Verified current Job

Web Developer Security Engineer

Company Overview

Job Remote Full source details
Sprymethods Washington, DC, Washington, DC (Remote) Source published Jun 14, 2026 Verified 4 hours ago
✓ 100% verification score · Source: sprymethods (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentProposal Position
Work modeRemote / location-flexible

Overview

Company Overview

Full job description

Company Overview Spry Methods is a proven provider of mission-focused technology, cybersecurity, and program management solutions supporting critical Federal and DoD missions. We specialize in delivering integrated, high-impact solutions across cyber operations, enterprise resource management, and mission support services. Our culture emphasizes collaboration, accountability, and innovation - empowering our teams to deliver meaningful outcomes in complex, high-security environments.

Who We’re Looking For (Position Overview): The Web Developer Security Engineer protects mission-critical web applications, application programming interfaces (APIs), and sensitive data by embedding security across the software development lifecycle. This role combines application security engineering, secure software development, vulnerability remediation, monitoring, and compliance support.

Identify , analyze, and remediate critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations in web applications and APIs. Drive the vulnerability lifecycle through threat modeling, security assessments, and technical validation of remediation actions. Support secure design patterns, data protection mechanisms, and secure communication protocols across applications and supporting services. Review and analyze web server and application logs to detect anomalies and indicators of compromise. Implement automation scripts for threat intelligence integration and application security monitoring. Participate in audits, risk assessments, and security authorization activities tied to federal frameworks.

Minimum of three years of experience in web application security, application security engineering, or secure software development lifecycle work. Hands-on experience in secure software development, DevSecOps automation, and vulnerability remediation. Proven experience with .NET technologies, HTML5, CSS3, JavaScript, representational state transfer (REST) APIs, and structured query language (SQL). Ability to leverage AI-assisted development tools and scripting languages to automate monitoring and compliance efforts. Strong understanding of the Open Worldwide Application Security Project (OWASP) Top 10, secure coding standards, web application firewalls (WAFs), file integrity monitoring, and security testing tools. Ability to perform risk assessments and provide remediation guidance for core systems and dependencies. Bachelor's degree or higher in computer science, cybersecurity, information systems, engineering, or a related field. Ability to meet federal screening and suitability requirements prior to start. Current security certifications maintained for a minimum of five years: Specialized AppSec: Certified Secure Software Lifecyle Professional (CSSLP) GIAC Certified Web Application Defender (GWEB) EC-Council Certified Application Security Engineer (CASE) Offensive Security: OffSec Web Expert (OSWE) Offensive Security Certified Professional (OSCP) Foundational Security: Security+ GSEC

In-depth experience with federal cybersecurity frameworks and authorization processes. Experience with threat modeling, resilient security architecture, cloud security, and container security.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v3

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

sprymethods (lever) ↗

Browse current Job and Scholarship listings from sprymethods (lever) →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books