2

Remote Application Security Engineer Jobs in Virginia

This is a remote role with opportunities to work across distributed teams in a fast-paced ... application sources * Active Secret clearance or higher * Must be legally authorized to work in the ...

This is a remote position. Maximus TCS (Technology and Consulting Services) Internal Job Profile ... access changes, application removal, configuration updates, and allow/block list management ...

DevSecOps Engineer

VA · On-site +1

This position requires an active Top Secret security clearance with SCI eligibility and is remote ... Preferred Skills and Qualifications: - Certified Kubernetes Application Developer (CKAD), Red Hat ...

IT Security Engineer

Arlington, VA · On-site +1

$107K - $195K/yr

Percentage of remote work will vary based on client requirements/deliverables. In this role, you ... Maintain application, network, and database scanning infrastructure (application/product updates ...

Security Engineer (Senior Level)

Mclean, VA · On-site +1

$115K - $158K/yr

This is a hybrid -remote role with approximately 5% on-site work at client sites throughout the US ... Application Deadline: The sooner you apply, the sooner we can get to know you! Submit your resume ...

Security Engineer (Senior Level)

Mclean, VA · On-site +1

$115K - $158K/yr

This is a hybrid -remote role with approximately 5% on-site work at client sites throughout the US ... Application Deadline: The sooner you apply, the sooner we can get to know you! Submit your resume ...

Oversee mobile security controls including device encryption, lost/stolen device workflows, and remote wipe/lock actions. Conduct security reviews for OS updates, CVEs, and platform changes. Work ...

next page

Showing results 1-20

Remote Application Security Engineer information

What are the key skills and qualifications needed to thrive as a Remote Application Security Engineer, and why are they important?

To thrive as a Remote Application Security Engineer, you need a strong background in secure software development, vulnerability assessment, and a solid understanding of security frameworks, often supported by a degree in computer science and certifications like CISSP or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, static and dynamic analysis tools, and secure code review systems is typically required. Excellent problem-solving, communication, and self-motivation are essential soft skills for collaborating remotely and articulating security risks to diverse stakeholders. These skills ensure robust application security, effective risk mitigation, and seamless cooperation in distributed work environments.

What is the difference between Remote Application Security Engineer vs Remote Security Analyst?

AspectRemote Application Security EngineerRemote Security Analyst
CertificationsCSSLP, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentFocus on application security, code reviews, vulnerability assessmentsMonitor security alerts, analyze threats, incident response
Industry UsageSoftware development, tech companies, financeIT services, corporate security teams, government

The Remote Application Security Engineer primarily focuses on securing software applications through code analysis and vulnerability management, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require similar certifications and are vital in cybersecurity teams, but they differ in daily tasks and focus areas.

How does a Remote Application Security Engineer typically collaborate with development teams to address security vulnerabilities?

As a Remote Application Security Engineer, you will regularly interact with development teams through virtual meetings, code reviews, and secure communication platforms. Collaboration involves identifying vulnerabilities through security assessments, then working closely with developers to explain risks and recommend remediation strategies. Effective communication skills and a proactive approach are essential, as you'll often need to bridge the gap between security requirements and development timelines. Embracing tools for remote collaboration, such as shared issue trackers and documentation platforms, is key to ensuring efficient teamwork and timely resolution of security issues.

What is a Remote Application Security Engineer?

A Remote Application Security Engineer is a cybersecurity professional who works from a location outside the traditional office environment to assess, design, and implement security measures for software applications. Their responsibilities include identifying vulnerabilities in code, conducting security testing, and recommending fixes to prevent cyberattacks. They collaborate with development teams remotely to ensure secure coding practices and compliance with industry standards. This role is critical for protecting sensitive data and maintaining trust in digital products, especially as remote work and cloud-based applications become more common.
What are the most commonly searched types of Application Security Engineer jobs in Virginia? The most popular types of Application Security Engineer jobs in Virginia are:
What are popular job titles related to Remote Application Security Engineer jobs in Virginia? For Remote Application Security Engineer jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Remote Application Security Engineer jobs in Virginia look for? The top searched job categories for Remote Application Security Engineer jobs in Virginia are:
What cities in Virginia are hiring for Remote Application Security Engineer jobs? Cities in Virginia with the most Remote Application Security Engineer job openings:
Infographic showing various Remote Application Security Engineer job openings in Virginia as of May 2026, with employment types broken down into 100% Contract. Highlights an 100% Remote job distribution.

Application Security Engineer (REMOTE)

EnerSys

Centreville, VA • Remote

$117K - $146K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 7 days ago


EnerSys rating

7.6

Company rating: 7.6 out of 10

Based on 52 frontline employees who took The Breakroom Quiz

218th of 516 rated manufacturers


Job description

EnerSys is a global leader in stored energy solutions for industrial applications. We have over thirty manufacturing and assembly plants worldwide servicing over 10,000 customers in more than 100 countries. Worldwide headquarters are located in Reading, PA, USA with regional headquarters in Europe and Asia. We complement our extensive line of Motive Power and Energy Systems with a full range of integrated services and systems. With sales and service locations throughout the world, and over 100 years of battery experience, EnerSys is the power/full solution for stored DC power products. 

What We're Offering

  • Paid time off plus paid holidays
  • Medical/dental/vision insurance plan
  • Life insurance, short/long term disability, tuition reimbursement, flex spending, and employee stock purchase plan
  • 401K plan
  • Culture: We value and strive for excellence in all that we do through innovative technology by creating long lasting relationships with our stakeholders, co-workers, and customers. We continually strive to foster teamwork, engagement and enhance our employee's skills and competence by providing appropriate training.

Compensation Range: $117,200 - $146,600 

Compensation may vary based on applicant's work experience, education level, skill set, and/or location.  

Job Purpose

The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers, DevOps teams, and security professionals to embed security into the full software development lifecycle. Collaborate within an expanding Cybersecurity team, and work closely with internal EnerSys teams to ensure new and continued compliance with cybersecurity frameworks and required programs and initiatives.

Essential Duties and Responsibilities

   Serve as a primary liaison between the Cybersecurity and development teams, ensuring security is integrated into design, development, deployment, and operations.
   Conduct application security assessments, code reviews, API testing, threat modeling, and penetration testing to identify vulnerabilities.
   Define, maintain, and enforce secure coding standards, patterns, and best practices.
   Integrate and manage security tooling within CI/CD pipelines, including SAST, DAST, SCA, IaC scanning, and container security solutions.
   Support secure architecture reviews for cloudnative applications, microservices, and containerized workloads.
   Support threat modeling, risk assessments, and security architecture reviews for applications.
   Ensure that all security practices meet regulatory and compliance requirements.
   Develop and deliver cybersecurity training programs for development teams to promote awareness and adherence to best practices.
   Ensure application security practices align with regulatory and compliance frameworks (e.g., NIST CSF, ISO 27001, IEC 62443).
   Keep up to date on emerging threats, incorporating threat intelligence into security practices and providing proactive defenses.
   Monitor and respond to application security threats, incidents and vulnerabilities.
   Stay up to date on regulatory developments and industry trends.
   Manage and maintain third-party vendor and consultant relationships .
   Perform other duties as assigned.

SUPERVISORY RESPONSIBILITIES: N/A

Qualifications

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. 

Must have an active passport and be willing to travel internationally.

Required Qualifications

  • Bachelor's degree in a technical field (e.g., Computer Science, Information Systems, Cybersecurity).
  • 5+ years of experience in Information Security, with at least 3 years focused on application security, secure development, or DevSecOps.
  • Demonstrated experience building and scaling an application security program, either as the lead or a key contributor.
  • Strong knowledge of OWASP Top 10, OWASP ASVS, SANS Top 25, and secure SDLC methodologies.
  • Hands-on experience with application security testing tools such as Burp Suite, Fortify, Checkmarx, Veracode, and ZAP.
  • Experience conducting threat modeling, penetration testing, secure software development, and secure architecture reviews.
  • Practical experience securing cloud environments (AWS or Azure) and implementing cloud-native security controls.
  • Familiarity with Kubernetes security, container hardening, and runtime protection.
  • Strong communication skills with the ability to collaborate and influence across technical and non-technical teams.

Preferred Qualifications

  • Relevant certifications such as CISSP, CSSLP, OSCP, GWAPT, CEH, or GIAC Cloud Security.
  • Experience securing embedded systems and mobile applications.

Reasoning Ability
   Problem management / resolution skills; project management skills; generally accepted security principles.
   Ability to analyze data, resources, and schedules to make decisions that affect a project on a regular basis.
TRAVEL REQUIRED: Up to 15%

General Job Requirements
  • This position will work in an office setting, expect minimal physical demands.

EnerSys provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.  

Know Your Rights

Know Your Rights (Spanish)

We use artificial intelligence to screen, assess and select applicants for open positions, including for the purposes of reviewing and ranking application materials and scoring answers to application questions. Accordingly, decisions about your application and eligibility for employment with EnerSys may be made based exclusively on the automated processing of the personal information that you submit in your application materials.


What EnerSys employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom