Web Developer Security Engineer
Overview
Lead security initiatives for web applications and APIs ensuring robust protection against threats. Own the vulnerability lifecycle from identification to remediation while driving automation for threat intelligence integration and incident response. Ensure compliance with NIST 800-53 FISMA FedRAMP standards. Collaborate with cross-functional teams to implement secure design patterns and maintain high security posture across SDLC.
What You'll Do10
- 1Security embed across SDLC for web apps and APIs
- 2Identify and remediate vulnerabilities and misconfigurations
- 3Drive end-to-end vulnerability lifecycle with threat modeling
- 4Advise on secure design patterns and protocols
- 5Analyze logs for indicators of compromise
- 6Build automation for threat intel integration and incident response
- 7Deploy and tune WAF and FIM systems
- 8Ensure compliance with NIST 800-53 FISMA FedRAMP
- 9Support audits and authorization processes
- 10Maintain secure development practices throughout SDLC
Requirements10
- 1Ability to obtain a Federal Security Clearance
- 2Hands-on secure software development and DevSecOps automation
- 3Experience with vulnerability remediation and log analysis
- 4Knowledge of FIM WAF management
- 5Proficiency in modern web technologies including .NET C# MVC WCF HTML5 CSS3 JavaScript REST APIs SQL
- 6Familiarity with AI-assisted development tools such as Copilot and OpenAI API
- 7Scripting skills in Python JS Node.js Java React TypeScript
- 8Understanding of OWASP Top 10 and secure coding practices
- 9Experience with SIEM IDS IPS NDR and EDR tools
- 10Risk assessment and DevSecOps CI/CD security gates knowledge
Salary Insight
Salary not disclosed in listing
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.

DMS Vision Inc.
VerifiedApplication Security Engineer DMS Vision Inc.
Lead ownership of application security initiatives scaling across hybrid environments. Drive security posture through innovative solutions. Shape future direction of security practices. Differentiate by delivering cutting edge protection strategies.

Innova Solutions, Inc
VerifiedWeb Application Security Engineer, WAF & Bot Mitigation
You will own layer 7 web security controls for a global enterprise, configuring WAF, rate limiting, bot mitigation, and mTLS across internet-facing applications. You will work with a security engineering team to ensure secure operations, collaborating with developers and DevOps to integrate security into the CI/CD pipeline. This contract role offers hybrid work in Charlotte, Chandler, or Las Colinas and the chance to shape security posture for high-traffic web platforms.
TOMORROW HIRE
VerifiedSenior Web Developer TS/SCI with FSP
Senior Web Developer leading agile development team using HTML5 JavaScript Bootstrap C# .NET SQL Ruby on Rails Artificial Intelligence Amazon Web Services to build government business applications. Collaborate with analysts UI/UX developers testers and customers to define requirements implement business logic and refine applications while supporting production troubleshooting.
Bright Vision Technologies
VerifiedApplication Security Engineer Bright Vision Technologies
Lead security integration across software development lifecycles for a remote full-time role at Bright Vision Technologies. Own security practices while collaborating with engineering teams to build resilient applications. Drive measurable risk reduction through proactive threat mitigation and secure coding standards.

Virtusa Corporation
VerifiedLead Cyber Security Engineer IAM Cloud Architecture
Own and scale secure identity access management solutions across cloud platforms. Lead cross functional teams to design and implement robust security frameworks. Drive adoption of modern authentication protocols and zero trust architectures.

Exl Neo Technologies
VerifiedWeb Application Firewall Engineer, Cloud Security
You will own the deployment, tuning, and support of web application firewall controls across AWS and on-premise environments, protecting Ally's critical web assets at enterprise scale. You will join a team of security engineers within the Cyber Security Technology group, collaborating to sustain and monitor technical controls. This role sits in the Information Protection & Risk Management organization, giving you direct exposure to high-impact security initiatives. You will drive continuous improvement in WAF coverage and response, shaping how Ally defends against application-layer threats.