Secure Software Assessor

Our client, a federal contractor is seeking a Secure Software Assessor to analyze the security of new or existing computer applications, software, or specialized utility programs and provides actionable
results.

The position is 100% onsite at the government facility in Springfield, VA. Our client is looking to onboard as a direct employee.


TASKS:
- Apply coding and testing standards, apply security testing tools including "'fuzzing" static-analysis code scanning tools, and conduct code reviews.
- Apply secure code documentation.
- Capture security controls used during the requirements phase to integrate security within the process, to identify key security objectives, and to maximize software security while minimizing disruption to plans and schedules.
- Develop threat model based on customer interviews and requirements.
- Consult with engineering staff to evaluate interface between hardware and software.
- Evaluate factors such as reporting formats required, cost constraints, and need for security restrictions to determine hardware configuration.
- Identify basic common coding flaws at a high level.
- Identify security implications and apply methodologies within centralized and decentralized environments across the enterprise's computer systems in software development.
- Identify security issues around steady state operation and management of software and incorporate security measures that must be taken when a product reaches its end of life.
- Perform integrated quality assurance testing for security functionality and resiliency attack.
- Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
- Address security implications in the software acceptance phase including completion criteria, risk acceptance and documentation, common criteria, and methods of independent testing.
- Store, retrieve, and manipulate data for analysis of system capabilities and requirements.
- Translate security requirements into application design elements including documenting the elements of the software attack surfaces, conducting threat modeling, and defining any specific security criteria. Perform penetration testing as required for new or updated applications.
- Consult with customers about software system design and maintenance.

Required Skills

- Must be US Citizen due to government clearance requirement
- Active TS/SCI Clearance
- Bachelor-s degree or higher from an accredited college or university. (Prefer an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree, or a degree in a Mathematics or Engineering field.
- Certification(s): IASAE Level 2 (CISSP, CISM, CAP, CEH)
- Ability to use and understand complex mathematical concepts (e.g., discrete math).
- Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
- Ability to identify critical infrastructure systems with information communication technology that were designed without system security considerations.

Apply Now

Return to Search Results

Have a Question?

Location

Springfield, VA

Openings

1

Anticipated Start Date

Monday, June 24, 2024

Job Type

Direct Hire

Anticipated Duration

PERM

Date Posted

Monday, June 3, 2024

Know someone who would be a good fit? We pay for referrals!

Share this job:



Call 800-ELITE-50
Reference #11373

Elite Technical Services, Inc. participates in the E-Verify program to confirm the employment eligibility of all persons hired. This means that we will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee's Form I-9 to confirm work authorization. Elite Technical Services, Inc. will not use E-Verify to pre-screen job applicants.

Elite Technical Services, Inc. is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.