Application Security Engineer with Security Clearance - Herndon
2 days ago

Job description
Who we are:
ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a "work hard, play hard" mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.
The Perks:
As recognized members of the Cyber Elite, we work together in partnership to defend our nation's critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 18 days of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance, reimbursement and more.
Who we're looking for:
We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security Testing (SAST & DAST) methodologies and enterprise-level security controls. Your mission is to fortify our software supply chain by integrating rigorous security testing directly into the development lifecycle to preemptively neutralize vulnerabilities. The Application Security Engineer will be responsible for the end-to-end administration of Burp Suite and Veracode, managing Integrated Development Environment (IDE) plugins and ensuring all enterprise web applications align with federal compliance and OWASP standards. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.
What you'll be doing:
- Support and operate application security testing capabilities across SAST, DAST and IDE plug-in environments, with primary focus on Burp Suite and Veracode.
- Configure, maintain and troubleshoot Burp Suite and Veracode integrations to enable consistent application security testing workflows.
- Partner with development and engineering teams to identify, validate and remediate security vulnerabilities.
- Apply vulnerability standards and scoring methodologies to findings, including OWASP Top 10, CVSS, CWE, WASC and SANS-25.
- Navigate and troubleshoot within Linux or UNIX environments, including basic website connectivity issues.
- Support the design and implementation of enterprise-wide security controls that secure applications, systems, networks or infrastructure services.
- Use IDEs and development toolchains (Eclipse, JDeveloper, Visual Studio) to support developer workflows, including pipeline development activities where applicable.
- Support compliance-aligned security activities in federal environments leveraging NIST 800-53, FIPS and/or FedRAMP standards.
What you need to know:
- Strong understanding of application security testing concepts and operational support for SAST, DAST and IDE plug-in environments.
- Hands-on capability with enterprise web application security and common vulnerability classes.
- Familiarity with vulnerability scoring, classification and prioritization frameworks (OWASP Top 10, CVSS, CWE, WASC, SANS-25).
- Working knowledge of federal compliance standards (NIST 800-53, FIPS, FedRAMP).
- Ability to work effectively in Linux or UNIX environments for navigation and basic troubleshooting.
- Ability to communicate findings clearly and work cross-functionally to support remediation.
Must have's:
- Bachelor's degree in an IT-related field.
- 6+ years of Information Technology experience.
- 3+ years of experience supporting SAST, DAST and IDE plug-in environments using Burp Suite, including 3+ years of hands-on Burp Suite experience.
- 1+ year of experience supporting SAST, DAST and IDE plug-in environments using Veracode.
- 3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, networks or infrastructure services.
- 2+ years of experience with Java, Python, .NET or C#.
- 2+ years of experience working in Linux-based environments, including navigating and troubleshooting basic website connectivity issues.
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
- Experience with Eclipse, JDeveloper and/or Visual Studio, including pipeline development experience.
- Experience securing enterprise web applications, including familiarity with OWASP Top 10, CVSS, CWE, WASC and SANS-25.
- Knowledge of federal compliance standards, including NIST 800-53, FIPS and/or FedRAMP.
- Applicants must be a U.S. citizen in compliance with federal contract requirements.
Beneficial to have:
- Industry recognized certifications.
- Experience with Interactive Application Security Testing (IAST) tools and capabilities.
- Experience with HackerOne.
- Experience with Selenium.
- Experience writing bash scripts.
- Experience with OWASP ZAP or Burp Proxy.
Where it's done:
- Remote (Herndon, VA).
Similar jobs
Job Description What You Will Be Doing: * Supporting end-to-end personnel security lifecycle management, including onboarding, clearance processing, continuous vetting (CE/CV), and offboarding. · Processing and managing security clearance actions using DISS, NISS, NBIS, and relat ...
16 hours ago
+Job summary · At Mauck Research Group, LLC, we are seeking a highly skilled and motivated Android Cyber Tool Developer with a TS/SCI security clearance to join our dynamic team. · +ResponsibilitiesConduct research to identify new vulnerabilities and attack vectors in Android ope ...
1 month ago
The Building People delivers integrated solutions that connect technology, buildings, and people to optimize real estate performance, facility operations, and workforce outcomes. With over 450 contracts delivered across 187 project locations, we manage more than 1,700 facilities ...
1 hour ago
We are seeking a skilled Identity Intelligence Analyst to provide critical analytical support to law enforcement operations,having focus on identity resolution, threat assessment and protective measures for high-risk personnel. · Competitive salary commensurate with experience. · ...
1 month ago
Boeing Defense seeks an Audio/Visual Programmer to join our team in Herndon to support high visibility projects with oversight and direct responsibility for successful support to customers. · ...
1 month ago
We're creating future-ready solutions, focusing on resiliency and urgency through our 21st Century Security vision. We're erasing boundaries and forming partnerships across industries and around the world. · ...
1 month ago
About This Role · We are seeking a highly skilled CounterIntelligence Analyst with Security Clearance to join our team at The Masy Group LLC. · Key Responsibilities: · Conduct analysis using intelligence and information from multiple sources to assess, interpret forecast and expl ...
2 days ago
We innovate and collaborate to make the world a better place. Find your future with us. · ...
1 month ago
We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security Testing (SAST & DAST) methodologies and enterprise-level security controls. · ...
1 month ago
Monitor the system's logs and applications on a daily basis. Automate this monitoring to the extent possible. · Conduct system backups on an interval agreed upon with the Sponsor. · Perform system hardening of Linux systems according to information security engineering principles ...
1 month ago
+ Design, build and maintain Infrastructure as Code using Terraform · + Migrate existing CloudFormation code to Terraform · + Develop reusable Terraform modules and maintain version-controlled infrastructure. · Two Six Technologies is committed to providing competitive and compre ...
1 month ago
We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. · Find your future with us.Boeing Defense, Space & Security (BDS) / Space, Intelligence & Weapons Systems (SI&WS) seeks an Au ...
1 month ago
Job Description Position: Personnel Security Specialist Reports To: The Customer and Project Manager Clearance Type: Active TS (with ability to obtain SCI with CI Poly) Work Location: Reston, VA (onsite every weekday) Start Date: ASAP Job Description: Advantage SCI is seeking qua ...
16 hours ago
We are looking for a DevOps Engineer to provide mission-critical system support to our customers. · This role will work closely with the development team, as well as other technology stakeholders, to maintain, develop and support enterprise products in an Agile environment. · ...
3 weeks ago
We are looking for an IT professional with a diverse set of skills and the ability to respond and adapt to unique requirements. · ...
1 month ago
We are seeking a highly skilled Windows Developer with expertise in kernel-level development and reverse engineering to join our advanced technology team. · Design and implement software components in the Windows kernel space. · Perform reverse engineering of binaries to identify ...
1 week ago
Horizon Global Partners seeks an experienced Construction Security Manager to oversee security operations for a U.S Department of State construction project. · Lead and manage all aspects of site security. · Apply and enforce OBO Security Classification Guide. · ...
1 month ago
We are seeking a talented and motivated Systems Engineer to join our team dedicated to support the design, · enhancement, · and sustainment of the SLE/FAST training program.The position requires strong adaptation skills to respond quickly · to changing system requirements, · rele ...
1 month ago
At Boeing we innovate and collaborate to make the world a better place. · We're committed to fostering an environment for every teammate that's welcoming respectful and inclusive with great opportunity for professional growth.Find your future with us. · ...
1 month ago
We are seeking a UI Front End Developer with Spring Boot and Microservices experience to join our team in Ashburn, Virginia. · Use modern software engineering tools and methodologies including Visual Studio and Atlassian Products (Jira Confluence) · Work with users in an Agile de ...
1 week ago