1

Web Application Security Researcher Jobs in Washington

Security Engineer (Web Application)

Arlington, VA · On-site

$67.50 - $90.25/hr

Security Engineer (Web Application) Location: Arlington, VA Security Clearance: Secret Duties and Responsibilities The Security Engineer (Web Application) supports this Transportation Security ...

Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses. * Support vulnerability management activities throughout the ...

Application Security

Bethesda, MD

$63 - $84/hr

... web application security issues, such as those outlined in OWASP Top 10 Strong knowledge of application security throughout the software lifecycle Experience developing secure coding practices with ...

Joint Base Andrews, MD (On-site) Duration: Long Term Contract Active Secret Security Clearance issued by the U.S. Department of Defense. Position Summary: The Web Application Developer will support ...

Application Security Engineer

Washington, DC · On-site

$66.50 - $89/hr

NET, Java EE, and SQL • 1+ years of experience in web or mobile application security preferred • HTTP protocol knowledge required • Knowledge of authentication mechanisms like SAML, OAuth etc ...

Demonstrated experience with and strong understanding of web application security best practices and usability principles. * Demonstrated experience with Git version control and collaborative ...

NET, Java EE, and SQL 1+ years of experience in web or mobile application security preferred HTTP protocol knowledge required Knowledge of authentication mechanisms like SAML, OAuth etc. along with ...

Web Application Developer

Mclean, VA · On-site

$80 - $100/hr

Demonstrated experience with and strong understanding of web application security best practices and usability principles. * Demonstrated experience with Git version control and collaborative ...

next page

Showing results 1-20

Web Application Security Researcher information

What cities in Washington are hiring for Web Application Security Researcher jobs?

Cities in Washington with the most Web Application Security Researcher job openings:

Infographic showing various Web Application Security Researcher job openings in Washington as of August 2026, with employment types broken down into 75% Full Time, 21% Part Time, and 4% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution.

Web Application Security Engineer (AppSec / DevSecOps)

Washington, DC • On-site

Essnova Solutions, Inc.
Software Development • 1 - 10 employees

$66.50 - $89/hr

Full-time

Re-posted 18 days ago


Key responsibilities

  • Integrate security practices throughout the software development lifecycle (SDLC).

  • Perform web application vulnerability assessments, penetration testing support, and threat modeling activities.

  • Configure and maintain Web Application Firewalls (WAF) and application security controls.


Job description

Location: Washington, DC Metropolitan Area (Hybrid)

Employment Type: Full-Time

Clearance: Public Trust (Tier 2) or ability to obtain*

About Essnova Solutions

Essnova Solutions is a growing technology consulting firm delivering innovative IT, cloud, cybersecurity, engineering, and digital transformation solutions to Federal Government clients. We are committed to technical excellence, collaboration, and providing our employees with opportunities to solve complex mission challenges.

Position Summary

Essnova Solutions is seeking an experienced Web Application Security Engineer to support a federal customer by integrating security throughout the software development lifecycle (SDLC) and protecting enterprise web applications and APIs from evolving cyber threats. The ideal candidate has experience with application security, secure software development, vulnerability management, DevSecOps, and federal cybersecurity frameworks.

Key Responsibilities
  • Embed security throughout the Software Development Lifecycle (SDLC).
  • Perform web application vulnerability assessments, penetration support, and threat modeling activities.
  • Identify, prioritize, and remediate application security vulnerabilities.
  • Implement secure coding standards aligned with OWASP Top 10 and industry best practices.
  • Configure and maintain Web Application Firewalls (WAF) and application security controls.
  • Integrate application security tools into CI/CD pipelines and DevSecOps workflows.
  • Monitor application logs and investigate security events affecting web applications and APIs.
  • Collaborate with software developers, DevOps engineers, and cybersecurity teams to improve application security posture.
  • Support compliance with NIST, FISMA, FedRAMP, and other federal cybersecurity standards.
  • Develop security documentation, technical recommendations, and remediation guidance.
Required Qualifications
  • Experience in Application Security (AppSec), Web Application Security, or Product Security.
  • Strong knowledge of secure software development practices and Secure SDLC.
  • Experience performing vulnerability assessments, threat modeling, and application security testing.
  • Knowledge of OWASP Top 10, common web application vulnerabilities, and remediation techniques.
  • Experience implementing or supporting Web Application Firewalls (WAF).
  • Experience integrating security into CI/CD pipelines and DevSecOps environments.
  • Familiarity with federal cybersecurity frameworks including NIST and FedRAMP.
  • Excellent analytical, troubleshooting, and communication skills.
Preferred Qualifications
  • Experience with SAST, DAST, Software Composition Analysis (SCA), or similar application security tools.
  • Experience with secure code reviews and developer security training.
  • Experience supporting cloud-native applications within AWS and/or Microsoft Azure.
  • Experience supporting federal government or highly regulated environments.
  • Relevant security certifications such as:
    • CSSLP
    • OSCP
    • OSWE
    • GWEB
    • CASE
    • Security+
    • GSEC
Clearance
  • Public Trust (Tier 2) clearance or the ability to obtain and maintain one.*
Why Join Essnova?

At Essnova Solutions, you'll join a collaborative team supporting high-impact federal technology initiatives. We invest in our employees by providing opportunities to work with modern cloud technologies, cybersecurity best practices, and mission-critical systems that make a real difference.