2

Remote Application Security Engineer Jobs in Maryland

Senior Manager, Data Security

California, MD ยท On-site +1

$109K - $150K/yr

This role is remote-friendly within North America. For those who prefer in-office or hybrid work ... application risk, and configuration enforcement * Ensure data security engineering aligns to data ...

As a member of the Information Security Program Team, the Information Security Engineer is responsible for participating in all aspects of planning, deploying, documenting, monitoring, & maintaining ...

Security Engineer - Junior

Lanham, MD ยท On-site +1

$60K - $110K/yr

BDR Solutions LLC is seeking a motivated Security Engineer to support secure data platform operations within an IRS cloud environment. This role focuses on implementing security controls, supporting ...

Senior DevSecOps Engineer

Gaithersburg, MD ยท Remote

$112K - $155K/yr

... remote and high-dependency aviation environments. These efforts focus on delivering mission ... Lead the implementation and continuous improvement of automated application security, software ...

Posted today

Description Lead Application Developer At B&A, we foster and embrace a distinct set of values that ... Incorporate application security (encryption, MFA, authentication, and authorization), error ...

Lead DevSecOps Engineer

Gaithersburg, MD ยท Remote

$110K - $145K/yr

... remote and high-dependency aviation environments. These efforts focus on delivering mission ... including static application security testing (SAST), software composition analysis (SCA ...

Posted today

Partner cross-functionally with Product, Engineering, Legal, and Compliance teams to align security ... Background in SaaS or cloud-native software organizations #LI-Remote #LI-CP1 Compensation: This ...

Partner cross-functionally with Product, Engineering, Legal, and Compliance teams to align security ... Background in SaaS or cloud-native software organizations #LI-Remote #LI-CP1 Compensation: This ...

Platform DevEx Engineer

Bethesda, MD ยท On-site +1

$56.50 - $77.25/hr

This opportunity is full time and onsite/remote at the NCBI in Bethesda, MD and/or remote. NCBI is ... for application security and mature code practices. We're involved in the entire development ...

Showing results 21-40

Remote Application Security Engineer information

What are the key skills and qualifications needed to thrive as a remote application security engineer, and why are they important?

To thrive as a Remote Application Security Engineer, you need a strong background in secure software development, vulnerability assessment, and a solid understanding of security frameworks, often supported by a degree in computer science and certifications like CISSP or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, static and dynamic analysis tools, and secure code review systems is typically required. Excellent problem-solving, communication, and self-motivation are essential soft skills for collaborating remotely and articulating security risks to diverse stakeholders. These skills ensure robust application security, effective risk mitigation, and seamless cooperation in distributed work environments.

What is the difference between Remote Application Security Engineer vs Remote Security Analyst?

AspectRemote Application Security EngineerRemote Security Analyst
CertificationsCSSLP, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentFocus on application security, code reviews, vulnerability assessmentsMonitor security alerts, analyze threats, incident response
Industry UsageSoftware development, tech companies, financeIT services, corporate security teams, government

The Remote Application Security Engineer primarily focuses on securing software applications through code analysis and vulnerability management, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require similar certifications and are vital in cybersecurity teams, but they differ in daily tasks and focus areas.

How does a remote application security engineer typically collaborate with development teams to address security vulnerabilities?

As a Remote Application Security Engineer, you will regularly interact with development teams through virtual meetings, code reviews, and secure communication platforms. Collaboration involves identifying vulnerabilities through security assessments, then working closely with developers to explain risks and recommend remediation strategies. Effective communication skills and a proactive approach are essential, as you'll often need to bridge the gap between security requirements and development timelines. Embracing tools for remote collaboration, such as shared issue trackers and documentation platforms, is key to ensuring efficient teamwork and timely resolution of security issues.

What is a remote application security engineer?

A Remote Application Security Engineer is a cybersecurity professional who works from a location outside the traditional office environment to assess, design, and implement security measures for software applications. Their responsibilities include identifying vulnerabilities in code, conducting security testing, and recommending fixes to prevent cyberattacks. They collaborate with development teams remotely to ensure secure coding practices and compliance with industry standards. This role is critical for protecting sensitive data and maintaining trust in digital products, especially as remote work and cloud-based applications become more common.
What are the most commonly searched types of Application Security Engineer jobs in Maryland? The most popular types of Application Security Engineer jobs in Maryland are:
What are popular job titles related to Remote Application Security Engineer jobs in Maryland? For Remote Application Security Engineer jobs in Maryland, the most frequently searched job titles are:
What job categories do people searching Remote Application Security Engineer jobs in Maryland look for? The top searched job categories for Remote Application Security Engineer jobs in Maryland are:
What cities in Maryland are hiring for Remote Application Security Engineer jobs? Cities in Maryland with the most Remote Application Security Engineer job openings:

Senior Web Application Penetration Tester

SixGen, Inc.

Annapolis, MD โ€ข Remote

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 24 days ago


Job description

SIXGEN's mission is to deliver agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. We combine innovation, deep expertise, and cutting-edge capabilities to uncover vulnerabilities, protect vital systems, and ensure operational superiority in an ever-evolving digital landscape.

POSITION OVERVIEW

Position: Senior Web Application Penetration Tester
Job Type: Full-time
Location: Remote
Clearance Requirements: Must be able to obtain a Secret Clearance
Travel Requirements: Up to 10%
Experience: 5+ years

WHAT YOU'LL DO

We are seeking a skilled and motivated Senior Web Application Penetration Tester to join our growing cyber operations team. The ideal candidate will possess deep expertise in web application security testing, vulnerability research, and exploitation techniques, with the ability to identify complex attack paths and develop creative solutions to challenging security problems.

This role goes far beyond automated scanning. Successful candidates will conduct in-depth assessments of web applications, APIs, mobile applications, and supporting infrastructure while leveraging custom tooling, manual testing techniques, and advanced exploitation methodologies to uncover impactful security findings.

KEY RESPONSIBILITIESWeb Application Security Assessments
  • Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies.
  • Perform application enumeration, endpoint discovery, vulnerability research, and exploitation activities.
  • Identify, validate, and assess vulnerabilities across complex environments.
  • Analyze attack paths and security weaknesses to determine business and operational impact.
Technical Analysis & Research
  • Develop and utilize custom tools, scripts, and payloads to support testing activities.
  • Perform network mapping, vulnerability analysis, and security assessments across applications and supporting infrastructure.
  • Research emerging vulnerabilities, attack techniques, and exploitation methodologies.
  • Support post-exploitation activities involving cloud and enterprise environments when applicable.
Client Engagement & Reporting
  • Collaborate with clients and internal teams to define scope, review findings, and recommend remediation strategies.
  • Communicate technical concepts and findings to both technical and non-technical stakeholders.
  • Produce comprehensive reports, including detailed findings, exploitation procedures, risk analysis, and mitigation recommendations.
  • Participate in client meetings and provide ongoing updates throughout assessment activities.
QUALIFICATIONS
  • 5+ years of experience in web application penetration testing or offensive cybersecurity.
  • Demonstrated experience conducting manual web application security assessments.
  • Knowledge of modern web application vulnerabilities, attack methodologies, and exploitation techniques.
  • Experience with network mapping, vulnerability scanning, and penetration testing methodologies.
  • Familiarity with NIST 800-series standards and cybersecurity best practices.
  • Experience developing scripts, payloads, or custom testing tools.
  • Strong analytical, problem-solving, and communication skills.
Preferred Certifications

One or more of the following certifications is strongly preferred:

  • CWES (preferred)
  • CWEE (preferred)
  • OSCP
  • OSWA
  • OSWE
  • CRTO
  • GWAPT
  • Other relevant hands-on offensive security certifications
PREFERRED QUALIFICATIONS
  • Experience with cloud environments and post-exploitation activities.
  • Experience with Active Directory security assessments.
  • Familiarity with FISMA compliance requirements.
  • Experience supporting government or regulated industry clients.
  • Proficiency with common offensive security tools and frameworks.
COMPENSATION & BENEFITS

At SIXGEN, we are committed to fair and equitable compensation practices. Compensation for this role will be based on experience, qualifications, technical expertise, and overall alignment with the position.

Additionally, SIXGEN offers top-tier benefits for full-time employees, including:

  • Employer-paid health insurance premiums (medical, dental, vision) for you and your familyย 
  • Employer-paid short/long term disability insurance and basic life/AD&D insurance
  • 401K with a 4% employer contribution
  • Professional development reimbursement options available (training, certification, education, etc)
  • Flexible and remote work policies for most positions
  • Flexible PTO and holiday schedule

For more information, please reach out to our Director of Human Resources, Amy Maxwell atย amy.maxwell@sixgen.io.

OUR COMMITMENT

SIXGEN is an Equal Opportunity Employer. We ensure that all applicants are considered for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class.

We are committed to fostering an inclusive culture that values diversity in our people, reflecting the communities we serve and our customer base. We strive to attract and retain a diverse talent pool and create an environment where everyone is empowered to be their authentic selves at work.