strong facilitation skills
  • Master's degree in Cybersecurity, CS, Software Engineering, Information Assurance, or a related technical field

Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,900.00 to $198,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.

Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Not ready to apply? Join our Talent Community and sign up for job alerts.

What Booz Allen Hamilton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Booz Allen Hamilton logo

About Booz Allen Hamilton

Sourced by ZipRecruiter

Booz Allen Hamilton is a leading provider of management and technology consulting services to the US government in defense, intelligence, and civil markets. Headquartered in McLean, Virginia, the firm also serves major corporations, institutions, and not-for-profit organizations. Founded in 1914 by Edwin G. Booz, the company has a long-standing tradition of helping clients achieve success by delivering a wide range of consulting services that include strategic planning, human capital and learning, communication, systems development, and others. The company's mission is to empower people to change the world, and it has a reputation for maintaining the highest standards of integrity and-excellence.

Industry

It services

Company size

10,000+ Employees

Headquarters location

McLean, VA, US

Year founded

1914