Company
Technology
WebDeveloperSecurityEngineer
Neural analysis suggests this role is
optimal for Mid candidates.
“Web Developer Security Engineer. Skills: Web application security, DevSecOps automation, Vulnerability remediation. Identify critical vulnerabilities. Analyze critical vulnerabilities”
Industry & Context.
Root cause analysis
Federal screening
What They're Looking For.
Must Have
3+ years web application security, 3+ years application security engineering, 3+ years secure software development lifecycle, Hands-on secure software development, Hands-on DevSecOps automation, Hands-on vulnerability remediation, Proven .NET technologies experience, Proven HTML5 experience, Proven CSS3 experience, Proven JavaScript experience, Proven REST APIs experience, Proven SQL experience, Leverage AI-assisted development tools, Leverage scripting languages, Understand OWASP Top 10, Understand secure coding standards, Understand web application firewalls, Understand file integrity monitoring, Understand security testing tools, Perform risk assessments, Provide remediation guidance, Bachelor's degree, Meet federal screening requirements, Current security certifications maintained 5 years
Nice to Have
In-depth federal cybersecurity frameworks experience, In-depth authorization processes experience, Threat modeling experience, Resilient security architecture experience, Cloud security experience, Container security experience
What You'll Do.
Identify critical vulnerabilities
Analyze critical vulnerabilities
Remediate critical vulnerabilities
Remediate logic flaws
Identify insecure dependencies
Analyze insecure dependencies
Remediate insecure dependencies
Identify misconfigurations
Analyze misconfigurations
Remediate misconfigurations
Drive vulnerability lifecycle
Perform threat modeling
Conduct security assessments
Validate remediation actions
Support secure design patterns
Support data protection mechanisms
Support secure communication protocols
Review web server logs
Analyze web server logs
Review application logs
Analyze application logs
Implement automation scripts
Participate in audits
Participate in risk assessments
Participate in security authorization
Full Job Description
## What Your Day-To-Day Looks Like (Position Responsibilities) Identify, analyze, and remediate critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations in web applications and APIs. Drive the vulnerability lifecycle through threat modeling, security assessments, and technical validation of remediation actions. Support secure design patterns, data protection mechanisms, and secure communication protocols across applications and supporting services. Review and analyze web server and application logs to detect anomalies and indicators of compromise. Implement automation scripts for threat intelligence integration and application security monitoring. Participate in audits, risk assessments, and security authorization activities tied to federal frameworks. ## What You Need to Succeed (Minimum Requirements) Minimum of three years of experience in web application security, application security engineering, or secure software development lifecycle work. Hands-on experience in secure software development, DevSecOps automation, and vulnerability remediation. Proven experience with .NET technologies, HTML5, CSS3, JavaScript, representational state transfer (REST) APIs, and structured query language (SQL). Ability to leverage AI-assisted development tools and scripting languages to automate monitoring and compliance efforts. Strong understanding of the Open Worldwide Application Security Project (OWASP) Top 10, secure coding standards, web application firewalls (WAFs), file integrity monitoring, and security testing tools. Ability to perform risk assessments and provide remediation guidance for core systems and dependencies. Bachelor's degree or higher in computer science, cybersecurity, information systems, engineering, or a related field. Ability to meet federal screening and suitability requirements prior to start. Current security certifications maintained for a minimum of five years, spanning application security (such as CSSLP, GWEB, or CASE),
Applying for this Web Developer Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about this company?
Real rants from real employees. Read before you apply.