Bespoketechinc logo

Application Security Engineer

bespoketechinc

On-site
Reston, VA
Full-time
Senior
8+ yrs
Salary not listedPosted 27m ago

Real job — pulled straight from bespoketechinc’s careers page · Verified August 30, 2026 · No reposts.

Job description

bespoketechinc is hiring a Application Security Engineer — a full-time, based in Reston, VA role. Apply directly on bespoketechinc's careers page below.

Application Security Engineer

Location: Reston, VA

BT-411 – Application Security Engineer
Location: Reston, VA



**Please do NOT apply if you do not have an active Poly clearance. Those without a Poly will not be considered.**

 


Bespoke Technologies is seeking a highly experienced and motivated Application Security Engineer for an exciting new contract. This role will be part of a team of Data, Cloud, and Security engineers delivering a cloud-native, centralized platform that provides end-to-end budget traceability. The Application Security Engineer will integrate security throughout the software development lifecycle, partnering with developers and cloud engineers to design, build, assess, and sustain secure mission applications.

Required Skills and Qualifications:

  • Technical expertise and hands-on experience in application security, secure software development, software engineering, or DevSecOps, with the ability to apply these skills to Oracle Cloud and customer mission challenges.
  • Experience integrating security throughout the software development lifecycle, including secure design and architecture reviews, threat modeling, secure code review, security testing, vulnerability remediation, and release authorization support.
  • Experience developing or reviewing applications using Python, JavaScript frameworks, SQL, Shell scripting, PL/SQL, and other programming languages, with a strong understanding of common application vulnerabilities and secure coding practices.
  • Experience with application security testing tools and processes, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), secrets scanning, and container or infrastructure vulnerability scanning.
  • Experience building and securing cloud-native applications and services using Kubernetes, containers, Docker, REST APIs, and CI/CD pipelines.
  • Experience implementing DevSecOps practices, including automated security controls and testing within build and deployment pipelines.
  • Experience with cloud-native security services and controls; Oracle Cloud Infrastructure (OCI) experience is desired.
  • Knowledge of security frameworks and standards such as NIST RMF, NIST Secure Software Development Framework, OWASP, DISA STIGs, and applicable federal security requirements.
  • Experience securing Oracle RDBMS environments, including database access controls, encryption, auditing, and secure handling of sensitive data.
  • Ability to assess, prioritize, document, and communicate application and cloud security risks, findings, and remediation recommendations to both technical and non-technical stakeholders.
  • Passion for technology, curiosity, and willingness to continuously learn new security tools, techniques, and approaches for solving complex technical challenges.
  • Experience working in an Agile framework.

Desired Skills and Qualifications:
  • Oracle Cloud Infrastructure (OCI) IaaS and/or PaaS certifications are preferred.
  • Security certifications such as CISSP, CSSLP, Security+, GIAC, CEH, OSCP, or comparable credentials.
  • Experience implementing identity and access management, privileged access controls, secrets management, encryption, logging, monitoring, and incident response capabilities in cloud environments.
  • Experience with AI technologies for software development and securing AI-enabled applications or development workflows.
  • Data engineering experience, including securing data validations, business rules, data transformations, and sensitive-data handling.

Required Credentials and Experience:
  • 8+ years of relevant experience in application security, software engineering, DevSecOps, cybersecurity, or a related technical discipline.
  • Bachelor’s Degree in engineering, computer science or related technical discipline. Master’s degree preferred.


 

Get Security Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Bespoketechinc logo

Platform Engineer

Herndon, VA
✓ From careers page· 25m ago
Techstrasolutions logo

Software Services Manager

Pittsburgh, PA
✓ From careers page· 1h ago
Cginfinity logo

Azure Infrastructure and Security Administrator

Houston, TX
✓ From careers page· 1h ago
Leidos logo

Senior Systems Architect

$108k–$195kGaithersburg, MD
✓ From careers page· 4h ago

Frequently asked questions

What skills are required for Application Security Engineer at bespoketechinc?

The required skills for Application Security Engineer at bespoketechinc include: DevSecOps, Oracle Cloud, Python, JavaScript, SQL, PL/SQL, Kubernetes, Docker, REST, CI/CD, Agile, CISSP, CompTIA Security+, IAM, AI, Data Engineering.

What is the seniority level for Application Security Engineer at bespoketechinc?

Application Security Engineer at bespoketechinc is a Senior level position.

How do I apply for Application Security Engineer at bespoketechinc?

You can view the full description and apply for Application Security Engineer at bespoketechinc on EchoJobs: https://echojobs.io/job/bespoketechinc-application-security-engineer-w6zga.