LiveHybridContractApply by 1 Nov 2026
Sr Application Security Advisor
Reston, VA, United States
- Experience
- 10–26 years
- Employment
- Contract
- Work mode
- Hybrid
- Salary
- Not disclosed
- Deadline
- Apply by 1 Nov 2026
- Posted
- 2025-07-21
Required skills
| Skill | Experience | Level |
|---|---|---|
| Java (All Versions) | 7+ years | Not specified |
| Python | 7+ years | Not specified |
| AWS | 7+ years | Not specified |
| Cloud Security Framework | 7+ years | Not specified |
| CI/CD | 7+ years | Not specified |
| Dynamic Analysis Security Testing - DAST | 7+ years | Not specified |
| Static Application Security Testing - SAST | 7+ years | Not specified |
| Application Security | 5+ years | Not specified |
About the role
ob Description:
Job Title: Sr Application Security Advisor
Location: Reston, VA
Responsibilities:
- Provide guidance and act as security advisors to Application development team, Application Security Engineers and Analysts.
- Assist in the support of systems and tools supported by Secure Software development & Application Security
- Integrate with development squads to identify and remediate vulnerabilities.
- Review and interpret vulnerability scan results.
- Provide guidance on fixing common security issues such as SQL injection and cross-site scripting.
- Review static analysis results and provide secure practices guidance to development teams related to software
- security defects and assisting them with remediation
- Familiarity with SAST, DAST, IAST tools.
- Strong communication skills to convey security risks and solution to development teams.
- Triage findings from application security tools and provide actionable feedback to development teams.
- Experience in one or more of the following languages (Java/Python)
- Solid experience in AWS core services.
Requirements:
- Coding Experience: Strong background in Java and/or Python.
- Security Knowledge: Understanding of application security principles and common vulnerabilities.
- Communication Skills: Ability to effectively communicate technical concepts and remediation steps to developers.
- Cloud Basics: Familiarity with AWS, Microsoft Azure, or similar platforms (detailed hands-on experience is not required).
- Tools: Experience with various scanning tools for static and dynamic analysis (specific tools not required as the process is similar across tools).
- CI/CD Pipelines: Basic understanding of CI/CD pipelines and automated vulnerability scanning.
Preferred Qualifications
- Experience in application security, particularly in reviewing and fixing vulnerabilities.
- Knowledge of security best practices and secure coding standards.