Tech Stack
JavaJavaScriptLinux.NETPythonSeleniumUnix
About the role
- Work together with the client and application community to maintain a resilient security posture for highly visible applications.
- Enhance our application security team.
- Assist clients with enabling their mission by bringing the right people, capabilities, and expertise together.
- Support Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode.
- Secure enterprise web applications and apply OWASP Top 10, CVSS, CWE, WASC, and SANS-25 controls.
- Design and implement enterprise-wide security controls to secure applications, systems, network, or infrastructure services.
- Troubleshoot basic website connectivity issues in Linux or UNIX environments.
- Use tools such as Burp Suite, OWASP ZAP, Burp Proxy, Selenium, and IDEs like Eclipse, JDeveloper, or Visual Studio.
Requirements
- 6 + years of information technology experience.
- 3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode
- 3+ years of experience with Java, Python, .NET, or C#
- 3+ years of experience with Burp Suite
- 3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services.
- Experience with Eclipse, JDeveloper, including pipeline development, or Visual Studio.
- Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25.
- Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP.
- Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic website connectivity issues
- Understanding of federal compliance standards, such as NIST 800-53, FIPS, or FedRAMP.
- Ability to obtain a security clearance.
- HS diploma or GED.
- Experience with Interactive Application Security Testing (IAST) capabilities and tools.
- Experience with Selenium.
- Experience in writing bash scripts.
- Experience with OWASP ZAP or Burp Proxy
- MILITARY OCCUPATIONAL SPECIALTY CODES (MOS codes): 170A, 170D, 17A, 17B, 17C, 17D, 24B, 25B, 47D, 94F, IT, 17 5309, 6203, 9735, 9740, 9890, 9891