Recent Searches

You haven't searched anything yet.

5 application security engineer Jobs in silver spring, md

SET JOB ALERT
Details...
Eaglebank
Silver Spring, MD | Other
$114k-143k (estimate)
1 Month Ago
ProSidian Consulting
Silver Spring, MD | Full Time
$96k-116k (estimate)
0 Months Ago
JCS Solutions LLC
Silver Spring, MD | Full Time
$117k-153k (estimate)
1 Month Ago
Children's National Medical Center
Silver Spring, MD | Full Time
$103k-123k (estimate)
10 Months Ago
Ibss
Silver Spring, MD | Full Time
$103k-123k (estimate)
2 Months Ago
Application Security Engineer
Eaglebank Silver Spring, MD
$114k-143k (estimate)
Other | Banking 1 Month Ago
Save

Eaglebank is Hiring a Remote Application Security Engineer

Overview

We are a values driven organization putting Relationships FIRST. EagleBank is focused on being Flexible, Involved, Responsive, Strong, and Trusted. By prioritizing meaningful connections with our customers, employees, and shareholders, we relentlessly deliver the most compelling, valuable service to our community. EagleBank (NASDAQ - EGBN) was founded to meet the financial needs of local business owners in Maryland, Washington DC, and Northern Virginia. With genuine connections, we provide custom financial solutions, local decision-making, and a deeply-rooted dedication to the community.

EagleBank is committed to being a workplace of inclusion, equity, respect, and acceptance. We celebrate diversity and intentionally seek out opportunities to learn from one another’s experience. We believe employees are essential to the building of relationships and we prioritize investing in employee growth and wellbeing. Throughout your EagleBank career, our commitment is to provide you with a variety of competitive benefits, recognition, training and development, and the knowledge that your contribution adds value to the company and our community. Employee involvement is fostered through resource groups, mentorship programs, community service, and scholarship opportunities for continued education. With features including wellness discounts, healthcare premium sharing, employer funding in your HSA account, and 100% 401(k) matching up to 4%, we pride ourselves in the ways we support our internal relationships.

We understand the need to be creative and flexible when it comes to telecommuting and other alternative work arrangements. This position is eligible for 100% remote and will be affiliated with the Silver Spring, MD office.

Responsibilities

As the Application Security Engineer you will be providing application security expertise throughout the Software Development LifeCycle (SDLC) as well as being responsible for managing and driving forwards the Application Security Analytics practices. A key part of your role will also involve validating and testing web applications in order to ensure applications meet the requirements of the SDLC Policy and industry best practices. The job will also entail conducting Component Analysis, which is the process of identifying potential areas of risk from the use of third-party and open-source software and hardware components. In addition undertaking threat modelling and conducting periodic penetration testing using best of breed tools, a good understanding of the OWASP Top 10 vulnerabilities and maintaining documentation.

Qualifications

Required Education/Experience:

  • Bachelor’s degree in Computer Science or 4 additional years of software development.
  • 5 year’s experience with emphasis on application development, application security or related fields.
  • 3 year’s experience in application security technologies with knowledge of application security threats. Experience with threat modeling, attack surface analysis, penetration testing, software vulnerability assessments, and understand of software security threat vectors.
  • Knowledge of Component Analysis using tools such as OWASP Dependency-Check, Bytesafe Dependency Checker, Patton, PHP Security Checker, etc.
  • Knowledge of BURP, MetaSploit, Nessus is a must.
  • Some Experience with static and dynamic application security testing.

Required Certifications (at least one from this list):

  • Certified Secure Software Lifecycle Professional (CSSLP) from ISC2
  • Certified Application Security Engineer (CASE) from EC-Council
  • GIAC Penetration Tester (GPEN) from SANS Institute
  • GIAC Web Application Penetration Tester (GWAPT) from SANS Institute
  • Certified Penetration Testing Professional (CPENT) from EC-Council
  • Secure Programming Certified Leader (S-CSPL) from SECO Institute

Preferred Education/Experience:

  • Experience as an application security engineer using a suite of tools used for the following:
  • Recon and Information Gathering (e.g. Nmap, NetCat, Spiders, OWASP Zed Attack Proxy)
  • Mapping and Discovery (e.g. Burp Suite with plug-ins)
  • Exploitation of top OWASP vulnerabilities such as SQL Injection, Cross-site Scripting (XSS), Cross-Site Request Forgery (CSRF) attacks, etc. Experience with tools such as MetaSploit, AppScan or WebInspect.
  • Threat modeling using PASTA methodology.
  • Knowledge of OWASP Best practices
  • Knowledge of OWASP Testing Guide 4.0
  • Knowledge of OWASP Code Review 2.0
  • Knowledge of Software Component Verification Standard (SCVS)

Preferred Certifications:

  • Web Application Hacking and Security (W|AHS) from EC-Council
  • Certified Ethical Hacker (CEH) from EC-Council
  • Certified Ethical Hacker Master (CEH-M) from EC-Council
  • Qualified/ Ethical Hacker Certification (Q/EH) from Security University
  • Qualified/ Security Analyst Penetration Tester (Q/PTL) from Security University
  • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN) from SANS Institute
  • CompTIA Pentest
  • Licenced Penetration Tester (L|PT) from EC-Council
  • Project Management (PMP) certification preferred

Don't meet all the requirements? We encourage you to still apply if you think you are the right person to join our community. We are always interested connecting with people inspired by our mission and values. If you aren’t hired for this position, your resume will remain available for the next year and might be considered for future openings. Note: You can update your resume as often as needed.

Job Summary

JOB TYPE

Other

INDUSTRY

Banking

SALARY

$114k-143k (estimate)

POST DATE

04/14/2024

EXPIRATION DATE

04/11/2025

WEBSITE

eaglebank.com

HEADQUARTERS

LITTLE ROCK, AR

SIZE

50 - 100

FOUNDED

1984

CEO

JEFF LYNCH

REVENUE

$50M - $200M

INDUSTRY

Banking

Related Companies
About Eaglebank

Locally owned and operated right here in Arkansas since 1919, Eagle Bank and Trust provides the personal attention, experiences and resources you need to help you reach your financial goals. As a Community Bank, Eagle Bank and Trust can quickly respond to your banking needs and our focus is always right here at home. Big enough to handle all your financial needs, but small enough to remember your name.

Show more

Eaglebank
Other
$127k-157k (estimate)
5 Days Ago
Eaglebank
Other
$140k-177k (estimate)
6 Days Ago
Eaglebank
Other
$98k-140k (estimate)
7 Days Ago

The job skills required for Application Security Engineer include Application Security, Analysis, Computer Science, Futures, Web Applications, Penetration Testing, etc. Having related job skills and expertise will give you an advantage when applying to be an Application Security Engineer. That makes you unique and can impact how much salary you can get paid. Below are job openings related to skills required by Application Security Engineer. Select any job title you are interested in and start to search job requirements.

For the skill of  Application Security
Abile Group, Inc.
Other
$121k-151k (estimate)
2 Months Ago
For the skill of  Analysis
Kforce Technology Staffing
Full Time
$105k-134k (estimate)
Just Posted
For the skill of  Computer Science
Hughes Network Systems
Full Time
$103k-126k (estimate)
7 Days Ago
Show more

The following is the career advancement route for Application Security Engineer positions, which can be used as a reference in future career path planning. As an Application Security Engineer, it can be promoted into senior positions as a Technical Solution Consultant IV that are expected to handle more key tasks, people in this role will get a higher salary paid than an ordinary Application Security Engineer. You can explore the career advancement for an Application Security Engineer below and select your interested title to get hiring information.

JCS Solutions LLC
Remote | Full Time
$117k-153k (estimate)
1 Month Ago