1

Senior Application Security Engineer Jobs in Virginia

APPLICATION SECURITY ENGINEER

Fairfax, VA ยท On-site

$60 - $80.25/hr

Application Security Engineer Location: Onsite in Fairfax, VA 3 days and in Washington, DC 2 days ... Will be responsible for senior-level leadership in information security, secure SDLC integration ...

Senior AppSec Engineer ID71672

Richmond, VA ยท On-site

$57.50 - $76.75/hr

ABOUT THE ROLE We are looking for a Senior Application Security Engineer to architect and build automated security layers within the SDLC, engineering AI-enabled secure code scanning, hardened ...

Application Security Engineer

Herndon, VA ยท Hybrid

$60.25 - $80.75/hr

Minimum of 5 years experience working "hands-on" in application security engineering * Hands-on experience with Fortify, Veracode, Tenable, Black Duck, or similar platforms * Hands-on experience with ...

Primary Responsibilities Leidos is looking for an Application Security Engineer to support: Application Security Operations and Maintenance, Application Security Configuration Management and ...

Application Security Engineer

Ashburn, VA ยท On-site

$107K - $195K/yr

Primary Responsibilities Leidos is looking for an Application Security Engineer to support: Application Security Operations and Maintenance, Application Security Configuration Management and ...

Application Security Engineer

Ashburn, VA ยท On-site

$107K - $195K/yr

Primary Responsibilities Leidos is looking for an Application Security Engineer to support: Application Security Operations and Maintenance, Application Security Configuration Management and ...

Senior Security Engineer, Application Position location: Richmond, Va., Lynchburg, Va. This position is available to Virginia residents as Richmond or Lynchburg, Virginia in-office applicants *A ...

next page

Showing results 1-20

Senior Application Security Engineer information

See Virginia salary details

$72.9K

$136K

$184.9K

How much do senior application security engineer jobs pay per year?

As of Jul 26, 2026, the average yearly pay for senior application security engineer in Virginia is $135,955.00, according to ZipRecruiter salary data. Most workers in this role earn between $113,500.00 and $155,700.00 per year, depending on experience, location, and employer.

What is a Senior Application Security Engineer job?

A Senior Application Security Engineer is responsible for ensuring the security of software applications by identifying vulnerabilities, implementing security best practices, and working with development teams to integrate secure coding principles. They conduct security assessments, perform threat modeling, and use security tools to detect and remediate risks. Additionally, they help establish security policies, oversee compliance with industry standards, and provide guidance to developers and stakeholders on security-related matters. Their goal is to protect applications from cyber threats while enabling business continuity and innovation.

What are the key skills and qualifications needed to thrive in the Senior Application Security Engineer position, and why are they important?

To thrive as a Senior Application Security Engineer, you need a solid understanding of secure software development, threat modeling, vulnerability assessment, and a degree in computer science or a related field. Familiarity with tools like static and dynamic application security testing (SAST/DAST), code review platforms, and certifications such as CISSP or OSCP are often required. Strong analytical thinking, attention to detail, effective communication, and the ability to collaborate are standout soft skills for this role. These capabilities help ensure robust protection of applications, support safe software delivery, and enable effective teamwork across engineering and security teams.

What are the typical responsibilities of a Senior Application Security Engineer on a day-to-day basis?

A Senior Application Security Engineer typically spends their days reviewing application code for security vulnerabilities, performing threat modeling, and collaborating closely with development teams to ensure secure coding practices are followed. They may also lead security assessments, coordinate penetration tests, and work on developing or enforcing security policies within the organization. Regular interaction with cross-functional teams, such as DevOps and IT, is common to address security issues throughout the software development lifecycle. This role also often involves mentoring junior engineers and staying up to date with the latest security threats and technologies.

What are the most commonly searched types of Application Security Engineer jobs in Virginia? The most popular types of Application Security Engineer jobs in Virginia are:
What are popular job titles related to Senior Application Security Engineer jobs in Virginia? For Senior Application Security Engineer jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Senior Application Security Engineer jobs in Virginia look for? The top searched job categories for Senior Application Security Engineer jobs in Virginia are:
What cities in Virginia are hiring for Senior Application Security Engineer jobs? Cities in Virginia with the most Senior Application Security Engineer job openings:
Infographic showing various Senior Application Security Engineer job openings in Virginia as of July 2026, with employment types broken down into 77% Full Time, 17% Part Time, 1% Temporary, and 5% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $135,955 per year, or $65.4 per hour.

APPLICATION SECURITY ENGINEER

Hirekeyz Inc

Fairfax, VA โ€ข On-site

$60 - $80.25/hr

Contractor

Posted 3 days ago


Job description

Role: Application Security Engineerย 

Location: Onsite in Fairfax, VA 3 days and in Washington, DC 2 days per week.

Duration: Long Term Contract

Positions Require a Secret Clearance

Job Description:

The Application Security Engineer position supports secure application development and cybersecurity operations for Federal DoD programs. The role requires a deep expertise in application security, software development, federal cybersecurity standards, and secure architecture. Will be responsible for senior-level leadership in information security, secure SDLC integration, and compliance with federal security frameworks such as NIST 800โ€‘53, NIST 800โ€‘37 RMF, FedRAMP, and agency-specific security baselines.
ย 
ย 
Primary Responsibilities:ย 
  • Serve as the primary application security SME for the project, ensuring compliance with NIST, FISMA, FedRAMP, DHS, DoD, and agency-specific security requirements.
  • Guide system teams through Risk Management Framework (RMF) steps related to application security, including control implementation, evidence gathering, and POA&M mitigation.
  • Lead security architecture reviews for mission-critical systems, ensuring secure-by-design principles across federal systems and networks.
  • Integrate security into the federal SDLC by defining secure coding standards, conducting code reviews, and providing architectural input.
  • Conduct and lead advanced security testing.
  • Provide CISSP-level expertise on risk evaluation, compensating controls, and secure architecture guidance.
  • Guide enterprise risk posture by advising leadership on vulnerabilities, mitigations, and long-term remediation planning.
  • Ensure secure configurations of cloud resources within AWS GovCloud FedRAMP environments.
  • All other duties as assigned by management.
ย 
Skills and Qualifications:
  • Bachelorโ€™s degree in computer science or related field
  • 10 years in application development and IT security
  • Experience performing risk assessments for Federal systems in AWS GovCloud
  • Experience supporting FedRAMP High/Moderate systems
  • Knowledge in Java, Python, HTML, SQL, CSS and cloud computing
  • Excellent communication and management skills.
ย 
Certifications Required:
  • Certified Secure Software Lifecycle Professional (CSSLP)
  • Certified Information Systems Security Professional (CISSP)
  • CompTIA Security +