Talent.com
Web Application Security Tester
Web Application Security TesterFoxhole Technology • Smyrna, Georgia, United States
Web Application Security Tester

Web Application Security Tester

Foxhole Technology • Smyrna, Georgia, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Web Application Security Tester

Job Locations

US-GA-Smryna

Job ID

2025-2014

Category

CyberSecurity

Type

Regular Full-Time

Clearance Required

Secret

Overview

Title : Web Application Security Tester

Location : Herndon, VA- Remote in States Foxhole is registered to do business

Clearance : Active DoD Secret

Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer evolving and complex needs. Our talented employee-owners provide agile, scalable services and solutions that solve operational gaps, operate critical systems, and protect and secure the enterprise - across the organization and around the world.

Support the Web Application Security Program (WASP) mission to ensure that security is integrated systematically and comprehensively throughout the Software Development Life Cycle (SDLC).

Job Description

Perform security reviews of web application architectures, APIs, and supporting infrastructure.

  • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) using industry-standard tools.
  • Conduct application spidering, fuzzing, and business logic abuse testing to identify vulnerabilities.
  • Execute Web Application Penetration Testing against modern frameworks (e.g., React, Angular, Node.js, Django, Flask, .NET Core).
  • Test APIs using REST and GraphQL fuzzing, schema validation, and security automation.
  • Identify and validate vulnerabilities such as :
  • OWASP Top 10
  • Business Logic flaws
  • API Security vulnerabilities (OWASP API Top 10)
  • Authentication and authorization weaknesses
  • Deserialization and injection flaws
  • Conduct manual exploit validation beyond automated tool output to reduce false positives.
  • Develop and maintain test automation scripts using frameworks like Burp Suite Extender API, ZAP scripting, and custom Python tools.
  • Integrate security testing into CI / CD pipelines using GitLab CI, GitHub Actions, Jenkins, or Azure DevOps.
  • Utilize SCA (Software Composition Analysis) tools to identify vulnerable dependencies (e.g., Snyk, Dependency-Check, Black Duck).
  • Implement the Common Weakness Scoring System (CWSS) and assist in Common Vulnerability Scoring System (CVSS) ratings for prioritization.
  • Generate technical reports and provide remediation guidance to developers, system owners, and ISSOs.
  • Provide monthly and annual program metrics including trends in vulnerability classes, remediation timelines, and residual risk.

Minimum Requirements

  • Active DoD Secret security clearance
  • 5 + years of progressive incident response experience
  • DoD IAT II required certification / s ( one of the following ) : CCNA-Security, CySA+ (CSA+), GICSP, GSEC, Security+ CE, CND, SSCP, GWAPT, OSWE, eWPT
  • CSSP-AUrequired certification / s ( one of the following ) : GSNA, CISA
  • Required Tools & Hands-On Skills

    Web Security Testing & Automation : Burp Suite Pro, OWASP ZAP, Postman, Fiddler, mitmproxy.

  • SAST / DAST : Checkmarx, Fortify, Veracode, SonarQube, Acunetix, AppScan.
  • SCA (Software Composition Analysis) : Snyk, OWASP Dependency-Check, Black Duck, Mend.
  • Fuzzing & Exploit Development : AFL, Peach Fuzzer, boofuzz.
  • API Security Testing : Postman, Insomnia, ReadyAPI, Burp Suite extensions for GraphQL / REST.
  • CI / CD Security Integration : GitLab CI, Jenkins, GitHub Actions, Azure DevOps with security plugins.
  • Containers & Cloud Security (preferred) : Docker, Kubernetes, AWS Inspector, Prisma Cloud.
  • Desired Experience / Certifications

  • Strong knowledge of the OWASP Top 10 and OWASP ASVS.
  • Familiarity with CWE, NIST 800-53 / 171, and DISA STIGs.
  • Hands-on experience with scripting languages (Python, Bash, PowerShell, JavaScript).
  • Familiarity with DevSecOps practices and secure coding guidelines.
  • Ability to communicate complex findings clearly to both technical and non-technical stakeholders.
  • More Information

    Requirements of position : Think analytically, effective verbal and written communication skills, make decisions, observe / remember details, interpret data, concentrate on tasks, adjust to change, handle stress / emotions. Regular attendance, maintain work schedule, attend meetings, meet deadlines, keyboard / type, handle confidential information, use math / calculations, stay organized, operate office equipment, may direct others. May be exposed to dust / dirt, humidity, and noise.

    Foxhole Technology is an Equal Opportunity Employer and makes hiring decisions without regard to race, color, religion, sex (including pregnancy, childbirth and sexual orientation), national origin, age, disability, genetic information, military / veteran status, or any other protected class.

    Need help finding the right job?

    We can recommend jobs specifically for you!

    Click here to get started.

    serp_jobs.job_alerts.create_a_job

    Application Security • Smyrna, Georgia, United States

    Job_description.internal_linking.related_jobs
    Fabrication Machine Operator - 1st Shift - $20.00 / hour

    Fabrication Machine Operator - 1st Shift - $20.00 / hour

    Allied Tube and Conduit Corporation • White, GA, US
    serp_jobs.job_card.full_time
    Fabrication Machine Operator - 1st Shift - $20.We are currently searching for a Fabrication Machine Operator to be based out of Cartersville, GA. Reporting to the Fabrication Supervisor, this person...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    "As Needed" Part-Time Test Proctor - Cartersville Site

    "As Needed" Part-Time Test Proctor - Cartersville Site

    InsideHigherEd • Rome, Georgia, United States
    serp_jobs.job_card.part_time
    As Needed" Part-Time Test Proctor - Cartersville Site.Georgia Highlands College is a multi-campus, state college member of the University System of Georgia. Founded in 1970 as Floyd Junior College, ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    "As Needed" Part-Time Test Proctor - Floyd Campus

    "As Needed" Part-Time Test Proctor - Floyd Campus

    InsideHigherEd • Rome, Georgia, United States
    serp_jobs.job_card.part_time
    As Needed" Part-Time Test Proctor - Floyd Campus.Georgia Highlands College is a multi-campus, state college member of the University System of Georgia. Founded in 1970 as Floyd Junior College, it no...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security GRC Analyst (Kennesaw, Georgia, United States, 30144)

    Information Security GRC Analyst (Kennesaw, Georgia, United States, 30144)

    Mohawk Industries • Kennesaw, GA, US
    serp_jobs.job_card.full_time
    Information Security GRC Analyst (Kennesaw, Georgia, United States, 30144).Information Security GRC Analyst (Kennesaw, Georgia, United States, 30144). At Mohawk Industries, we're committed to more –...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Testing Proctor - Part-Time

    Testing Proctor - Part-Time

    InsideHigherEd • Kennesaw, Georgia, United States
    serp_jobs.job_card.part_time
    Are you ready to transform lives through academic excellence, innovative research, strong community partnerships and economic opportunity? Kennesaw State University is one of the 50 largest public ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Analyst 1

    Security Analyst 1

    Cherokee Co. Schools • Canton, GA, US
    serp_jobs.job_card.full_time
    Technology and Information Services.Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field is required. Candidates should possess a strong understanding of ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    ImagineX Consulting • Atlanta, GA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    ImagineX is a tech company that deploys AI-assisted teams to build and secure mission-critical enterprise solutions with our clients – spanning software, cybersecurity, data, and AI.Structure...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Fabrication Machine Operator - 2nd Shift - $20.00 / hour plus $1.00 shift differential

    Fabrication Machine Operator - 2nd Shift - $20.00 / hour plus $1.00 shift differential

    Allied Tube and Conduit Corporation • White, GA, US
    serp_jobs.job_card.full_time
    Fabrication Machine Operator - 2nd Shift - $20.We are currently searching for a Fabrication Machine Operator to be based out of Cartersville, GA. Reporting to the Fabrication Supervisor, this person...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Analyst

    Security Analyst

    Ernst & Young Oman • Alpharetta, GA, US
    serp_jobs.job_card.full_time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    CISSP - Certified Information Systems Security Professional Tutor

    CISSP - Certified Information Systems Security Professional Tutor

    Varsity Tutors, a Nerdy Company • Woodstock, GA, US
    serp_jobs.job_card.full_time
    CISSP - Certified Information Systems Security Professional Tutor.CISSP - Certified Information Systems Security Professional Tutor. Varsity Tutors, a Nerdy Company.The Varsity Tutors Live Learning ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Fabrication Machine Operator Lead - 2nd Shift - $23.00 / hour plus $1.00 shift differential

    Fabrication Machine Operator Lead - 2nd Shift - $23.00 / hour plus $1.00 shift differential

    Allied Tube and Conduit Corporation • White, GA, US
    serp_jobs.job_card.full_time
    Fabrication Machine Operator Lead - 2nd Shift - $23.We are currently searching for a Fabrication Machine Operator Lead - 2nd Shift to be based out of Cartersville, GA. Reporting to the Fabrication S...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber security analyst

    Cyber security analyst

    OVA.Work • Alpharetta, GA, US
    serp_jobs.job_card.full_time
    Job Title : Cybersecurity Analyst.Department : Information Security / IT.Reports To : Security Manager / IT Director.We are seeking a detail-oriented and proactive Cybersecurity Analyst to join our se...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Analyst - GA LOCALS, HYBRID

    Security Analyst - GA LOCALS, HYBRID

    Jobs via Dice • Marietta, GA, US
    serp_jobs.job_card.full_time
    Be among the first 25 applicants.Dice is the leading career destination for tech experts at every stage of their careers. Our client, HCL Global Systems, is seeking the following.Bachelor's degree i...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    "As Needed" Part Time Instructor - Computer Science

    "As Needed" Part Time Instructor - Computer Science

    InsideHigherEd • Rome, Georgia, United States
    serp_jobs.job_card.part_time
    As Needed" Part Time Instructor - Computer Science.GHC - Floyd Campus;GHC - Cartersville Instr.Georgia Highlands College is a multi-campus, state college member of the University System of Georgia....serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Online Survey Taker. Earn up to $25 per survey. - Remote

    Online Survey Taker. Earn up to $25 per survey. - Remote

    Earn Haus • Gordon County, Georgia, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are urgently looking for people interested in taking online surveys for Fortune 500 brands.If you are a self-starter, looking for flexible hours throughout the week, this may be for you! Earn up...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Testing Engineer

    Security Testing Engineer

    Foxhole Technology • Atlanta, GA, United States
    serp_jobs.job_card.full_time +1
    DHS Suitability (EOD) Status, Secret.Job Title : Security Testing Engineer.Location : Atlanta, GA with travel to Houston and Los Angeles as necessary or 100% travel. Discover an exciting career at Fox...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Security Analyst - IV

    Information Security Analyst - IV

    AmNet Services, Inc. • Alpharetta, GA, US
    serp_jobs.job_card.full_time
    America Networks is a leading sensor and networking solutions partner for companies in the Industrial, Manufacturing, and Waste management sectors. We design and manufacture sensors for storage tank...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyberspace Defense Watch Officer (DoD IAT II & CSSP Analyst) with Security Clearance

    Cyberspace Defense Watch Officer (DoD IAT II & CSSP Analyst) with Security Clearance

    Crest Security Assurance • Smyrna, GA, US
    serp_jobs.job_card.full_time
    Cyberspace Defense Watch Officer (DoD IAT II & CSSP Analyst) with Security Clearance.Be among the first 25 applicants.Provide on premise Watch Officer Support to the Cyberspace Defense Reportin...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Web Application Security Tester

    Web Application Security Tester

    Foxhole Technology • Smyrna, GA, United States
    serp_jobs.job_card.full_time
    Web Application Security Tester.Title : Web Application Security Tester.Location : Herndon, VA- Remote in States Foxhole is registered to do business. Foxhole Technology provides robust cybersecurity ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Wire Machine Operator

    Wire Machine Operator

    Qualified Staffing • Plainville, GA, US
    serp_jobs.job_card.temporary
    Shift : 3rd (10 : 00p-6 : 00a) Sunday through Thursday.Change spools on finish end of Drawing machine.Cut wire samples, enter production data, print tags, and place them on completed spools of wire to e...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted