Home
/
Comprehensive
/
Senior Application Security Engineer
Senior Application Security Engineer-August 2024
Washington
Aug 28, 2025
About Senior Application Security Engineer

  Description

  SAIC is seeking a skilled and motivated Senior Application Security Engineer to strengthen our cybersecurity team and cater to the evolving needs of our federal customer. As a technical expert in mobile application and API security, you will play a crucial role in identifying vulnerabilities within these systems. Your work will contribute to enhancing the overall security posture of our organization. Among other tools, technologies, and techniques you will use in your position, you will do the following:

  Mobile Application and API Security Testing: Employ your expertise in mobile application and API security to conduct comprehensive penetration testing exercises. Utilize industry-standard tools and methodologies to identify potential cyber weaknesses in these systems.

  Risk Evaluation and Reporting : Utilize a risk-based approach to evaluate the findings from your penetration testing activities. Craft detailed and insightful reports outlining vulnerabilities, potential exploits, and recommended remediation strategies.

  Collaboration and Technical Assessment: Collaborate closely with cross-functional teams, including system administrators and Information System Security Officers (ISSOs). Offer technical assessments of mobile applications and APIs across all layers of the technology stack. While deep expertise in all domains is not mandatory, a solid understanding of how different layers interact is crucial.

  Engagement with Stakeholders: Engage with system admin teams and ISSOs to discuss your findings and ensure a clear understanding of identified vulnerabilities. Your communication skills will be essential in verifying the adequacy of remediation efforts, supporting system administrators in addressing security weaknesses effectively.

  Scenario Design and Testing Strategy: Leverage your knowledge of tactics, techniques, and procedures (TTPs) used by threat actors to design relevant testing scenarios. Your ability to simulate real-world threats will contribute to robust security testing strategies.

  Continuous Process Improvement: Actively contribute to the development of standardized operating procedures (SOPs) for mobile application and API penetration testing. Your input will be valuable in refining and enhancing the efficiency of our testing processes.

  Knowledge Expansion: Stay up to date with the latest trends and developments in mobile application and API security. Continuously build upon your expertise to adapt to emerging threats and evolving technologies.

  Qualifications

  Required Qualifications:

  Bachelor's degree in an IT-related field and 5 years of related experience; Additional experience in lieu of BS degree.

  Certifications: Possesses at least one professional certification relevant to the technical service provided. Maintain a certification relevant to the product being deployed and/or maintained. Professional certifications must be approved by the FPM or FDPM. Relevant certifications such as Certified Mobile Application Security Tester (CMAST) or similar credentials are a plus.

  Mobile Application and API Security Testing Experience: A minimum of 5 years of hands-on experience in conducting mobile application and API security testing including penetration testing is required. Your deep understanding of mobile and API vulnerabilities, exploits, and countermeasures is crucial to the success of this role.

  Hardening and Remediation: Demonstrated expertise in system hardening and remediation is necessary to effectively guide system administrators in addressing vulnerabilities and implementing security controls.

  Familiarity with industry-standard tools and methodologies for mobile application and API security testing.

  Strong analytical skills to assess risks and vulnerabilities in complex systems.

  Communication Skills: Excellent written and verbal communication skills are indispensable. You will be responsible for preparing detailed reports and effectively communicating findings and remediation guidance to both technical and non-technical stakeholders. Your communication prowess will facilitate collaboration and understanding among stakeholders from various technical backgrounds.

  Collaborative Mindset: The ability to work collaboratively within a team environment is essential. You will engage with various teams, including system administrators and ISSOs, to ensure a holistic approach to security.

  Preferred Qualifications:

  Proficient with Mobile Application and API Penetration Testing Tools: Possess 3+ years of hands-on experience using standard penetration testing suites tailored for mobile applications and APIs, such as Metasploit, nmap, burp suite, and tools within Kali Linux. Your proficiency in these tools will play a key role in identifying vulnerabilities unique to mobile and API environments.

  Effective Senior Leadership Briefing: Demonstrate a track record of effectively briefing senior leadership on technical matters related to mobile application and API security. With 2+ years of experience in this capacity, your ability to translate complex security findings into actionable insights will be invaluable.

  Flexibility for After-Hours Work: Occasionally, there is the possibility to work after-hours as necessary to accommodate testing requirements and minimize operational impact.

  Active Security Research: Showcase your commitment to staying current with emerging technology trends by actively engaging in security research. Your ability to anticipate new threats and vulnerabilities will contribute to proactive security measures.

  Familiarity with MITRE ATT&CK Framework: Demonstrate familiarity with the MITRE ATT&CK framework, showcasing your understanding of adversary tactics, techniques, and procedures. This knowledge will guide your testing scenarios and ensure comprehensive assessments.

  Collaboration with ISSOs: Highlight your capability to work closely with Information System Security Officers (ISSOs) to align findings with associated security controls. This collaboration ensures that identified vulnerabilities are effectively mitigated.

  Cloud Technology Expertise: Demonstrate a working knowledge of various enterprise technology stacks used to build applications in the cloud. Your understanding of cloud infrastructure will enable you to assess security aspects unique to cloud-based mobile applications and APIs.

  Cloud Platform Experience: Possess working knowledge and practical experience in security testing within cloud platforms, particularly AWS, Azure, and Google Clouds. Your familiarity with these environments will be crucial for assessing the security of cloud-hosted mobile applications and APIs.

  Citizenship / Clearance Requirements:

  U.S. citizenship required.

  Government Security Clearance: The ability to obtain and maintain a U.S. government security clearance is essential for this role. Your eligibility to access classified information and work on secure projects is a fundamental requirement.

  Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.REQNUMBER: 2400750

  SAIC is a premier technology integrator, solving our nation’s most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Information System Security Specialist with Secret Clearance
COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering
Army National Guard Careers
THE NATION\'S FIRST --The Massachusetts National Guard dates backto 1636 , when Citizen-Soldiers formed militias to defend theirhomeland. Four nearly four centuries, the Guard has stayed true to itsr
Senior Manager, Content Design
Every great story has a new beginning, and yours starts here. Welcome to Warner Bros. Discovery… the stuff dreams are made of. Who We Are… When we say, “the stuff dreams are made of,” we’re not just
2024 Operations- Production or Warehouse - Intern
POSITION SUMMARY: The Operations Intern is “hosted” by the Operations Department at one of our manufacturing/distribution facilities. This is a 12-week summer internship. Please note that we do not p
HF CNA - HRMC, Resource Team, Full Time
*POSITION SUMMARY *To provide superior quality, competitive value and outstanding service by assisting licensed personnel in providing direct nursing care under the direction and supervision of a Reg
Registered Nurse RN Week Nights Orthopedics
Employment Type: Full time Shift: 12 Hour Night Shift Description: Orthopedics Week Nights No Weekends! Registered Nurse – Orthopedics RN works in a collaborative environment at St Mary’s Health Care
Area Supervisor
Our values start with our people, join a team that values you! We are the nation’s largest off-price retailer with over 2,000 stores, and a strong track record of success and growth. Our focus has al
Front Office Supervisor (m/f/d) - MH
Job Number 24006887 Job Category Rooms & Guest Services Operations Location Berlin Marriott Hotel, Inge-Beisheim-Platz 1, Berlin, Berlin, Germany Schedule Full-Time Located Remotely? N Relocation
(USA) Associate Optometrist - Walmart
Position Summary... It's time to see optometry through a new lens. Walmart is revolutionizing healthcare and this your chance to be part of it. A Walmart Associate Optometrist is the clinical partner
STUDENT: Student Cleaners (Spring 2024)
Location: Delhi, NY Category: Student Jobs Posted On: Wed Jan 10 2024 Job Description: SUNY Delhi seeks student cleaners to work in the Custodial Services Department. Cleaners perform a variety of ro
Copyright 2023-2025 - www.zdrecruit.com All Rights Reserved