Senior Application Security Engineer
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Overview
Remote
On-site
Compensation
$87-$90/hour
Job Description
Software Guidance & Assistance, Inc., (SGA), is searching for a Senior Application Security Engineer for a CONTRACT assignment with one of our premier Regulatory clients in Rockville, MD. The main function of senior application security engineer is to plan, coordinate and implement application security practices in each phase of software development life cycle though testing, remediation support, tool evaluation, etc. This role involves in evaluating security vulnerabilities, security tools, implementing security solutions, and leveraging latest solutions to secure code review capabilities. Responsibilities :
- Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools.
- Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize and remediate security vulnerabilities.
- Integrate security practices into C/CD pipeline to support DevSecOps initiative.
- Maintain documentation of security findings, remediation plans, and compliance requirements
- Develop and interpret security policies and procedures Participate in security compliance efforts
- Develop and deliver training materials and perform general security awareness and specific security technology training
- Evaluate and recommend new and emerging security products and technologies
- Leverage GenAI technologies to scale application security reviews and automate code analysis
- Evaluate various application security tools/capabilities i.e., SAST,DAST, IaC, Secrets detection tools
- Stay current with emerging security threats and countermeasures.
- Ability to train or explain the common security issues to raise the security awareness among developers and assurance engineers.
- Perform AWS configuration reviews
- Bachelor's degree in a technical field such as computer science, computer engineering or related field required
- 5+ years of experience required in Cyber security and application security
- Familiarity with SAST, DAST, IAST tools.
- Understanding of AWS is required
- Deep understanding of OWASP top issues and remediation guidelines.
- Proficiency in one or more programming language ( Java, Python, JavaScript is preferred)
- Understanding of CI/CD tools such as Jenkins and GITLAB.
- Strong experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, and application security
- Consistent implementation of security solutions
- Experience in infrastructure or application-level vulnerability testing and auditing
- Candidates with software development background is a plus
- Familiarity with GenAI tools is a plus.
- Certifications like GWAPT, OSWE, Burp Suite Certified Practitioner are good to have
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.

FAQs About Senior Application Security Engineer Jobs at SGA Inc.
What is the work location for this position at SGA Inc.?
This job at SGA Inc. is located in Rockville, MD, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at SGA Inc.?
Candidates can expect a pay range of $87–$90 per hour for this role.
What employment applies to this position at SGA Inc.?
The employer has not provided this information. This may be discussed during the hiring process.
What is the process to apply for this position at SGA Inc.?
You can apply for this role at SGA Inc. either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.