Senior Application Security Engineer
Agile Defense · Remote · posted Sep 17, 2026
Open to candidates in United States
What this role actually asks for
Extracted by RemoteHuntMust have
- •Public Trust Clearance (US Citizenship)
- •1+ year SAST/DAST/IDE with Veracode
- •2+ years Java, Python, .NET, or C#
- •3+ years enterprise security controls
- •Experience with enterprise web apps & OWASP Top 10
- •Knowledge of NIST 800-53, FIPS, or FedRAMP
- •2+ years Linux environments
Nice to have
- •IAST tools
- •HackerOne
- •Selenium
- •Bash scripts
Tools and technologies
Worth checking before you apply
- ⚠US-W2 only
The full posting
Requisition #: 1858 Job Title: Senior Application Security Engineer Location: Remote Clearance Level: Must be able to obtain a Public Trust Clearance Job Description: Responsible for engineering and optimizing integrated systems that support enterprise-wide digital transformation initiatives.
Develops comprehensive solutions that enhance system reliability, scalability, and security. Leads the evaluation of new technologies and system architectures, providing strategic recommendations to enhance organizational capabilities. Education and
Years of Experience
Bachelor's degree in Systems Engineering, Computer Science, or related field, and 4+ years of experience, or equivalent relevant work experience; e.g., each year of work experience may be substituted for each year of education required.
Required Skills
Ability to obtain and maintain a Public Trust Clearance which requires U.S. citizenship. 1+ year of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode . 2+ years of experience with Java, Python, .NET, or C#.
3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services. Experience with Eclipse, JDeveloper, including pipeline development, or Visual Studio Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25.
Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP. 2+ years experience working in Linux based environments, including navigating and troubleshooting basic website connectivity issues Familiarity in Linux environment and some type of coding and/or scripting experience is a must.
The areas of focus for this role are Burp Enterprise experience performing DAST scanning. Experience with Burp Professional, with focus on SAST scanning. Veracode experience performing SAST scanning.
Preferred Skills
Experience with Interactive Application Security Testing (IAST) capabilities and tools. Experience with HackerOne. Experience with Selenium. Experience writing bash scripts. Experience with OWASP ZAP or Burp Proxy
Is this one actually worth your time?
RemoteHunt scores every remote job 0–100 against your own resume, so you apply to the handful that fit instead of the hundred that don't. Free plan, no card required.