1

Web Application Security Manager Jobs (NOW HIRING)

Application Security Engineer

Washington, DC · On-site

$66.50 - $89/hr

... manage and enforce application security. 9. Conducts active penetration tests; discover ... NET, Java EE, and SQL • 1+ years of experience in web or mobile application security preferred ...

Application Security Engineer

Washington, DC · On-site

$66.50 - $89/hr

... manage and enforce application security. 9. Conducts active penetration tests; discover ... NET, Java EE, and SQL 1+ years of experience in web or mobile application security preferred HTTP ...

Application Security Engineer

Torrance, CA · On-site

$61.25 - $82/hr

Strong knowledge of secure development practices Deep knowledge of common web application vulnerabilities (e.g. XSS, CSRF, clickjacking) and their mitigation strategies Knowledge of system security ...

They are seeking a Web Application Developer to work in the Revenue Fare Management Systems team ... security considerations • Experience with source/version control systems (GIT) • Excellent ...

Responsibilities • Conduct research and development for automating web application attacks. • ... management to set priorities and goals for Veracode's DAST offerings. • Keep up to date with the ...

Product Security Manager

$120K - $140K/yr

Technical experience in OWASP web application and web services security vulnerabilities including ... Experience with vulnerability management * Experience with scripting languages such as PowerShell ...

Responsibilities · Conduct research and development for automating web application attacks. · ... management to set priorities and goals for Veracode's DAST offerings. · Keep up to date with the ...

Showing results 41-60

Web Application Security Manager information

See salary details

$39K

$80.9K

$144K

How much do web application security manager jobs pay per year?

As of Sep 9, 2026, the average yearly pay for web application security manager in the United States is $80,851.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,000.00 and $94,500.00 per year, depending on experience, location, and employer.

What is the difference between Web Application Security Manager vs Web Security Analyst?

AspectWeb Application Security ManagerWeb Security Analyst
CertificationsCertified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH)CISSP, CompTIA Security+, CEH
Work EnvironmentLeads security teams, manages security strategies, oversees security protocols for web appsMonitors security alerts, analyzes vulnerabilities, implements security measures
Employer & IndustryTech companies, financial institutions, large enterprisesIT departments, cybersecurity firms, corporate security teams

While both roles focus on web security, the Web Application Security Manager oversees security strategies and team management, whereas the Web Security Analyst primarily monitors and analyzes security threats. The manager role involves higher-level planning and leadership, often requiring advanced certifications and experience.

What is a web application security manager?

A web application security manager oversees the security of web applications by implementing security measures, conducting vulnerability assessments, and managing security teams. They often use tools like firewalls, intrusion detection systems, and perform risk analysis to protect against cyber threats. Certifications such as CISSP or CEH are common in this role.

What are popular job titles related to Web Application Security Manager jobs?

For Web Application Security Manager jobs, the most frequently searched job titles are:

Infographic showing various Web Application Security Manager job openings in the United States as of September 2026, with employment types broken down into 87% Full Time, 12% Part Time, and 1% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution, with an average salary of $80,851 per year, or $38.9 per hour.

Application Security Engineer

Washington, DC • On-site

Eliassen Group
IT Services • 5 - 10K employees

$66.50 - $89/hr

Full-time

Re-posted 28 days ago


Job description

Company Description
Demonstrate your expertise and challenge your skills in this exciting IT Security Engineering opportunity! We are seeking an experienced IT Security Engineer for a lead role within our Security Team in our Washington DC IT Department. In this role, you will provide IT security support for applications and software systems in all platforms as well as providing security support to all systems in production, staging and development environments. This Security Engineer role will work closely with Washington DC IT departments and ensures the security and protection of organizational information assets including data, applications, systems, databases, networks, and other resources. We offer a competitive salary and comprehensive benefits, making this a great opportunity for an experienced IT Security Engineer, like you, to take their IT career to the next level!
Job Description
1. Security Engineer works on defining security frameworks for existing and new systems.
2. Represents the IT security team for enterprise projects during development phases like architecture/design review, providing IT security consulting and recommendations, to ensure the implementation of a secure application design.
3. Responsible for supporting the implementation and enforcement of secure application design principles
4. Responsible for explaining and demonstrating vulnerabilities to application/system owners, and provide recommendations for mitigation.
5. Responsible for defining and designing security code analysis tools and framework, Performing code and design reviews of all internal and external software products. Work with application developers ensure adoption of security principals and best practices.
6. Provides direction and support in security management and security architecture standards and documentations.
7. Provides fault resolution and escalation advice.
8. Responsible for defining processes to manage and enforce application security.
9. Conducts active penetration tests; discover vulnerabilities in information systems.
10. Participate in IT security compliance and audit efforts (eg PCI DSS )
Qualifications
• College degree (relevant field) or equivalent experience; 3-5 years of work experience.
• 2+ years of experience in web application development in .NET, Java EE, and SQL
• 1+ years of experience in web or mobile application security preferred
• HTTP protocol knowledge required
• Knowledge of authentication mechanisms like SAML, OAuth etc. along with web service security protocols for SOAP such as WS-Security are nice to have
• Knowledge of information security principles, web applications and a level of familiarity with malicious code and common techniques used by hackers
• Experience with application security code review practices / static analysis and methods, such as OWASP Top Ten
• Detailed knowledge and understanding of the Payment Card Industry (PCI) data security standards (PCI DSS) as well as experience in the implementation of controls to mitigate PCI issues
• Experience with Application Security Firewalls, F5' ASM / Citrix's Teros etc are desirable
• Experience in creating, maintaining, and executing Incident Response Plans
• Strong interpersonal and communications skills along with strong customer service skills
• Strong programming background with: JavaScript, JSP, PHP, ASP.Net strongly preferred
• Knowledge of Security Flaws and its Resolution as listed in sites like OWASP, SANS etc.
• Knowledge and understanding of network and web related protocols (e.g., TCP/IP, UDP, IPSEC, DNS, LTM, GTM) preferred
• Experience in technical security countermeasures, risk management, contingency planning, and data communications networking preferred
Additional Information
All your information will be kept confidential according to EEO guidelines.
http://www.eliassen.com/consulting-services-consultant/agile-consulting-services

Eliassen Group logo

About Eliassen Group

Sourced by ZipRecruiter

Eliassen Group provides strategic consulting and talent solutions to drive our clients' innovation and business results. Our purpose is to positively impact the lives of our employees, clients, consultants, and the communities in which we operate. Leveraging over 30 years of success, our expertise in talent solutions, life sciences consulting, Agile consulting, cloud services, risk management, business optimization, and managed services enables us to partner with our clients to execute their business strategy and scale effectively. Headquartered in Reading, MA, and with offices from coast to coast, Eliassen Group offers local community presence and deep networks, as well as national reach.

Industry

It services

Company size

5,001 - 10,000 Employees

Headquarters location

Reading, MA, US

Year founded

1989