2h ago

Software Security Engineer

McLean, VA
full-timeseniordefense

Tech Stack

Description

You will lead software security practices across the SDLC, conduct threat modeling and security assessments, and serve as the primary security liaison with government stakeholders, ensuring rigorous security standards for DoD personnel vetting platforms.

Requirements

  • CISSP certification required
  • 10+ years experience in software security
  • Strong knowledge of NIST SP 800-53, RMF, and DoD security frameworks
  • Hands-on experience with SAST/DAST tools (Fortify, Checkmarx, Veracode, OWASP ZAP)
  • U.S. citizenship required

Responsibilities

  • Lead design and improvement of secure SDLC practices
  • Conduct threat modeling, security architecture reviews, and code security assessments
  • Oversee SAST, DAST, and SCA integration within CI/CD pipelines
  • Support RMF ATO process including SSPs, POA&Ms, and security documentation
  • Lead penetration testing planning and security incident response
0 views 0 saves 0 applications