2

Web Application Security Engineer In Remote Jobs

Application Security Engineer- Remote

$60.25 - $80.25/hr

Application Security Engineer - Remote or Hybrid | Cary, North Carolina We're a leader in data and ... Bachelor's degree in computer science or related quantitative field * Experience with web-based ...

$45.25 - $60.50/hr

Previous experience as a software developer or application security engineer in modern web or ... Benefits: * Fully remote-first working model with flexibility and international collaboration.

Application Security Engineer

OR · Remote

$80K - $110K/yr

... web applications, mobile applications, microservices, infrastructure code, and open source code in ... Wherever it Leads, Whatever it Takes ® - No matter how remote, complex, or unexpected. Our ...

Application Security Engineer

$60.25 - $80.25/hr

Required : • 3-5 years of proven experience in application security testing, including Dynamic ... Web Application Penetration Tester (GWAPT) • Experience testing web applications for OWASP Top ...

Broad knowledge of web, application, and cloud attack vectors and exploits * Comprehension in ... US2 (all other US offices/remote) Pay Range $135,200-$202,800 USD Join Us in Securing and ...

Application Security Engineer

Salt Lake City, UT · On-site +1

$56.75 - $76/hr

Conduct threat modeling, code reviews, and vulnerability assessments for web, cloud, and OT ... remote device deployment and secure firmware/software delivery. * In-depth knowledge of cloud ...

$63.50 - $85/hr

Lead security assessments and code reviews across web, mobile, cloud, and on-prem applications ... the table in your own unique way. #LI- Remote Location/Division Bogot, Colombia, Remote Job ...

next page

Showing results 1-20

Web Application Security Engineer In Remote information

See salary details

$29

$66

$96

How much do web application security engineer in remote jobs pay per hour?

As of Jun 8, 2026, the average hourly pay for web application security engineer in remote in the United States is $66.40, according to ZipRecruiter salary data. Most workers in this role earn between $56.49 and $75.48 per hour, depending on experience, location, and employer.

What is a Web Application Security Engineer in a remote role?

A Web Application Security Engineer in a remote role is a cybersecurity professional who specializes in identifying, mitigating, and preventing security vulnerabilities in web applications, all while working from a location outside of a traditional office. Their responsibilities typically include conducting security assessments, performing penetration testing, implementing security best practices, and collaborating with development teams to ensure applications are secure against threats. Remote engineers use a variety of tools and secure communication methods to perform their work effectively from anywhere. This role is vital in protecting sensitive data and maintaining the integrity of web-based services.

What is the difference between Web Application Security Engineer In Remote vs Web Security Analyst?

AspectWeb Application Security Engineer In RemoteWeb Security Analyst
CredentialsCertifications like CISSP, CEH, OSCP often preferredSimilar certifications, often focusing on security analysis and monitoring
Work EnvironmentRemote, collaborative with development teamsRemote or on-site, focused on monitoring and incident response
Industry UsageUsed in tech, finance, e-commerce sectorsCommon in cybersecurity firms, large enterprises
Search & Comparison IntentFocuses on secure application development and testingFocuses on security monitoring and incident handling

While both roles involve cybersecurity, the Web Application Security Engineer In Remote primarily develops and tests security measures for web applications remotely, collaborating with developers. The Web Security Analyst monitors security systems and responds to threats. They share certifications and work environments but differ in daily responsibilities and focus areas.

What are the key skills and qualifications needed to thrive as a Web Application Security Engineer working remotely, and why are they important?

To thrive as a Web Application Security Engineer in a remote role, you need a strong understanding of web application architectures, vulnerabilities (such as OWASP Top 10), and security best practices, typically supported by a degree in computer science or related certifications like CEH or OSCP. Familiarity with security testing tools like Burp Suite, Nessus, and SIEM systems is essential for identifying and mitigating threats. Excellent problem-solving, communication, and self-motivation are crucial soft skills for collaborating with distributed teams and proactively addressing security issues. These skills ensure robust protection of web applications, effective teamwork, and the ability to respond quickly to evolving security threats in a remote environment.

What are the most common challenges faced by Web Application Security Engineers working remotely, and how can they be addressed?

Web Application Security Engineers working remotely often face challenges such as effective collaboration with development teams, staying updated on rapidly evolving security threats, and ensuring secure access to sensitive systems. To address these, it's important to use robust communication tools, participate in regular virtual security briefings, and follow strict remote access protocols. Additionally, leveraging cloud-based security platforms and continuous integration tools can help streamline workflows and maintain strong security standards across distributed teams.
Web Developer Security Engineer

Web Developer Security Engineer

Ardent

Washington, DC • On-site, Remote

Other

Medical, PTO

Posted 6 days ago


Job description

At Ardent, we hire people who want more than a job - they want to serve a mission that matters. Our teams support the federal government's most critical national security and defense priorities, helping protect the nation, strengthen resilience, and advance the technologies and capabilities that keep America secure. For veterans, cleared professionals, and purpose-driven innovators, Ardent is a place to continue serving alongside a team that understands the importance of the mission and the people behind it.

We also know top talent has choices, which is why we back our mission with benefits and flexibility that stand out: competitive pay, comprehensive health coverage, flexible PTO, federal holidays off, tuition reimbursement, professional development support, wellness stipends, and a culture that values and rewards hard work, dedication, and adaptability. If you want to build something meaningful, while enjoying the kind of flexibility and support that you need to do your best work - Ardent is where your next mission begins.


Ardent is seeking a Web Developer Security Engineer to join our team.  

This position is based in Washington, DC and may require a combination of on-site and remote support depending on program needs.

Position Description:

Ardent is seeking a Web Developer Security Engineer to support the security of mission-critical web applications, APIs, and supporting cloud environments. This role will focus on integrating security throughout the software development lifecycle, identifying and remediating application vulnerabilities, supporting compliance initiatives, and implementing security controls that help ensure applications remain resilient against evolving cyber threats.

The Web Developer Security Engineer will work closely with development, cybersecurity, infrastructure, and operations teams to support secure application design, vulnerability management, threat detection, incident response, and DevSecOps initiatives.

Responsibilities and Duties:

  • Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses.
  • Support vulnerability management activities throughout the software development lifecycle, including threat modeling, security assessments, remediation validation, and risk reduction efforts.
  • Integrate security controls into web applications, APIs, and supporting services using secure-by-design principles.
  • Support implementation of secure communication protocols, data protection mechanisms, and application security controls.
  • Obtain, review, and analyze web server and application logs to identify anomalies and indicators of compromise.
  • Support incident response activities related to web application security events and investigations.
  • Develop automation scripts and processes to improve threat detection, security monitoring, and compliance reporting.
  • Maintain documentation related to findings, remediation activities, security controls, and operational procedures.
  • Support compliance with federal cybersecurity frameworks including NIST SP 800-53, FISMA, and FedRAMP requirements.
  • Participate in audits, risk assessments, security reviews, and authorization activities.
  • Collaborate with cross-functional teams to improve application security posture and support continuous security enhancements.
  • Support implementation of DevSecOps practices and security controls throughout CI/CD pipelines.

Requirements: 

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, or related field.
  • Minimum of 5 years of experience supporting Application Security, Web Application Security, Secure Software Development, DevSecOps, or related disciplines.
  • Experience supporting secure software development and vulnerability remediation activities.
  • Strong understanding of OWASP Top 10, secure coding standards, and web application security best practices.
  • Experience developing or supporting modern web applications utilizing technologies such as .NET, C#, HTML5, CSS3, JavaScript, REST APIs, and SQL.
  • Experience performing log analysis, security monitoring, and investigation of web application security events.
  • Experience deploying, configuring, and maintaining Web Application Firewalls (WAFs).
  • Experience supporting File Integrity Monitoring (FIM) solutions and security monitoring technologies.
  • Familiarity with security testing tools and technologies such as SIEM, IDS/IPS, EDR, NDR, or similar platforms.
  • Experience implementing DevSecOps principles and integrating security controls into CI/CD pipelines.
  • Ability to perform risk assessments, analyze cyber threats, and provide remediation recommendations.
  • Strong written and verbal communication skills.
  • Ability to work independently and collaboratively within multidisciplinary teams.
  • Ability to successfully complete and maintain a government background investigation.
  • Current security certification(s) such as:
    • CSSLP, GWEB, CASE, OSWE, OSCP, Security+, GSEC, or equivalent.

Preferred Qualifications: 

  • Experience supporting federal government environments.
  • Experience supporting NIST SP 800-53, FISMA, FedRAMP, and security authorization activities.
  • Experience with threat modeling, security architecture reviews, and secure application design.
  • Experience implementing advanced DevSecOps practices and automated security controls.
  • Experience with AWS cloud security and container security technologies including Docker and Kubernetes.
  • Experience leveraging AI-assisted development tools to support security monitoring, automation, and compliance activities.
  • Experience developing security metrics, audit reporting, and compliance documentation.

Due to the nature of the work we support, all candidates in consideration for this role must be willing to undergo the government issued background investigation process. We highly encourage all Veterans and those with disabilities to apply.


Ardent is an equal opportunity employer. We will not discriminate in employment, recruitment, advertisements for employment, compensation, termination, upgrading, promotions, and other conditions of employment against any employee or job applicant on the bases of race, color, gender, national origin, age, religion, creed, disability, veteran's status, sexual orientation, gender identity, gender expression, or any other basis protected by state, local, or federal law.