2h ago
Software Security Engineer
McLean, VA
full-timeseniordefense
Tech Stack
Description
You will lead software security practices across the SDLC, conduct threat modeling and security assessments, and serve as the primary security liaison with government stakeholders, ensuring rigorous security standards for DoD personnel vetting platforms.
Requirements
- CISSP certification required
- 10+ years experience in software security
- Strong knowledge of NIST SP 800-53, RMF, and DoD security frameworks
- Hands-on experience with SAST/DAST tools (Fortify, Checkmarx, Veracode, OWASP ZAP)
- U.S. citizenship required
Responsibilities
- Lead design and improvement of secure SDLC practices
- Conduct threat modeling, security architecture reviews, and code security assessments
- Oversee SAST, DAST, and SCA integration within CI/CD pipelines
- Support RMF ATO process including SSPs, POA&Ms, and security documentation
- Lead penetration testing planning and security incident response
0 views 0 saves 0 applications