{"schemaVersion":"jobsearcher.job.v1","id":"2a0f56f1b6ab77a98d1965a2","url":"https://jobsearcher.com/jobs/2a0f56f1b6ab77a98d1965a2","canonicalUrl":"https://jobsearcher.com/jobs/2a0f56f1b6ab77a98d1965a2","title":"Web Developer Security Engineer","description":"Web Developer Security Engineer\nClearance Requirement: Public Trust (Tier 2)\nLocation: Remote/Hybrid (as approved by customer)\n\nPosition Overview: Nationwide IT Services (NIS) is seeking a Web Developer Security Engineer to support application security initiatives across web applications, APIs, and the software development lifecycle (SDLC). The selected candidate will be responsible for secure application design, vulnerability management, DevSecOps integration, security monitoring, WAF administration, File Integrity Monitoring (FIM), and Tier II security operations support.\n\nRequired Experience:\nMinimum 3 years of experience in Application Security and Secure Software Development Lifecycle (SSDLC).\nStrong knowledge of web application security principles and OWASP Top 10 vulnerabilities.\nExperience managing the full vulnerability lifecycle, including threat modeling, security assessments, remediation, and validation.\nExperience with secure application design, architecture reviews, data protection, and secure communications.\nHands-on experience with Web Application Firewall (WAF) deployment, configuration, and tuning.\nExperience with File Integrity Monitoring (FIM), log analysis, Indicators of Compromise (IOC) detection, and threat intelligence automation.\nExperience supporting Tier II Security Operations.\nExperience implementing DevSecOps practices and automated security controls within CI/CD pipelines.\nTechnical Skills:\n.NET Technologies: C#, ASP.NET MVC, WCF\nFront-End: HTML5, CSS3, JavaScript, React, TypeScript\nAPIs & Databases: REST APIs, SQL\nProgramming/Scripting: Python, Node.js, Java\nAI-Assisted Development Tools (e.g., GitHub Copilot)\nSecurity Tools: SIEM, IDS/IPS, NDR, EDR\nCloud & Container Security: AWS, Docker, Kubernetes\nCompliance & Governance:\nExperience supporting environments governed by NIST SP 800-53, FISMA, and FedRAMP.\nExperience participating in audits, security assessments, and authorization activities.\nEducation:\nBachelor’s degree or higher in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field.\nRequired Certifications:\nApplication Security (One Required):\nCSSLP, OR\nGIAC Web Application Penetration Tester (GWEB), OR\nCASE\nOffensive Security (One Required):\nOSWE, OR\nOSCP\nFoundational Security (One Required):\nSecurity+, OR\nGSEC\nPreferred Qualifications:\nExperience securing federal government applications and systems.\nExperience integrating security controls into modern CI/CD pipelines.\nStrong understanding of cloud-native and containerized application security.\nKey Responsibilities:\nPerform application security reviews and threat modeling.\nConduct vulnerability assessments and oversee remediation efforts.\nImplement and maintain security controls within CI/CD pipelines.\nConfigure and tune WAF and File Integrity Monitoring solutions.\nAnalyze logs, investigate security events, and support incident response activities.\nCollaborate with development teams to ensure secure coding practices.\nSupport compliance, audit, and security authorization requirements.\n\nWorking at NIS means being part of a company grounded in purpose, resilience,\nand a genuine commitment to people. Since its founding in 2006, NIS has focused not only\non delivering exceptional services to our government customers, but also on supporting our\nnation, taxpayers, and citizens—while consistently prioritizing the well-being and growth of\nits employees. Today, NIS continues to evolve by embracing remote work, enhancing\nwellness initiatives, and investing in modern technology, all while staying true to its\nmission.\n\nSalary range $115,000 to $190,000 annually\nThe salary range is a general guideline. We consider several factors when determining base salary offers, including the position's scope and responsibilities, the candidate's experience, education, and skills, and current market conditions.\n\njLzB7IGQ64","company":"Nationwideitservices","rawCompany":"nationwideitservices","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-08-03T14:50:54.776Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Web Developer Security Engineer","description":"Web Developer Security Engineer\nClearance Requirement: Public Trust (Tier 2)\nLocation: Remote/Hybrid (as approved by customer)\n\nPosition Overview: Nationwide IT Services (NIS) is seeking a Web Developer Security Engineer to support application security initiatives across web applications, APIs, and the software development lifecycle (SDLC). The selected candidate will be responsible for secure application design, vulnerability management, DevSecOps integration, security monitoring, WAF administration, File Integrity Monitoring (FIM), and Tier II security operations support.\n\nRequired Experience:\nMinimum 3 years of experience in Application Security and Secure Software Development Lifecycle (SSDLC).\nStrong knowledge of web application security principles and OWASP Top 10 vulnerabilities.\nExperience managing the full vulnerability lifecycle, including threat modeling, security assessments, remediation, and validation.\nExperience with secure application design, architecture reviews, data protection, and secure communications.\nHands-on experience with Web Application Firewall (WAF) deployment, configuration, and tuning.\nExperience with File Integrity Monitoring (FIM), log analysis, Indicators of Compromise (IOC) detection, and threat intelligence automation.\nExperience supporting Tier II Security Operations.\nExperience implementing DevSecOps practices and automated security controls within CI/CD pipelines.\nTechnical Skills:\n.NET Technologies: C#, ASP.NET MVC, WCF\nFront-End: HTML5, CSS3, JavaScript, React, TypeScript\nAPIs & Databases: REST APIs, SQL\nProgramming/Scripting: Python, Node.js, Java\nAI-Assisted Development Tools (e.g., GitHub Copilot)\nSecurity Tools: SIEM, IDS/IPS, NDR, EDR\nCloud & Container Security: AWS, Docker, Kubernetes\nCompliance & Governance:\nExperience supporting environments governed by NIST SP 800-53, FISMA, and FedRAMP.\nExperience participating in audits, security assessments, and authorization activities.\nEducation:\nBachelor’s degree or higher in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field.\nRequired Certifications:\nApplication Security (One Required):\nCSSLP, OR\nGIAC Web Application Penetration Tester (GWEB), OR\nCASE\nOffensive Security (One Required):\nOSWE, OR\nOSCP\nFoundational Security (One Required):\nSecurity+, OR\nGSEC\nPreferred Qualifications:\nExperience securing federal government applications and systems.\nExperience integrating security controls into modern CI/CD pipelines.\nStrong understanding of cloud-native and containerized application security.\nKey Responsibilities:\nPerform application security reviews and threat modeling.\nConduct vulnerability assessments and oversee remediation efforts.\nImplement and maintain security controls within CI/CD pipelines.\nConfigure and tune WAF and File Integrity Monitoring solutions.\nAnalyze logs, investigate security events, and support incident response activities.\nCollaborate with development teams to ensure secure coding practices.\nSupport compliance, audit, and security authorization requirements.\n\nWorking at NIS means being part of a company grounded in purpose, resilience,\nand a genuine commitment to people. Since its founding in 2006, NIS has focused not only\non delivering exceptional services to our government customers, but also on supporting our\nnation, taxpayers, and citizens—while consistently prioritizing the well-being and growth of\nits employees. Today, NIS continues to evolve by embracing remote work, enhancing\nwellness initiatives, and investing in modern technology, all while staying true to its\nmission.\n\nSalary range $115,000 to $190,000 annually\nThe salary range is a general guideline. We consider several factors when determining base salary offers, including the position's scope and responsibilities, the candidate's experience, education, and skills, and current market conditions.\n\njLzB7IGQ64","datePosted":"2026-08-03T14:50:54.776Z","dateModified":"2026-08-03T14:50:54.776Z","hiringOrganization":{"@type":"Organization","name":"Nationwideitservices","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"2a0f56f1b6ab77a98d1965a2"},"url":"https://jobsearcher.com/jobs/2a0f56f1b6ab77a98d1965a2"}}