Web Developer Security Engineer (SMA 4)

E LogicWashington D.C., DC
Onsite

About The Position

We are looking for a highly skilled and proactive Web Developer Security Engineer to join our team supporting the Congressional Budget Office (CBO) under the SENTRY Blanket Purchase Agreement (BPA). As a Web Developer Security Engineer, you will play a pivotal role in protecting mission-critical web applications, APIs, and sensitive data. You will embed robust security principles throughout the software development lifecycle (SDLC) to build security as a proactive, foundational pillar. You will identify, analyze, and neutralize critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations, and drive the end-to-end vulnerability lifecycle.

Requirements

  • Must hold at least one certification from each of the following three categories: Specialized AppSec: CSSLP, GWEB, or CASE; Offensive Security: OSWE or OSCP; Foundational Security: Security+ or GSEC.
  • Certifications must have been maintained for a minimum of 5 years. Expired certifications or certifications never used professionally will not be considered.
  • Must be eligible to obtain and maintain a Public Trust Tier 2 clearance (background check conducted through U.S. Capitol Police).
  • Minimum of 3 years of experience in Web Application Security, Application Security Engineering (AppSec), or secure software development life cycle (SSDLC).
  • Demonstrated hands-on experience with: Modern web technologies: .NET (C# MVC, WCF), HTML5, CSS3, JavaScript, REST APIs, and SQL
  • Demonstrated hands-on experience with: AI-assisted development tools (e.g., GitHub Copilot, OpenAI API/Codex)
  • Demonstrated hands-on experience with: Scripting languages (Python, JavaScript/Node.js, Java, React.js, TypeScript)
  • Demonstrated hands-on experience with: Web Application Firewalls (WAFs) and File Integrity Monitoring (FIM) solutions
  • Demonstrated hands-on experience with: Security testing tools (Wireshark, SIEM, IDS/IPS, NDR, EDR)
  • Strong understanding of OWASP Top 10, secure coding standards, and proactive mitigation of common web vulnerabilities.
  • Must be eligible for a Public Trust Tier 2
  • U.S. Citizenship or Permanent Residence Status is required

Nice To Haves

  • Bachelor's degree (or higher) in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field.
  • In-depth experience with federal cybersecurity frameworks (NIST SP 800-53, FISMA, FedRAMP) authorization processes.
  • Proven background in threat modeling, risk assessment, and designing resilient security architecture.
  • Experience implementing secure DevOps/DevSecOps practices, specifically CI/CD pipeline and automating security gates.
  • Knowledge of cloud security (AWS) and container security (Docker, Kubernetes).

Responsibilities

  • Identify, analyze, and neutralize critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations.
  • Drive the end-to-end vulnerability lifecycle--integrating proactive threat modeling and advanced security assessments, ensuring remediation integrity through rigorous technical validation.
  • Support integration of security controls into application architectures, APIs, and supporting services; advise on secure design patterns, data protection mechanisms, and secure communication protocols.
  • Obtain, review, and analyze web server and application logs to detect anomalies and indicators of compromise; support the end-to-end response to web application security events.
  • Implement automation scripts for threat intelligence integration to optimize alert accuracy; leverage AI-assisted development tools (e.g., GitHub Copilot, OpenAI API/Codex) and scripting languages (Python, JavaScript/Node.js) to automate security monitoring and compliance audits.
  • Ensure all web applications and cloud infrastructures comply with Federal cybersecurity frameworks, including NIST SP 800-53, FISMA, and FedRAMP (as applicable); participate in audits, risk assessments, and security authorization processes.

Benefits

  • E-Logic, Inc. is an equal opportunity employer and is committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, sex, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service