Senior Application Security Engineer

Software Guidance & Assistance
Rockville, Maryland 20849 United States  View Map
Posted: Jun 06, 2026
  • Full Time
  • Federal Government
  • Summary

    Software Guidance & Assistance, Inc., (SGA), is searching for a Senior Application Security Engineer for a CONTRACT assignment with one of our premier Regulatory clients in Rockville, MD.

    The main function of senior application security engineer is to plan, coordinate and implement application security practices in each phase of software development life cycle though testing, remediation support, tool evaluation, etc. This role involves in evaluating security vulnerabilities, security tools, implementing security solutions, and leveraging latest solutions to secure code review capabilities.

    Responsibilities :
    • Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools.
    • Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize and remediate security vulnerabilities.
    • Integrate security practices into C/CD pipeline to support DevSecOps initiative.
    • Maintain documentation of security findings, remediation plans, and compliance requirements
    • Develop and interpret security policies and procedures Participate in security compliance efforts
    • Develop and deliver training materials and perform general security awareness and specific security technology training
    • Evaluate and recommend new and emerging security products and technologies
    • Leverage GenAI technologies to scale application security reviews and automate code analysis
    • Evaluate various application security tools/capabilities i.e., SAST,DAST, IaC, Secrets detection tools
    • Stay current with emerging security threats and countermeasures.
    • Ability to train or explain the common security issues to raise the security awareness among developers and assurance engineers.
    • Perform AWS configuration reviews
    Required Skills :
    • Bachelor's degree in a technical field such as computer science, computer engineering or related field required
    • 5+ years of experience required in Cyber security and application security
    • Familiarity with SAST, DAST, IAST tools.
    • Understanding of AWS is required
    • Deep understanding of OWASP top issues and remediation guidelines.
    • Proficiency in one or more programming language ( Java, Python, JavaScript is preferred)
    • Understanding of CI/CD tools such as Jenkins and GITLAB.
    • Strong experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, and application security
    • Consistent implementation of security solutions
    • Experience in infrastructure or application-level vulnerability testing and auditing
    Preferred Skills :
    • Candidates with software development background is a plus
    • Familiarity with GenAI tools is a plus.
    • Certifications like GWAPT, OSWE, Burp Suite Certified Practitioner are good to have
    SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .

    SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
  • Job Description

    Software Guidance & Assistance, Inc., (SGA), is searching for a Senior Application Security Engineer for a CONTRACT assignment with one of our premier Regulatory clients in Rockville, MD.

    The main function of senior application security engineer is to plan, coordinate and implement application security practices in each phase of software development life cycle though testing, remediation support, tool evaluation, etc. This role involves in evaluating security vulnerabilities, security tools, implementing security solutions, and leveraging latest solutions to secure code review capabilities.

    Responsibilities :
    • Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools.
    • Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize and remediate security vulnerabilities.
    • Integrate security practices into C/CD pipeline to support DevSecOps initiative.
    • Maintain documentation of security findings, remediation plans, and compliance requirements
    • Develop and interpret security policies and procedures Participate in security compliance efforts
    • Develop and deliver training materials and perform general security awareness and specific security technology training
    • Evaluate and recommend new and emerging security products and technologies
    • Leverage GenAI technologies to scale application security reviews and automate code analysis
    • Evaluate various application security tools/capabilities i.e., SAST,DAST, IaC, Secrets detection tools
    • Stay current with emerging security threats and countermeasures.
    • Ability to train or explain the common security issues to raise the security awareness among developers and assurance engineers.
    • Perform AWS configuration reviews
    Required Skills :
    • Bachelor's degree in a technical field such as computer science, computer engineering or related field required
    • 5+ years of experience required in Cyber security and application security
    • Familiarity with SAST, DAST, IAST tools.
    • Understanding of AWS is required
    • Deep understanding of OWASP top issues and remediation guidelines.
    • Proficiency in one or more programming language ( Java, Python, JavaScript is preferred)
    • Understanding of CI/CD tools such as Jenkins and GITLAB.
    • Strong experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, and application security
    • Consistent implementation of security solutions
    • Experience in infrastructure or application-level vulnerability testing and auditing
    Preferred Skills :
    • Candidates with software development background is a plus
    • Familiarity with GenAI tools is a plus.
    • Certifications like GWAPT, OSWE, Burp Suite Certified Practitioner are good to have
    SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .

    SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
  • ABOUT THE COMPANY

    • Government Careers
    • Government Careers

    Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.

    Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.

    Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.

    Show more

MORE JOBS

  • AI Security Validation Engineer - Remote & Flexible

    • Topeka, Kansas
    • DataAnnotation
    • Jun 06, 2026
    • Full Time
    • Federal Government
  • VA cleared openings with Security Clearance

    • Chantilly, Virginia
    • The Josef Group
    • Jun 06, 2026
    • Full Time
    • Federal Government
  • AI Security Engineer (Remote) - Shape AI Defense

    • Charleston, West Virginia
    • DataAnnotation
    • Jun 06, 2026
    • Full Time
    • Federal Government
  • Customs and Border Protection Officer (CBPO) Entry Level New Hire Sign-On and Retention Incentives

    • Santa Monica, California
    • U.S. Customs and Border Protection
    • Jun 06, 2026
    • Full Time
    • Education and Training
    • Federal Government
  • Border Patrol Agent

    • Thomasville, North Carolina
    • United States Customs and Border Protection
    • Jun 06, 2026
    • Full Time
    • Federal Government
    • Public Safety
  • Border Patrol Agent

    • Hampton, Virginia
    • U.S. Customs and Border Protection
    • Jun 06, 2026
    • Full Time
    • Federal Government
    • Public Safety
Show More
Apply Now Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.
Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.