Demo

Web Application Security Engineer

Steampunk
Washington, DC Other
POSTED ON 1/5/2026
AVAILABLE BEFORE 11/10/2027

Overview

As a Web Application Security Engineer, you will provide technical expertise and solutions to remediate persistent and challenging portfolio-wide vulnerabilities. We’re looking for someone who has passion for IT, resourceful problem-solving abilities, and a desire to learn our indicators of success in this role. The ideal candidate will have a breadth of experience over a variety of application and web based technologies. The candidate will not necessarily have deep experience in all domain areas but should have a good understanding of how the various layers of an enterprise application stack interact with one another. You will work directly with system admin teams to assist and remediate vulnerabilities and harden environments, while providing recommendations on ways to enhance vulnerability management. Additionally, you will work in a team environment to develop proactive solutions to improve overall enterprise security posture through process streamlining and automation.

Contributions

Responsibilities include:

 

  • Provide subject matter expertise for various risk assessments, working in an Agile environment with an understanding of the full software development lifecycle.
  • Advocate for and ensure appropriate security practices are communicated and implemented within application development portfolios.
  • Ability and proven experience in securing multiple areas of an enterprise application stack, including the OS, Database, Application Server, Load Balancer, and Web Server layers.  Understanding how PKI/TLS certificates work is a must.
  • Integrate with both the application development and security assurance divisions to ensure vulnerability findings are understood, remediated or baselined as appropriate.
  • Document & Socialize security findings and remediation solutions in an enterprise knowledge base. 
  • Support the Information Assurance Branch and the SOC with scan analysis and partner with development teams to understand and remediate security findings.

Qualifications

Required:

 

  • Ability to obtain a U.S. government Security Clearance
  • Master's Degree and 3 years of relevant experience; OR
    • Bachelor's Degree and 5 years of relevant experience; OR
    • No degree and 9 years of relevant experience
  • Possesses at least one professional certification relevant to the technical service provided. Maintain a certification relevant to the product being deployed and/or maintained.

 

Preferred:

 

  • Former Developer or Systems Administrator experience 
  • Working knowledge of technologies used for building and deploying enterprise applications, such as, Maven, Grade, GIT, Jenkins, Ansible, Java, C#/.NET, Apache Tomcat, Apache HTTP Server, IIS, F5, Oracle,  MSSQLSEVER, PostGres
  • Working knowledge and experience in AWS and Azure GovClouds
  • Ability to analyze DISA STIG audit compliance scan results and provide recommendations for resolution
  • Analyze security environment, provide recommendations
  • Working knowledge of JIRA, Service Now or equivalent
  • Working knowledge of operating system and dynamic application security testing scan tools – Invicti, Web Inspect, DAST/IAST suites
  • Experience using Python to automate tasks

 

Certifications:

 

  • CEH, GFACT, GPEN, OSCP or other relevant industry certifications
  • Other Application based Technology specific certifiations

About steampunk

Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $100,000 to $155,000.  The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here. 

 

Identity Statement

As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

 

Steampunk is a Change Agent in the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors.  Through our Human-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges.  As an employee owned company, we focus on investing in our employees to enable them to do the greatest work of their careers – and rewarding them for outstanding contributions to our growth. If you want to learn more about our story, visit http://www.steampunk.com.

 

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Steampunk participates in the E-Verify program. 

Salary : $100,000 - $155,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Web Application Security Engineer?

Sign up to receive alerts about other jobs on the Web Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$117,871 - $153,580
Income Estimation: 
$109,939 - $144,341
Income Estimation: 
$114,500 - $144,633
Income Estimation: 
$123,508 - $158,121
Income Estimation: 
$132,730 - $173,376
Income Estimation: 
$82,809 - $110,162
Income Estimation: 
$102,136 - $132,353
Income Estimation: 
$63,573 - $82,434
Income Estimation: 
$82,809 - $110,162
Income Estimation: 
$102,136 - $132,353
Income Estimation: 
$123,508 - $158,121
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Steampunk

  • Steampunk Mc Lean, VA
  • Are you a leader? Energetic? Ever worked as part of a program that is Agile? Are you interested in being an agent of change on a team committed to achievin... more
  • 13 Days Ago

  • Steampunk Mc Lean, VA
  • We are seeking a Principal Data Solution Architect / Lead Data Architect to serve as the senior-most technical authority for end-to-end data architectures,... more
  • 13 Days Ago

  • Steampunk Mc Lean, VA
  • Steampunk wants you to join our awesome team as Data Visualization Specialist . In this role, you'll be working with a large team of Steampunk and clients ... more
  • 14 Days Ago

  • Steampunk Mc Lean, VA
  • We are looking for seasoned Data Scientist (Generative) to work with our existing team of Data Scientists and Engineers to use Generative AI technology in ... more
  • 14 Days Ago


Not the job you're looking for? Here are some other Web Application Security Engineer jobs in the Washington, DC area that may be a better fit.

  • gTANGIBLE Corporation Arlington, VA
  • gTANGIBLE Corporation (gTC), www. gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in: Nationa... more
  • 26 Days Ago

  • Amazon Web Services (AWS) Herndon, VA
  • Description Would you like to join one of the fastest-growing organizations within Amazon Web Services (AWS) and help customers of all industries and sizes... more
  • 20 Days Ago

AI Assistant is available now!

Feel free to start your new journey!