Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailPerform vulnerability management activities including assessment tracking and coordination of remediation efforts across applications infrastructure and endpoints.
Conduct internal application penetration testing document findings and recommend security improvements.
Analyze the security impact of application configuration and infrastructure changes as part of the change management lifecycle.
Evaluate and document the security posture of new systems or system interfaces and their impact on the existing environment.
Assess configurations of applications servers and network devices for compliance with security standards.
Investigate and respond to security incidents providing thorough postincident analysis and reporting.
Perform annual password security audits and coordinate organizationwide user access reviews.
Implement and support Secure Software Development Lifecycle (SSDLC) practices and DevSecOps processes.
Identify analyze and document the impact and risks of newly discovered vulnerabilities.
Determine appropriate security controls and protection needs for information systems and networks.
Create and maintain documentation and desk procedures for all securityrelated processes.
Automate and script recurring security tasks and processes to improve efficiency.
Collaborate and communicate effectively with stakeholders to address and manage security risks and requirements.
5 years of experience with NIST 80053 rev 5 and/or Criminal Justice Information System (CJIS) specifications for an information security management system.
5 years of experience with software development lifecycle vulnerability management processes and rolebased authentication methodologies.
5 years of experience working with programming languages such as Python Java JavaScript C C# SQL HTML CSS and/or COBOL.
5 years of experience using automated vulnerability scanners like Nessus Qualys Retina and/or Tenable.
5 years of experience using web application security testing tools such as Burp Suite Fortify and/or AppScan.
5 years of experience with basic scripting skills (e.g. WDL VBScript JavaScript PowerShell Python) for automation.
5 years of experience working with IT security or risk assessment certifications such as CISM CCSP CISSP CEH CompTIA Pentest and/or CompTIA Security.
Required Experience:
Senior IC
Contract