Avatar for Spry Methods
Spry Methods
Actively Hiring
Provides IT, cyber, and management solutions to government and commercial clients

Application Security Engineer

Posted: 2 weeks ago• Recruiter recently active
Job Location
Remote Work Policy

In office - WFH flexibility

Visa Sponsorship

Not Available

RelocationAllowed
Skills
Javascript
SQL
REST APIs
Security+
CSS3
Scripting Languages
HTML5
OWASP Top 10
.Net Technologies
File Integrity Monitoring
CSSLP
OSCP
Offensive Security Certified Professional
Case
GSEC
Security Testing Tools
Secure Coding Standards
WAFs
OSWE
GWEB
Certified Secure Software Lifecyle Professional
GIAC Certified Web Application Defender
EC-Council Certified Application Security Engineer
OffSec Web Expert

About the job

Company Overview

Spry Methods is a proven provider of mission-focused technology, cybersecurity, and program management solutions supporting critical Federal and DoD missions. We specialize in delivering integrated, high-impact solutions across cyber operations, enterprise resource management, and mission support services. Our culture emphasizes collaboration, accountability, and innovation - empowering our teams to deliver meaningful outcomes in complex, high-security environments.

Who We’re Looking For (Position Overview):

The Application Security Security Engineer protects mission-critical web applications, application programming interfaces (APIs), and sensitive data by embedding security across the software development lifecycle. This role combines application security engineering, secure software development, vulnerability remediation, monitoring, and compliance support.

What Your Day-To-Day Looks Like (Position Responsibilities):

  • Identify, analyze, and remediate critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations in web applications and APIs.
  • Drive the vulnerability lifecycle through threat modeling, security assessments, and technical validation of remediation actions.
  • Support secure design patterns, data protection mechanisms, and secure communication protocols across applications and supporting services.
  • Review and analyze web server and application logs to detect anomalies and indicators of compromise.
  • Implement automation scripts for threat intelligence integration and application security monitoring.
  • Participate in audits, risk assessments, and security authorization activities tied to federal frameworks.

What You Need to Succeed (Minimum Requirements):

  • Minimum of three years of experience in web application security, application security engineering, or secure software development lifecycle work.
  • Hands-on experience in secure software development, DevSecOps automation, and vulnerability remediation.
  • Proven experience with .NET technologies, HTML5, CSS3, JavaScript, representational state transfer (REST) APIs, and structured query language (SQL).
  • Ability to leverage AI-assisted development tools and scripting languages to automate monitoring and compliance efforts.
  • Strong understanding of the Open Worldwide Application Security Project (OWASP) Top 10, secure coding standards, web application firewalls (WAFs), file integrity monitoring, and security testing tools.
  • Ability to perform risk assessments and provide remediation guidance for core systems and dependencies.
  • Bachelor's degree or higher in computer science, cybersecurity, information systems, engineering, or a related field.
  • Ability to meet federal screening and suitability requirements prior to start.

  • Current security certifications maintained for a minimum of five years:

  • Specialized AppSec:

  • Certified Secure Software Lifecyle Professional (CSSLP)

  • GIAC Certified Web Application Defender (GWEB)

  • EC-Council Certified Application Security Engineer (CASE)

  • Offensive Security:

  • OffSec Web Expert (OSWE)

  • Offensive Security Certified Professional (OSCP)

  • Foundational Security:

  • Security+

  • GSEC

Ideally, You Also Have (Preferred Qualifications):

  • In-depth experience with federal cybersecurity frameworks and authorization processes.
  • Experience with threat modeling, resilient security architecture, cloud security, and container security.

Perks of Working for Us (Benefits):

Medical Coverage - Cigna - 4 Options

  • Traditional - PPO Open Access Plus Network
  • (2) HDHP - PPO Open Access Plus Network
  • HDHP - EPO Open Access Plus Network

Dental Coverage - Cigna - PPO Base & Buy-Up Plans

Vision Coverage - Principal - VSP Choice Network

Paid Holidays: Full-time employees receive 11 paid federal holidays

Paid Time Off (PTO) - PTO accrual starts at 15 days per year

Training Benefit - Annual training allowance available toward any job-related training or education

401(k) - Multiple Fund Choices through Fidelity with a company match

For our full list of benefits, please visit http://www.sprymethods.com/careers/benefits/

EEO Statement

At Spry, we believe talented and dedicated employees are our most valued assets and the foundation of our success. We are committed to crafting a diverse and inclusive workplace that endorses engagement, creativity, quality and innovation.

We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Final compensation will be based on experience, qualifications, certifications, clearance level, and contract requirements. This position is contingent upon contract award.

About the company

Spry Methods company logo

Spry Methods

Actively Hiring
Provides IT, cyber, and management solutions to government and commercial clients51-200 Employees
Company Size
51-200
Learn more about Spry Methods image

Similar Jobs

Scale AI company logo
Scale AI
Accelerate the development of AI applications
Archesys company logo
Archesys
Improving the government services that impact everyday lives
Deepgram company logo
Deepgram
AI speech API for transcription with human-level understanding
Intelligence Security Laboratories company logo
Intelligence Security Laboratories
Building secure infrastructure for transformative AI, with a fail-safe cyber physical approach
Intelligence Security Laboratories company logo
Intelligence Security Laboratories
Building secure infrastructure for transformative AI, with a fail-safe cyber physical approach