1

Web Security Engineer Jobs (NOW HIRING)

.Net Web Developer

Phoenix, AZ

$48 - $63.25/hr

Position: .Net Web Developer Location: Phoenix, AZ Duration: 6 Months Responsibilities ... Complete the requirements and analysis o Web security Complete the design o Data base design o Data ...

... Security Engineer in Threat Disruptions team within the Advanced Operational Services (AOS ... solutions, email/web security gateways, and other security detection/mitigation devices • ...

OR

$114K - $156K/yr

As a Senior Security Engineer, (Applications Team) at BetterHelp, you'll join a diverse team of ... Experience using web application pentesting tools (e.g. Burp Suite) * Basic understanding of ...

... Engineer to join their online development team. This role focuses on the backend of frontend ... web-security best practices. • Passion for web technologies and a desire to remain up to date ...

Senior Security Engineer, Applications

$117K - $160K/yr

As a Senior Security Engineer, (Applications Team) at BetterHelp, you'll join a diverse team of ... Experience using web application pentesting tools (e.g. Burp Suite) * Basic understanding of ...

Performs web security activities and participates in security planning.: 5+ years web development experience which includes the programming/ development of web applications. Additional Job Details:

Java Security Developer

Pleasanton, CA

$56.75 - $73.50/hr

... Web Security This is primarily a developer role with security experience Develop fixes for ... prioritized security defects in the portal framework Preferred Skills: Provides application ...

next page

Showing results 1-20

Web Security Engineer information

See salary details

$11

$59

$86

How much do web security engineer jobs pay per hour?

As of Jun 24, 2026, the average hourly pay for web security engineer in the United States is $59.01, according to ZipRecruiter salary data. Most workers in this role earn between $51.20 and $66.83 per hour, depending on experience, location, and employer.

What is a Web Security Engineer?

A Web Security Engineer is an IT professional responsible for protecting websites and web applications from cyber threats such as hacking, data breaches, and malware. They design, implement, and maintain security measures, conduct regular vulnerability assessments, and respond to security incidents. Web Security Engineers often collaborate with development and IT teams to ensure best security practices are integrated throughout the software development lifecycle. Their work is critical in safeguarding sensitive information and maintaining user trust on web platforms.

What are some common challenges faced by Web Security Engineers when working with cross-functional teams?

Web Security Engineers often collaborate with developers, IT, and compliance teams to ensure secure application deployment. A frequent challenge is balancing security best practices with project deadlines, as other teams may prioritize speed over thorough security checks. Effective communication and education are key, as Web Security Engineers must clearly explain vulnerabilities and mitigation strategies to non-security specialists. Building strong relationships with cross-functional teams helps integrate security seamlessly into the development lifecycle.

What are the key skills and qualifications needed to thrive as a Web Security Engineer, and why are they important?

To thrive as a Web Security Engineer, you need expertise in web application security, network protocols, vulnerability assessment, and typically a degree in computer science or a related field. Familiarity with tools like Burp Suite, OWASP ZAP, penetration testing frameworks, and certifications such as CEH or CISSP are commonly required. Strong problem-solving abilities, attention to detail, and clear communication skills help you effectively identify and mitigate security risks while collaborating with development teams. These competencies are crucial to protect web applications from evolving threats and ensure the overall security posture of an organization.

What is the difference between Web Security Engineer vs Network Security Engineer?

AspectWeb Security EngineerNetwork Security Engineer
CertificationsCEH, CISSP, CompTIA Security+CISSP, CCNP Security, CompTIA Security+
Work EnvironmentFocus on web applications, cloud platforms, and application securityFocus on network infrastructure, firewalls, and network protocols
Industry UsageWeb development, e-commerce, tech companiesTelecommunications, enterprise networks, government agencies
Common Search/ComparisonYesYes

The Web Security Engineer specializes in protecting web applications and online platforms from cyber threats, focusing on application-level security. In contrast, the Network Security Engineer concentrates on securing network infrastructure, including firewalls and network protocols. Both roles require security certifications like CISSP and involve working within similar industries, but their focus areas differ significantly, making them distinct yet complementary cybersecurity positions.

More about Web Security Engineer jobs
What job categories do people searching Web Security Engineer jobs look for? The top searched job categories for Web Security Engineer jobs are:

Web Developer Security Engineer

BaseCamp Consulting & Solutions

Washington, DC • On-site

Full-time

Posted 20 days ago


Job description

Salary: $110,000 - $135,000

ORGANIZATIONAL BACKGROUND

Established in August 2016, Basecamp Consulting and Solutions is a dynamic Information Technology (IT) consulting firm committed to delivering results for our clients. Specializing in next-generation IT and digital transformation solutions, Basecamp Consulting and Solutions is dedicated to helping clients achieve success through trust, innovation, quality work, and a steadfast commitment to results.
At Basecamp, we believe in the power of emerging technologies to propel our clients toward their goals. Our focus lies in business and IT modernization, utilizing Cloud solutions, cybersecurity, and cutting-edge application development. We pride ourselves on a team of talented professionals who are passionate about supporting our clients on their journey towards innovative outcomes.
Basecamp Consulting and Solutions is dedicated to pushing the boundaries of IT consulting and we are equally committed to embodying these principles in every facet of our work.


POSITION OVERVIEW

Reporting to the Program Manager, the Web Developer Embeds security across the SDLC for mission-critical web apps, APIs, and sensitive data. Identifies/remediates vulnerabilities, logic flaws, insecure dependencies, and misconfigurations; drives end-to-end vulnerability lifecycle with threat modeling and validation; advises on secure design patterns and protocols; analyzes web/app logs forIoCs; builds automation for threat-intel integration and incident response; deploys/tunes WAF and FIM; ensures NIST 800-53 / FISMA / FedRAMP compliance and supports audits and authorization.
REQUIRED QUALIFICATIONS

  • Ability to obtain a Federal Security Clearance
  • Hands-on secure software dev, DevSecOps automation, vulnerability remediation
  • Log analysis, FIM, WAF management
  • 3+ Web AppSec / AppSec Engineering / SSDLC
  • Modern web tech incl. .NET (C# MVC, WCF), HTML5, CSS3, JavaScript, REST APIs, SQL;
  • AI-assisted dev tools (Copilot, OpenAI API/Codex) + scripting (Python, JS/Node.js, Java, React.js, TypeScript);
  • OWASP Top 10 & secure coding; WAF and FIM deploy/tune;
  • Security testing tools (Wireshark, SIEM, IDS/IPS, NDR, EDR); risk assessment;
  • DevSecOps CI/CD security gates; security metrics & compliance reporting;
  • Tier II security ops support.

Preferred:Federal framework authorization (NIST 800-53/FISMA/FedRAMP); threat modeling; CI/CD security gate automation; AWS & container security (Docker, Kubernetes).

Education:Bachelor's+ (CS/Cyber/IS/Engineering/related).

Credentials (current):one ormore of AppSec: CSSLP / GWEB / CASE; Offensive: OSWE / OSCP; Foundational: Security+ / GSEC.