Application Security Engineer
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Systems Engineer
Important Notice
Sci Tec exclusively works on U.S. government contracts that require U.S. citizenship for all employees. Applicants that do not meet this requirement will not be considered.
Sci Tec is a dynamic small business, with the mission to deliver advanced sensor data processing technologies and scientific instrumentation capabilities in support of National Security and Defense, and we are growing our creative team! We support customers throughout the Department of Defense and U.S. Government in building innovative new tools to deliver unique world‑class data exploitation capabilities.
Responsibilities- Perform application security analysis using both automated and manual techniques, including:
- Static code analysis (SAST)
- Software composition analysis (SCA)
- Fuzzing
- Manual code and design reviews
- Identify, analyze, and help remediate application vulnerabilities
- Support software engineers in integrating security considerations into system and application designs
- Integrate and maintain application security tooling within CI/CD and Dev Sec Ops pipelines
- Design, implement, and improve continuous integration security analysis tooling
- Tune and maintain security tools to reduce false positives and improve signal quality
- Assist development teams in understanding findings and implementing effective fixes
- Support threat modeling and secure design reviews
- Stay current with emerging vulnerabilities, attack techniques, and mitigation strategies
- Document findings, recommendations, and best practices
- Perform other duties as assigned
- Bachelor's degree plus 2+ years of professional experience in cybersecurity or software development, or equivalent experience
- 2+ years of experience focused on application/software security
- Experience analyzing source code for security flaws
- Familiarity with secure software development practices
- Strong analytical, problem‑solving, and communication skills
- Detail‑oriented with strong written and verbal communication abilities
- Ability to qualify for and maintain a DoD or DoE Secret security clearance
- Ability to meet DoD 8140.01 Cyberspace Workforce Management requirements within six months of hire
- Good verbal and written communication skills
- Attention to detail
- Active DoD Secret clearance or higher
- Experience identifying, exploiting, and remediating application vulnerabilities
- Credit for published CVEs is a strong plus
- Proficiency in one or more programming languages such as C++, Python, JavaScript, Rust
- Experience configuring and operating static analysis tools (e.g., Coverity, Klocwork, Sonar Qube)
- Experience configuring and operating software composition analysis tools (e.g., Snyk, Sonatype, Anchore, JFrog Xray)
- Experience with fuzzing frameworks (AFL, AFL++, honggfuzz, or similar)
- Experience with debugging, runtime instrumentation, or reverse engineering, including tools such as:
- strace
- eBPF
- Ghidra or IDA Pro
- Familiarity with threat modeling methodologies and frameworks such as MITRE ATT&CK
- Experience working in Dev Sec Ops or Agile development environments
- Resumes, Cover Letters, and Applications which are generated by AI will not be considered for employment.
In any materials you submit, you may redact or remove age‑identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Benefits- 4% Safe Harbor 401(k) match
- 100% company paid HSA Medical insurance, with a choice of 2 buy‑up options
- 80% company paid Dental insurance
- 100% company paid Vision insurance
- 100% company paid Life insurance
- 100% company paid Long‑term Disability insurance
- 100% company paid Hospital Indemnity insurance
- Voluntary Accident and Critical Illness insurance
- Short‑term Disability insurance
- Annual Profit‑Sharing Plan
- Discretionary Performance Bonus
- Paid Parental Leave
- Generous Paid Time Off, including Holiday, Vacation, and Sick Pay
- Flexible Work Hours
The pay range for this position is $96,000 - $146,000 / year. Sci Tec considers several factors when extending an offer of employment, including but not limited to the role and associated responsibilities, a candidate's work experience, education/training, and key skills. This is not a guarantee of compensation.
Sci Tec is proud to be an Equal Opportunity employer. VET/Disabled.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).