Application Security Engineer - Mid-Atlantic region (Remote in VA, MD, PA, NC, DE, NJ, or DC)

GuidePoint Security
Virginia, Maryland, Pennsylvania, North Carolina, Delaware, New Jersey, District of Columbia
Workplace: RemoteFull timeFunction: CybersecurityExperience: 5-7 yearsEducation: bachelorsSkills: ["Communication","Problem-solving","Collaboration","Empathy","Teamwork"]

Join GuidePoint Security as an Application Security Engineer focusing on SAST, CI/CD security, and secure software development. Leverage hands-on security tooling, threat modeling, and SDLC hardening to help customers identify and remediate vulnerabilities across modern app stacks, with a remote-first, US-based team and opportunities to work with emerging AI-assisted security solutions.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GuidePoint Security
GuidePoint Security
3 months ago

Application Security Engineer - Mid-Atlantic region (Remote in VA, MD, PA, NC, DE, NJ, or DC)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 17 hours agoStatus: Live
Reposted: similar role first listed 3 months ago

Job Summary

Join GuidePoint Security as an Application Security Engineer focusing on SAST, CI/CD security, and secure software development. Leverage hands-on security tooling, threat modeling, and SDLC hardening to help customers identify and remediate vulnerabilities across modern app stacks, with a remote-first, US-based team and opportunities to work with emerging AI-assisted security solutions.
Location: Virginia, Maryland, Pennsylvania, North Carolina, Delaware, New Jersey, District of Columbia
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Implement, operate, and troubleshoot SAST and related security tooling within client environments and development pipelines.
  • •Collaborate with development teams to integrate secure coding practices and threat modeling into the SDLC.
  • •Assist in triaging and remediating vulnerabilities identified by static and dynamic testing, and support remediation efforts.
  • •Evaluate and optimize security tooling within CI/CD pipelines to improve secure software delivery.
  • •Stay current with emerging security technologies and AI-assisted tools to enhance detection and response capabilities.

Pay and Benefits

Perks:Remote WorkHealth InsuranceDentalRetirementPet BenefitHome InternetMobile AllowanceTime Off

Key Requirements

  • •Proficiency with the implementation, operationalization, and troubleshooting of Static Application Security Testing (SAST) tools such as Semgrep, Snyk, CodeQL, Checkmarx, Veracode, etc.
  • •Understanding of CI/CD pipeline tools and processes (e.g. GitHub Actions, GitLab Runners, Azure DevOps, Jenkins, CircleCI, etc.).
  • •Experience in software engineering, ideally full stack software development, including modern technologies and application architectures.
  • •Strong scripting and automation experience using one or more programming languages.
  • •Solid working knowledge of application security fundamentals including the OWASP Top 10, threat modeling, and secure coding practices throughout the SDLC.
Experience:5-7 yearsCybersecurityInformation securitySecurity engineering
Education:Bachelor's
Skills:CommunicationProblem-solvingCollaborationEmpathyTeamwork
Languages:English
Tech Stack:SemgrepSnykCodeQLCheckmarxVeracodeGitHub ActionsGitLabAzure DevOpsJenkinsCircleCIBurp SuiteOWASPSDLCPythonJavaScriptJavaScripting

Company Brief

GuidePoint Security
Provides cybersecurity consulting, managed security services, incident response, cloud and network security, and compliance solutions to enterprises and government organizations, helping clients identify, mitigate, and respond to cyber threats across complex environments.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Established Company
Headquarters: Herndon, United States
Founded: 2010
WebsiteLinkedIn