Senior Application Security Engineer
Backend Developer
Senior
Application Security
Data Security
Dynamic Application Security Testing
Engineer
Engineering
Facilities Management
Information Security
Information Technology (IT)
InfoSec
Programming
Programming Language
Programming Languages
Project Management
Risk Governance
Risk Management
Security
Security Automation
Security Clearance
Security Compliance
Security Operations
Security Standards
Security Testing
Security Testing Tools
Software Security
Job Description
MBL Technologies is seeking a Senior Application Security Engineer (Veracode) to strengthen its application security team and help keep highly visible applications protected. This onsite role in Washington, DC supports a resilient security posture through collaboration with client and application stakeholders. In addition to a strong mission focus, the position comes with a comprehensive package including health coverage, time off, professional development support, and incentive opportunities.
Responsibilities
- Collaborate with the client and the application community to maintain a resilient security posture for highly visible applications.
Requirements
- 6+ years of information technology experience.
- 3+ years supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE plug-in environments using Burp Suite.
- 1+ year supporting SAST, DAST, and IDE plug-in environments using Veracode.
- 2+ years experience with Java, Python, .NET, or C#.
- 3+ years designing and implementing enterprise-wide security controls to secure applications, systems, network, or infrastructure services.
- Experience with Eclipse, JDeveloper (including pipeline development), or Visual Studio.
- Experience securing enterprise web applications and working with OWASP Top 10, CVSS, CWE, WASC, and SANS-25.
- Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP.
- 2+ years working in Linux based environments, including navigating and troubleshooting basic website connectivity issues.
- Ability to obtain a security clearance.
- IT-related Bachelor’s Degree.
- Experience with Interactive Application Security Testing (IAST) capabilities and tools.
- Experience with HackerOne.
- Experience with Selenium.
- Experience writing bash scripts.
- Experience with OWASP ZAP or Burp Proxy.
Benefits
- Robust benefits package: medical, dental, vision, STD, accident, life, hospital insurance, FSA, HSA
- 401K match and 401K
- Professional development stipend and learning and development reimbursement
- Competitive salary adjusted for candidate qualifications
- Incentive plans with corporate and individual performance bonuses
- PTO
- Remote work
- Health and wellness programs
- Employee discounts
- Community Service and Employee Engagement events
MOS Codes: 170A, 170D, 17A, 17B, 17C, 17D, 24B, 25B, 47D, 94F, IT, 17 5309, 6203, 9735, 9740, 9890, 9891