Big Impact Tech (BIT) is a leading technology solutions provider focused on delivering innovative and secure digital services. The Application Security Engineer will ensure the security and integrity of applications in a federal environment by implementing security controls, conducting testing, and collaborating with development teams.
Responsibilities:
- Support the secure development lifecycle by integrating security testing and controls into the application development process
- Conduct static, dynamic, and interactive security testing on enterprise web applications to identify vulnerabilities
- Collaborate with development teams to implement secure coding practices and remediation strategies
- Manage and prioritize vulnerability findings, tracking remediation efforts to ensure timely resolution
- Develop and maintain security testing procedures, tools, and documentation
- Stay updated on the latest security threats, vulnerabilities, and industry best practices
- Ensure compliance with federal security standards and assist in audit and assessment activities
- Participate in security reviews, risk assessments, and incident response planning
Requirements:
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field
- Minimum of 3-5 years of experience in application security, vulnerability management, or related roles
- Proficiency with application security testing tools such as SAST, DAST, and IAST
- Strong understanding of secure coding practices, OWASP top ten, and security frameworks
- Experience working in a federal or regulated environment with compliance standards such as FISMA, NIST, or FedRAMP
- Excellent analytical, problem-solving, and communication skills
- Knowledge of scripting languages such as Python, Bash, or PowerShell is preferred
- Security certifications such as CISSP, CISA, or CEH are a plus