layiq
worthy; deserving; fitting; suitable.
A role, opportunity, or path that merits attention, time, and pursuit.
Loading LAYIQ…Job opportunity
Spry Methods
Washington, DC (Remote), Remote
Source: Spry Methods careers · View original posting
From Spry Methods's posting. “We” and “our” refer to the employer.
Company Overview
Spry Methods is a proven provider of mission-focused technology, cybersecurity, and program management solutions supporting critical Federal and DoD missions. We specialize in delivering integrated, high-impact solutions across cyber operations, enterprise resource management, and mission support services. Our culture emphasizes collaboration, accountability, and innovation - empowering our teams to deliver meaningful outcomes in complex, high-security environments.
The Web Developer Security Engineer protects mission-critical web applications, application programming interfaces (APIs), and sensitive data by embedding security across the software development lifecycle. This role combines application security engineering, secure software development, vulnerability remediation, monitoring, and compliance support.
, analyze, and remediate critical vulnerabilities, logic flaws, insecure dependencies, and misconfigurations in web applications and APIs.
Drive the vulnerability lifecycle through threat modeling, security assessments, and technical validation of remediation actions.
Support secure design patterns, data protection mechanisms, and secure communication protocols across applications and supporting services.
Review and analyze web server and application logs to detect anomalies and indicators of compromise.
Implement automation scripts for threat intelligence integration and application security monitoring.
Participate in audits, risk assessments, and security authorization activities tied to federal frameworks.
What You Need to Succeed (Minimum Requirements):: Minimum of three years of experience in web application security, application security engineering, or secure software development lifecycle work.
Hands-on experience in secure software development, DevSecOps automation, and vulnerability remediation.
Proven experience with .NET technologies, HTML5, CSS3, JavaScript, representational state transfer (REST) APIs, and structured query language (SQL).
Ability to leverage
AI-assisted development tools and scripting languages to automate monitoring and compliance efforts.
Strong understanding of the Open Worldwide Application Security Project (OWASP) Top 10, secure coding standards, web application firewalls (WAFs), file integrity monitoring, and security testing tools.
Ability to perform risk assessments and provide remediation guidance for core systems and dependencies.
Bachelor's degree or higher in computer science, cybersecurity, information systems, engineering, or a related field.
Ability to meet federal screening and suitability requirements prior to start.
Current security certifications maintained for a minimum of five years:
OffSec Web Expert (OSWE)
Offensive Security Certified Professional (OSCP)
Security+
GSEC
Ideally, You Also Have (Preferred Qualifications):: In-depth experience with federal cybersecurity frameworks and authorization processes.
Experience with threat modeling, resilient security architecture, cloud security, and container security.
We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.
Employer posted: