Booz Allen Hamilton

Application Security Engineer

Booz Allen Hamilton
Apply
11 hours ago
Remote, United StatesSenior
H1B sponsor

Base Salary

$87k - $198k/yr

Responsibilities

  • Integrate security practices throughout the software development lifecycle and improve the security posture of software.
  • Implement or assess Secure SDLC and application security programs.
  • Lead client engagements and manage multiple priorities.
  • Perform architecture reviews, threat modeling, and security assessments.
  • Address software supply chain security through SBOMs, dependency management, code signing, artifact integrity, and secure build pipelines.
  • Implement or evaluate SAST, DAST, SCA, IaC scanning, container security, API security, secrets detection, and software composition analysis capabilities.
  • Translate complex technical risks into executive briefings, business cases, and actionable roadmaps.
  • Mentor and supervise team members, lead workshops and design sessions, and contribute to practice development and thought leadership.

Requirements

  • At least 5 years of experience in cybersecurity, application security, product security, or software engineering.
  • Experience implementing or assessing Secure SDLC and application security programs, leading client engagements, and conducting architecture reviews, threat modeling, or security assessments.
  • Experience with software supply chain security concepts, including SBOMs, dependency management, code signing, artifact integrity, and secure build pipelines.
  • Experience with application security tools and capabilities including SAST, DAST, SCA, IaC scanning, container security, API security, secrets detection, and software composition analysis.
  • Experience with Agile, Scrum, and DevSecOps operating models in large-scale software development environments.
  • Knowledge of secure software development principles, cloud-native architectures, microservices, APIs, containers, Kubernetes, serverless environments, authentication, authorization, cryptography, API security, and cloud security.
  • Knowledge of vulnerability management, risk prioritization, and remediation workflows.
  • Bachelor's degree in computer science, cybersecurity, information systems, or engineering.
  • Preferred qualifications include enterprise application or product security program design, regulated-industry experience, security framework experience, technical proposal and RFP support, executive workshop leadership, mentoring, technical leadership, and practice development.
  • A master's degree in cybersecurity, computer science, software engineering, information assurance, or a related technical field is preferred.
  • Excellent written, verbal, and facilitation skills; ability to communicate with technical and executive stakeholders.
  • Ability to travel up to 50% depending on client needs.

Benefits

  • Remote work is available, with occasional requirements to work in person at a Booz Allen or customer facility.
  • Benefits include health, life, disability, financial, and retirement programs, paid leave, professional development, tuition assistance, work-life programs, and dependent care.
  • A recognition awards program acknowledges exceptional performance and demonstration of company values.
  • Full-time and part-time employees working at least 20 hours per week on a regular basis are eligible for Booz Allen benefit programs, subject to stated eligibility limitations.

Tech Stack

Categories

Booz Allen Hamilton

About Booz Allen Hamilton

10,000+ employees

Booz Allen Hamilton builds and integrates software, analytics, AI, cloud, and cybersecurity solutions while providing engineering and consulting services, primarily for U.S. defense, intelligence, and civil government clients, with select commercial partnerships. Its business is largely government contracting and professional services delivering mission systems and cyber defense. Founded in 1914 and headquartered in McLean, Virginia, Booz Allen is a public company traded on the NYSE (ticker: BAH).

Contact me