Home
/
Comprehensive
/
Senior Application Security Engineer
Senior Application Security Engineer-July 2024
Washington
Jul 29, 2026
About Senior Application Security Engineer

  Description

  SAIC is seeking a skilled and motivated Senior Application Security Engineer to strengthen our cybersecurity team and cater to the evolving needs of our federal customer. As a technical expert in mobile application and API security, you will play a crucial role in identifying vulnerabilities within these systems. Your work will contribute to enhancing the overall security posture of our organization. Among other tools, technologies, and techniques you will use in your position, you will do the following:

  Mobile Application and API Security Testing: Employ your expertise in mobile application and API security to conduct comprehensive penetration testing exercises. Utilize industry-standard tools and methodologies to identify potential cyber weaknesses in these systems.

  Risk Evaluation and Reporting : Utilize a risk-based approach to evaluate the findings from your penetration testing activities. Craft detailed and insightful reports outlining vulnerabilities, potential exploits, and recommended remediation strategies.

  Collaboration and Technical Assessment: Collaborate closely with cross-functional teams, including system administrators and Information System Security Officers (ISSOs). Offer technical assessments of mobile applications and APIs across all layers of the technology stack. While deep expertise in all domains is not mandatory, a solid understanding of how different layers interact is crucial.

  Engagement with Stakeholders: Engage with system admin teams and ISSOs to discuss your findings and ensure a clear understanding of identified vulnerabilities. Your communication skills will be essential in verifying the adequacy of remediation efforts, supporting system administrators in addressing security weaknesses effectively.

  Scenario Design and Testing Strategy: Leverage your knowledge of tactics, techniques, and procedures (TTPs) used by threat actors to design relevant testing scenarios. Your ability to simulate real-world threats will contribute to robust security testing strategies.

  Continuous Process Improvement: Actively contribute to the development of standardized operating procedures (SOPs) for mobile application and API penetration testing. Your input will be valuable in refining and enhancing the efficiency of our testing processes.

  Knowledge Expansion: Stay up to date with the latest trends and developments in mobile application and API security. Continuously build upon your expertise to adapt to emerging threats and evolving technologies.

  Qualifications

  Required Qualifications:

  Bachelor's degree in an IT-related field and 5 years of related experience; Additional experience in lieu of BS degree.

  Certifications: Possesses at least one professional certification relevant to the technical service provided. Maintain a certification relevant to the product being deployed and/or maintained. Professional certifications must be approved by the FPM or FDPM. Relevant certifications such as Certified Mobile Application Security Tester (CMAST) or similar credentials are a plus.

  Mobile Application and API Security Testing Experience: A minimum of 5 years of hands-on experience in conducting mobile application and API security testing including penetration testing is required. Your deep understanding of mobile and API vulnerabilities, exploits, and countermeasures is crucial to the success of this role.

  Hardening and Remediation: Demonstrated expertise in system hardening and remediation is necessary to effectively guide system administrators in addressing vulnerabilities and implementing security controls.

  Familiarity with industry-standard tools and methodologies for mobile application and API security testing.

  Strong analytical skills to assess risks and vulnerabilities in complex systems.

  Communication Skills: Excellent written and verbal communication skills are indispensable. You will be responsible for preparing detailed reports and effectively communicating findings and remediation guidance to both technical and non-technical stakeholders. Your communication prowess will facilitate collaboration and understanding among stakeholders from various technical backgrounds.

  Collaborative Mindset: The ability to work collaboratively within a team environment is essential. You will engage with various teams, including system administrators and ISSOs, to ensure a holistic approach to security.

  Preferred Qualifications:

  Proficient with Mobile Application and API Penetration Testing Tools: Possess 3+ years of hands-on experience using standard penetration testing suites tailored for mobile applications and APIs, such as Metasploit, nmap, burp suite, and tools within Kali Linux. Your proficiency in these tools will play a key role in identifying vulnerabilities unique to mobile and API environments.

  Effective Senior Leadership Briefing: Demonstrate a track record of effectively briefing senior leadership on technical matters related to mobile application and API security. With 2+ years of experience in this capacity, your ability to translate complex security findings into actionable insights will be invaluable.

  Flexibility for After-Hours Work: Occasionally, there is the possibility to work after-hours as necessary to accommodate testing requirements and minimize operational impact.

  Active Security Research: Showcase your commitment to staying current with emerging technology trends by actively engaging in security research. Your ability to anticipate new threats and vulnerabilities will contribute to proactive security measures.

  Familiarity with MITRE ATT&CK Framework: Demonstrate familiarity with the MITRE ATT&CK framework, showcasing your understanding of adversary tactics, techniques, and procedures. This knowledge will guide your testing scenarios and ensure comprehensive assessments.

  Collaboration with ISSOs: Highlight your capability to work closely with Information System Security Officers (ISSOs) to align findings with associated security controls. This collaboration ensures that identified vulnerabilities are effectively mitigated.

  Cloud Technology Expertise: Demonstrate a working knowledge of various enterprise technology stacks used to build applications in the cloud. Your understanding of cloud infrastructure will enable you to assess security aspects unique to cloud-based mobile applications and APIs.

  Cloud Platform Experience: Possess working knowledge and practical experience in security testing within cloud platforms, particularly AWS, Azure, and Google Clouds. Your familiarity with these environments will be crucial for assessing the security of cloud-hosted mobile applications and APIs.

  Citizenship / Clearance Requirements:

  U.S. citizenship required.

  Government Security Clearance: The ability to obtain and maintain a U.S. government security clearance is essential for this role. Your eligibility to access classified information and work on secure projects is a fundamental requirement.

  Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.REQNUMBER: 2400750

  SAIC is a premier technology integrator, solving our nation’s most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Store Associate
Bring your heart to CVS Health. Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced
Retail Cashier Part Time
Req ID: 431465 Address: 7791 NW 47th Ave Ocala, FL, 34482 Benefits: * Paid Time Off * Flexible Scheduling * 401(k) – 100% Match up to 5% * Medical/Dental/Vision Insurance after 30 days * Competitive
TSSCI Cyber Network Defense Analyst
Job Description An employer is looking for a TSSCI Cyber Countermeasures Analyst to sit at Fort Meade. This person is going to be responsible for being the subject matter expert of a specific system
Senior Member of Technical Staff
Job Description Cloud Engineering Infrastructure Development - Virtual Machine Control Plane At Oracle Cloud Infrastructure (OCI), we build the future of the cloud for Enterprises as a diverse team o
School Bus Driver
School Bus Driver Location352 Concord Rd Sudbury, Massachusetts 01776 USPhone NumberCategoriesDriversReq IDJR367 School Bus Driver (Open) First for a reasonFirst Student is the largest school transpo
Customer Service Associate
Job Description: Models and delivers a distinctive and delightful customer experience. Registers sales on assigned cash register, provides customers with courteous, fair, friendly, and efficient chec
Merchandiser Stocker
Job Overview Merchandiser for Greater Moon Township, PA The Merchandiser is responsible for providing high-quality merchandising support for Keurig Dr Pepper brands like 7UP, Snapple, Core, Bai and o
Special Education Teacher - Fortville, IN $45 Hourly
Special Education Teacher –Fortville, IN $45 Hourly Hours: 35 Location:Fortville, IN Start Date: asap $45 Hourly 23/24 school year, 6thgrade Requirements:IN SPED License The Special Education Teacher
Security Officer
Allied Universal®, North America’s leading security and facility services company, provides rewarding careers that give you a sense of purpose. While working in a dynamic, diverse and inclusive workp
Cleaner
Overview Position Summary Details The Cleaner position provides the cleaning and upkeep of an assigned area. Essential Functions Cleans and maintains buildings/facilities. Performs heavy cleaning dut
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved