Comtech LLC
Posted 9y ago

Application Security Engineer

Comtech LLC
Washington, DC, United States
OnsiteContract
Responsibilities
  • Supporting application security
  • Performing penetration testing
  • Developing security practices
Requirements
  • Experience in software engineering with a focus on security
  • Application layer vulnerability detection, and enterprise applications
Technical tools mentioned
JAVAC++.NETOracle Identity and Access Manager

Job description

Company Description:

Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have developed our methodologies and processes based on the IT Infrastructure Library (ITIL) v.3 Framework across enterprise infrastructure operations. These methodologies and processes are reinforced through our organization’s externally accredited certifications, which include ISO 9001:2008 Quality Management System (QMS), ISO/IEC 20000-1:2011 IT Service Management Systems (SMS, corporate ITIL certification), ISO 27001:2005 Information Security Management System (ISMS), and CMMI-DEV Level 3"

Job Description:

Job Title: Application Security Engineer

Location: Washington, DC

Job Description:

  • Support PeopleSoft HCM/FSCM/ELM/CRM/EPM application security.
  • Implement specifically SSO for Oracle ELM, HCM and Finance PeopleSoft Modules, and other applications.
  • Implement and manage continuous build, integrated build, automated unit testing and deployment processes.
  • Deploy the release of software components into pre-production environments.
  • Create and maintain the continuous integration process documentation.
  • Administer and support Oracle Identity and Access Manager Tool.

Duties:

  • Develop Security Development Practices
  • Responsible for creating, maintaining and monitoring new Application Security Practice.
  • Perform application security penetration testing and code review in order to identify application vulnerabilities.
  • Develop new applications for use by the cyber security offices to maintain and improve our operations.
  • Develop new toolkits and examples for new Security Initiatives at such as SSO, Encryption Key Management, OWASP practices and library usage.
  • Design test scenarios and support testing of new and enhanced software products.
Qualifications:

Minimum Requirements:

  • Experience in software engineering with specialized experience in designing, developing/programming security related efforts.
  • Experience with application layer vulnerability detection tools and threat analysis both at coding development stage and authorization deployment testing.
  • Experience in enterprise applications.
  • Experience in JAVA, C+/C++, .NET, and secure coding best practices.
  • Masters degree in Computer Science, Engineering or a related technical discipline.
  • 8+ years of related technical experience.
Additional Information:

**Please share me your updated word copy of Resume.

**I Appreciate, if you can  refer  someone who is looking for this position.

Contact:

Nayan Hazare

IT Recruiter at Comtech LLC

Call- 703-962-6656

nhazare@ comtechllc.com

About Comtech LLC

Provides IT consulting and custom software development services.

Similar jobs

Application Security Engineer roles near Washington, DC
5d
Save
Mark Applied
Hide
Application Security Engineer
Annapolis Junction, Maryland, United States
$87k-$198k/yr RemoteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
5+ YOERequires 5+ years in cybersecurity, application or product security, or software engineering; Secure SDLC, security tools, cloud architectures, frameworks, communication, and a relevant bachelor's degree.
Secure SDLC, SBOM, SAST, DAST, SCA, IaC, Kubernetes, OWASP SAMM, BSIMM, NIST SSDF, NIST CSF, NIST AI RMF, ISO 27001, ISO/IEC 42001, IEC 62443, MITRE ATT&CK, MITRE ATLAS, Artificial Intelligence
6d
Save
Mark Applied
Hide
Application Security Engineer
Annapolis Junction or Bethesda
$87k-$198k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
5+ YOERequires 5+ years in cybersecurity, application security, product security, or software engineering; Secure SDLC, application security tools, cloud-native architectures, risk management, and client leadership experience; bachelor's degree.
Microsoft Internet Explorer, Google Chrome, Mozilla Firefox, Microsoft Edge, Apple Safari, Opera Browser, Blackberry Browser, SAST, DAST, SCA, IaC, API, Agile, Scrum, DevSecOps, Kubernetes, SBOM, OWASP SAMM, BSIMM, NIST SSDF, NIST CSF, NIST AI RMF, ISO 27001, ISO/IEC 42001, IEC 62443, MITRE ATT&CK, ATLAS
6d
Save
Mark Applied
Hide
Application Security Engineer (Full Scope Poly)
Reston, Virginia, United States
OnsiteFull Time
Concept Plus
Concept Plus: Delivers enterprise IT services for federal government agencies.
8+ YOERequires U.S. citizenship, TS/SCI clearance with polygraph, 8+ years in application security or related fields, bachelor's degree, secure SDLC and cloud-native experience, and proficiency with listed security technologies and standards.
Oracle Cloud, Python, JavaScript, SQL, Shell, PL/SQL, SAST, DAST, SCA, Kubernetes, Docker, REST APIs, CI/CD, Oracle Cloud Infrastructure (OCI), NIST RMF, NIST Secure Software Development Framework, OWASP, DISA STIGs, Oracle RDBMS, Agile
1w
Save
Mark Applied
Hide
Application Security Engineer
Tysons, Virginia, United States
$115k-$145k/yr HybridFull Time
Veilant
Veilant: Protecting operations, personnel, and data from emerging surveillance threats.
2+ YOERequires 2+ years of Java development, application security testing, source-code review, web security, CI/CD, containers, cloud platforms, and strong technical communication; must be able to obtain security clearance.
Java, Java Spring Boot, Angular, REST APIs, SQL, PostgreSQL, JWT, OAuth, Entra, Keycloak, GitLab CI, Azure DevOps, GitHub Actions, Kubernetes, Trivy, Kubesec, Azure, AWS, GitLab Secrets Manager, AWS KMS, Azure Key Vault, Ansible Vault, SAST, DAST, SCA, Falco, NeuVector, Burp Suite, CI/CD, IaC
1w
Save
Mark Applied
Hide
Application Security Engineer I
Arlington, Virginia, United States
$90k-$110k/yr OnsiteFull Time
Bloomberg Industry Group
Bloomberg Industry Group: Provides legal, tax, and government intelligence and news services.
1+ YOEAssociate's degree in information security, computer science, or a related field, or equivalent experience; 1–2 years of relevant experience; programming knowledge and application security testing exposure.
Python, Java, JavaScript, GitLab, GitHub Actions, Jenkins, AWS, Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), CI/CD
2w
Save
Mark Applied
Hide
Senior Engineer, Application Security
Tysons Corner, Virginia, United States
$120k-$160k/yr HybridFull Time
Cvent
Cvent: Cloud-based software for event and venue management.
5+ YOE5+ years in application security or secure software development; strong scripting in Python, JavaScript/TypeScript, or Bash; CI/CD and SDLC security integration; cloud (AWS preferred) and tool familiarity; end-to-end ownership experience.
Python, JavaScript, TypeScript, Bash, AWS, GCP, Azure, AWS CDK, Burp Suite, Checkmarx, Mend, Veracode, Fortify, ZAP, Wiz, CI/CD, SAST, DAST, SCA
3w
Save
Mark Applied
Hide
Application Security Engineer — Secure Mission Systems
United States or Laurel
RemoteFull Time
Rackner
Rackner: Builds cloud-native software and AI systems for government agencies.
6+ YOE6+ years in SAST/DAST and vulnerability remediation, bachelor’s in cybersecurity, experience with application-security testing, secure SDLC, and working with development teams to remediate findings.
Fortify, X-Ray, OWASP ZAP, GitLab, Artifactory, OpenShift, Kubernetes, WebAssembly (WASM)
1mo
Save
Mark Applied
Hide
(USA) Staff, Application Security Engineer
Bentonville or Herndon
$110k-$220k/yr OnsiteFull Time
Walmart
WalmartNYSE: WMT: Operates a chain of hypermarkets, discount stores, and grocery stores.
4+ YOEBachelor's degree plus 4 years in application security, or 6 years' application security experience. Preferred security certifications, master's degree, and cybersecurity project leadership experience.
Machine Learning, Artificial Intelligence, IDE, CLI, PR bots, SDLC, CI/CD, WCAG 2.2 AA