1

Web Application Security Jobs (NOW HIRING)

Responsibilities We are seeking a highly skilled and innovative Web Application Security Assessor to join our team in the greater DMV area, supporting the Army National Guard. Responsibilities * Lead ...

Responsibilities We are seeking a highly skilled and innovative Web Application Security Assessor to join our team in the greater DMV area, supporting the Army National Guard. Responsibilities * Lead ...

Responsibilities We are seeking a highly skilled and innovative Web Application Security Assessor to join our team in the greater DMV area, supporting the Army National Guard. Responsibilities * Lead ...

Security Engineer (Web Application)

Arlington, VA · On-site

$67.50 - $90.25/hr

Security Engineer (Web Application) Location: Arlington, VA Security Clearance: Secret Duties and Responsibilities The Security Engineer (Web Application) supports this Transportation Security ...

MI · On-site

Position Summary The Senior Web Application Penetration Tester performs security assessments of web applications, APIs, mobile applications, and cloud-hosted platforms. This role focuses on ...

Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses. * Support vulnerability management activities throughout the ...

Application Security Engineer

Raleigh, NC · On-site

$57 - $76.25/hr

Application Security Specialist - Invicti Fulltime Job Summary We are seeking an experienced ... Onboard web applications and APIs to the Invicti Enterprise platform for authenticated and ...

Application Security

Bethesda, MD · On-site

$63 - $84/hr

... web application security issues, such as those outlined in OWASP Top 10 Strong knowledge of application security throughout the software lifecycle Experience developing secure coding practices with ...

next page

Showing results 1-20

Web Application Security information

See salary details

$22K

$98.5K

$153K

How much do web application security jobs pay per year?

As of Jun 6, 2026, the average yearly pay for web application security in the United States is $98,514.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,000.00 and $119,500.00 per year, depending on experience, location, and employer.

What is the difference between Web Application Security vs Web Developer?

AspectWeb Application SecurityWeb Developer
Primary FocusProtecting web applications from security threats and vulnerabilitiesDesigning, coding, and maintaining websites and web applications
Required SkillsSecurity protocols, vulnerability assessment, penetration testingProgramming languages, UI/UX design, front-end/back-end development
CertificationsCertified Ethical Hacker, CSSLP, OSCPCertified Web Developer, Microsoft Certified, JavaScript certifications
Work EnvironmentSecurity teams, IT departments, cybersecurity firmsWeb development agencies, tech companies, freelance

Web Application Security and Web Developer roles overlap in the tech industry but focus on different aspects. Web Application Security specialists concentrate on safeguarding applications from threats, while Web Developers build and maintain the applications themselves. Both roles require technical skills, but their core responsibilities differ significantly, making them complementary in the web development lifecycle.

What cities are hiring for Web Application Security jobs? Cities with the most Web Application Security job openings:
What states have the most Web Application Security jobs? States with the most job openings for Web Application Security jobs include:
Infographic showing various Web Application Security job openings in the United States as of May 2026, with employment types broken down into 75% Full Time, and 25% Contract. Highlights an 50% In-person, and 50% Remote job distribution, with an average salary of $98,514 per year, or $47.4 per hour.
Web Application Security Assessor

Web Application Security Assessor

Peraton

Herndon, VA • On-site

$104K - $166K/yr

Full-time

Posted 7 days ago


Peraton rating

8.3

Company rating: 8.3 out of 10

Based on 52 frontline employees who took The Breakroom Quiz

37th of 203 rated it services


Job description

Responsibilities

We are seeking a highly skilled and innovative Web Application Security Assessor to join our team in the greater DMV area, supporting the Army National Guard.

Responsibilities

  • Lead defensive web application assessments: plan and execute comprehensive evaluations of enterprise web services from discovery through remediation validation.
  • Perform advanced manual testing to validate complex findings (SQL injection, XSS, authentication/authorization flaws, access control issues) beyond automated scans.
  • Triage scan outputs, rule out false positives, and prioritize findings by exploitability, impact, and mission risk.
  • Provide authoritative remediation guidance: explain root causes, recommend mitigations, and advise secure coding/configuration practices to development and operations teams.
  • Coordinate assessment lifecycles with system owners, developers, QA, and cybersecurity stakeholders; validate fixes and retest to confirm closure.
  • Analyze enterprise vulnerability trends to identify systemic weaknesses and recommend defensive improvements.
  • Produce detailed technical reports, evidence bundles, and executive summaries to support risk management, compliance, and continuous improvement.
  • Contribute detection/usecase inputs to detection engineering and SOC teams to improve monitoring of web threats.

#ENOCS

Qualifications

Qualifications

  • Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
  • Clearance: Active TS/SCI clearance.

  • Candidate must meet ONE of the following:

    • Master's degree or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Software Engineering, or a related field; OR
    • Relevant DoD/military training (documented advanced application security or offensive security coursework); OR
    • Relevant professional certification or equivalent experience (examples: CISSPISSEP; ISC2 CSSLP; GIAC GWAPT).
  • Required experience and skills:

    • Web application security, penetration testing, or secure development experience with at least 3 years performing advanced web assessments.
    • Expert knowledge of web vulnerabilities (OWASP Top 10), manual testing techniques, authenticated testing, and exploit validation.
    • Handson experience with web testing tools (Burp Suite, ZAP), code review for security, and methods for secure remediation and mitigation.
    • Ability to produce reproducible test evidence, technical remediation guidance, and executivelevel risk summaries.
    • Experience coordinating assessments in production/staging environments and validating fixes under change control.
  • Desired:

    • Prior DoD/ARNG web security assessment or application security program experience.
    • Experience integrating findings into detection engineering, WAF tuning, CI/CD security gates, and developer training programs.

#ENOCS

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIME

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017