Talent.com
Web Application Security Tester
Web Application Security TesterFoxhole Technology • Smyrna, Georgia, United States
[error_messages.no_longer_accepting]
Web Application Security Tester

Web Application Security Tester

Foxhole Technology • Smyrna, Georgia, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Web Application Security Tester

Job Locations

US-GA-Smryna

Job ID

2025-2014

Category

CyberSecurity

Type

Regular Full-Time

Clearance Required

Secret

Overview

Title : Web Application Security Tester

Location : Herndon, VA- Remote in States Foxhole is registered to do business

Clearance : Active DoD Secret

Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer evolving and complex needs. Our talented employee-owners provide agile, scalable services and solutions that solve operational gaps, operate critical systems, and protect and secure the enterprise - across the organization and around the world.

Support the Web Application Security Program (WASP) mission to ensure that security is integrated systematically and comprehensively throughout the Software Development Life Cycle (SDLC).

Job Description

Perform security reviews of web application architectures, APIs, and supporting infrastructure.

  • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) using industry-standard tools.
  • Conduct application spidering, fuzzing, and business logic abuse testing to identify vulnerabilities.
  • Execute Web Application Penetration Testing against modern frameworks (e.g., React, Angular, Node.js, Django, Flask, .NET Core).
  • Test APIs using REST and GraphQL fuzzing, schema validation, and security automation.
  • Identify and validate vulnerabilities such as :
  • OWASP Top 10
  • Business Logic flaws
  • API Security vulnerabilities (OWASP API Top 10)
  • Authentication and authorization weaknesses
  • Deserialization and injection flaws
  • Conduct manual exploit validation beyond automated tool output to reduce false positives.
  • Develop and maintain test automation scripts using frameworks like Burp Suite Extender API, ZAP scripting, and custom Python tools.
  • Integrate security testing into CI / CD pipelines using GitLab CI, GitHub Actions, Jenkins, or Azure DevOps.
  • Utilize SCA (Software Composition Analysis) tools to identify vulnerable dependencies (e.g., Snyk, Dependency-Check, Black Duck).
  • Implement the Common Weakness Scoring System (CWSS) and assist in Common Vulnerability Scoring System (CVSS) ratings for prioritization.
  • Generate technical reports and provide remediation guidance to developers, system owners, and ISSOs.
  • Provide monthly and annual program metrics including trends in vulnerability classes, remediation timelines, and residual risk.

Minimum Requirements

  • Active DoD Secret security clearance
  • 5 + years of progressive incident response experience
  • DoD IAT II required certification / s ( one of the following ) : CCNA-Security, CySA+ (CSA+), GICSP, GSEC, Security+ CE, CND, SSCP, GWAPT, OSWE, eWPT
  • CSSP-AUrequired certification / s ( one of the following ) : GSNA, CISA
  • Required Tools & Hands-On Skills

    Web Security Testing & Automation : Burp Suite Pro, OWASP ZAP, Postman, Fiddler, mitmproxy.

  • SAST / DAST : Checkmarx, Fortify, Veracode, SonarQube, Acunetix, AppScan.
  • SCA (Software Composition Analysis) : Snyk, OWASP Dependency-Check, Black Duck, Mend.
  • Fuzzing & Exploit Development : AFL, Peach Fuzzer, boofuzz.
  • API Security Testing : Postman, Insomnia, ReadyAPI, Burp Suite extensions for GraphQL / REST.
  • CI / CD Security Integration : GitLab CI, Jenkins, GitHub Actions, Azure DevOps with security plugins.
  • Containers & Cloud Security (preferred) : Docker, Kubernetes, AWS Inspector, Prisma Cloud.
  • Desired Experience / Certifications

  • Strong knowledge of the OWASP Top 10 and OWASP ASVS.
  • Familiarity with CWE, NIST 800-53 / 171, and DISA STIGs.
  • Hands-on experience with scripting languages (Python, Bash, PowerShell, JavaScript).
  • Familiarity with DevSecOps practices and secure coding guidelines.
  • Ability to communicate complex findings clearly to both technical and non-technical stakeholders.
  • More Information

    Requirements of position : Think analytically, effective verbal and written communication skills, make decisions, observe / remember details, interpret data, concentrate on tasks, adjust to change, handle stress / emotions. Regular attendance, maintain work schedule, attend meetings, meet deadlines, keyboard / type, handle confidential information, use math / calculations, stay organized, operate office equipment, may direct others. May be exposed to dust / dirt, humidity, and noise.

    Foxhole Technology is an Equal Opportunity Employer and makes hiring decisions without regard to race, color, religion, sex (including pregnancy, childbirth and sexual orientation), national origin, age, disability, genetic information, military / veteran status, or any other protected class.

    Need help finding the right job?

    We can recommend jobs specifically for you!

    Click here to get started.

    [job_alerts.create_a_job]

    Application Security • Smyrna, Georgia, United States

    [internal_linking.similar_jobs]
    Project Coordinator, Enterprise Safe & Secure

    Project Coordinator, Enterprise Safe & Secure

    Carvana • Fairburn, GA, US
    [job_card.full_time]
    If you like disrupting the norm and are looking to join a company revolutionizing an industry then you will LOVE what Carvana has done for the car buying experience. Buying a car the old fashioned w...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Everie Egg Donor

    Everie Egg Donor

    Everie • Fairmount, GA, United States
    [job_card.full_time] +1
    Generous compensation : $9,000-$15,000 for first-time donors, with potential.Comprehensive medical care from top fertility specialists. Support and guidance from the Everie team.As an Everie Egg Dono...[show_more]
    [last_updated.last_updated_1_hour] • [promoted] • [new]
    Business Account Executive - Access Control & Security

    Business Account Executive - Access Control & Security

    In-Telecom • Kennesaw, GA, US
    [job_card.full_time]
    The Access Control and Security Business Account Executive is responsible for driving sales of physical security systems, including surveillance cameras and access control solutions.This role invol...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Assistant Fire Alarm Inspector

    Assistant Fire Alarm Inspector

    Basesix • Marietta, GA, US
    [job_card.full_time]
    Basesix is currently looking for an.Assistant Fire Alarm Inspector.Assisting with inspections to ensure that building fire alarm systems comply with all local, state, and federal laws.Driving and o...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Financial Security Consultant - 100% Commission | Marietta, GA (TSG-20251201-029)

    Financial Security Consultant - 100% Commission | Marietta, GA (TSG-20251201-029)

    Strickland Group LLC • Marietta, GA, US
    [job_card.full_time]
    About The Strickland Group : The Strickland Group is a family-driven, vision-first financial services agency helping families protect and build wealth through life insurance and retirement solutions...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Azure Cloud Security Architect

    Azure Cloud Security Architect

    TalentBurst, Inc. • Marietta, GA, US
    [job_card.permanent]
    Title : Azure Cloud Security Architect.Location : Marietta, GA || Berkeley Heights, NJ || Atlanta, GA || Omaha, NE || Denver, CO. The Azure Cloud Security Architect is responsible for leading the Defi...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Environmental Field-Testing Technician

    Environmental Field-Testing Technician

    Alliance Technical Group • Acworth, GA, United States
    [job_card.full_time]
    Are you ready to begin your journey towards a rewarding career in the environmental field? Does protecting the environment and gaining hands-on experience as an Environmental Field-Testing Technic...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Special Inspector

    Special Inspector

    Thompson Engineering • Marietta, GA, US
    [job_card.full_time]
    Thompson Engineering is a leader in delivering high-quality infrastructure and construction projects across the South.With a strong commitment to safety, quality, and client satisfaction, we are cu...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Test Center Administrator

    Test Center Administrator

    PSI Services LLC • Marietta, GA, US
    [job_card.part_time]
    Exam Proctor / Test Center Administrator.Part-Time | $15 / hr | Schedule : Mon through Thurs : 4-9pm & 1st and 3rd Sat : 8am-4pm. Address : 2100 Roswell Road NE, Suite 2128, Marietta, GA 30062.Join PS...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Protection & Control (P&C) Field Testing Engineer

    Protection & Control (P&C) Field Testing Engineer

    Maetz Consulting, LLC • Marietta, GA, US
    [job_card.full_time]
    Job Title : Protection & Control (P&C) Field Testing Engineer.Location : 100% Remote (Travel up to 80%).Base Salary : $120,000 – $160,000. Industry : Energy – Utilities.The ideal can...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Fire Alarm CAD Designer

    Fire Alarm CAD Designer

    Fire Systems, Inc. • Smyrna, GA, US
    [job_card.full_time]
    This is an exciting opportunity for a detail-oriented designer to contribute to meaningful projects that protect lives and property across the Atlanta metro area. As part of a family-owned company w...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Sage Intacct Implementation Specialist (Kennesaw, GA)

    Sage Intacct Implementation Specialist (Kennesaw, GA)

    Nichols, Cauley & Associates • Kennesaw, GA, US
    [job_card.full_time]
    Nichols Cauley is a leading public accounting firm recognized among the Top 120 Firms by Inside Public Accounting.We are honored to be named one of Accounting Today’s Best Firms to Work For a...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Web Application Security Tester

    Web Application Security Tester

    Foxhole Technology • Smyrna, GA, United States
    [job_card.full_time]
    Web Application Security Tester.Title : Web Application Security Tester.Location : Herndon, VA- Remote in States Foxhole is registered to do business. Foxhole Technology provides robust cybersecurity ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Remote Text Quality Evaluator

    Remote Text Quality Evaluator

    Outlier • Austell, GA, United States
    [filters.remote]
    [job_card.full_time]
    Earn up to $16 USD / hourly and work fully remotely and flexibly.Outlier, a platform owned and operated by Scale AI, is looking for. If you're passionate about improving models and excited by the futu...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Inspector Code Enforcement

    Inspector Code Enforcement

    City of Marietta, GA • Marietta, GA, US
    [job_card.full_time]
    This is a position within the Development Services department that reports to the Code Enforcement Manager.The employee is responsible for performing inspections necessary to enforce the city codes...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Fiber Splicer

    Fiber Splicer

    LSCG • Cartersville, GA, US
    [job_card.full_time]
    At LSCG, we take a people-first approach to construction.We know communications infrastructure construction isn’t just about fiber and towers. It’s about collaboration and honesty.At LSC...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Fire Alarm Inspector

    Fire Alarm Inspector

    Basesix • Marietta, GA, US
    [job_card.full_time]
    Basesix is currently looking for a.Completing inspections to ensure that building fire alarm systems comply with all local, state, and federal laws. Assisting with deployment planning.Driving and op...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Quality Control Tester - Manufacturing

    Quality Control Tester - Manufacturing

    First American Resources Company LLC • Mableton, GA, US
    [job_card.full_time]
    Immediate Opening : Quality Control Tester - Manufacturing – 1st Shift.AM – 3 : 00 PM (1st Shift).Are you ready to join a dynamic manufacturing team that values precision, quality, and inn...[show_more]
    [last_updated.last_updated_30] • [promoted]