Application Security Engineer
Role summary
Booz Allen Hamilton is seeking a 100% remote Application Security Engineer for a 12+ month contract role with the SEC. The position requires 6+ years of IT experience, including 3+ years in SAST, DAST, and IDE plug-in environments using tools like Veracode and Burp Suite. Candidates must have 2+ years of experience with Java, Python, .NET, or C#, and 3+ years in designing and implementing enterprise security controls. Familiarity with secure coding standards (OWASP Top 10, CVSS), federal compliance (NIST 800-53, FIPS, FedRAMP), and Linux/UNIX environments is essential. The role also involves obtaining an SEC Public Trust clearance.
Hello Folks,
Hope you are doing good!
Please find the below requirement and let me know if you have any suitable profiles with you?
Job Title: Application Security Engineer
Client: Booz Allen Hamilton
Govt Agency: SEC
Position: Application Security Engineer
Location: 100% Remote
Contract Duration: 12+ months
Interview Process: 2x video
Onboarding Process: Must obtain SEC Public Trust clearance (3-4 weeks)
Burp and Veracode are currently the areas of focus.
6+ years of Information Technology experience
3+ years of experience with supporting Static
Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments
using Veracode and Burp Suite
2+ years of experience with
Java, Python, .NET, or C#
3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services
Experience with
Eclipse, JDeveloper, including pipeline development, or Visual Studio
Experience with securing enterprise web applications and
OWASP Top 10, CVSS, CWE, WASC, and SANS-25
Knowledge of federal compliance standards, including
NIST 800-53, FIPS, or FedRAMP
Knowledge of
Linux or UNIX
environments, including navigating and troubleshooting basic website connectivity issues
HS diploma or GED
Additional Qualifications
Experience with Interactive Application Security Testing (IAST) capabilities and tools
Experience with HackerOne
Experience with Selenium
Experience writing bash scripts
Experience with OWASP ZAP or Burp Proxy
Thanks
Jagdish | Manager – IT Staffing
T (443)-489-4433 | Jagdish@polarits.com
6095 Marshalee Dr, Suite 250, Elkridge, MD 21075
Similar roles
Sr. Application Security EngineervCluster · United States · Remote
Application Security EngineerRyder System · Massachusetts, United States · Onsite- Application Security EngineerGreenbrier Government Solutions, Inc · Virginia, United States · Hybrid
- Application Security EngineerMeridianLink · United States · Onsite
- Application Security EngineerRemoteHunter · United States · Remote