Application Security Engineer

Details of the offer

At phia we hire talented and passionate people who are focused on collaborative, meaningful work, providing technical and operational subject matter expertise and support services to our partners and clients. We are seeking an Application Security Engineer to work hand-in-hand with the Federal client to maintain a resilient security posture for highly visible applications. This position allows you to work remotely from anywhere within the United States. To be considered, U.S. citizenship is required, and you should be able to obtain a Public Trust before starting the position. If you thrive on complex problem-solving, enjoy providing innovative solutions, and want to have a meaningful impact on national security, let's explore the possibility of you working for phia!
\n What You'll DoCollaborate with the federal client and application teams to maintain a robust security posture for high-visibility applicationsLead proactive security discussions with development teams to integrate best practices throughout the software development lifecycleConduct comprehensive application security assessments using dynamic and static testing methodologiesPerform threat modeling and security requirements analysis using tools like SD ElementsExecute in-depth application penetration testing using industry-standard tools such as Burp SuiteImplement and leverage the latest OWASP frameworks to enhance application securityDevelop and maintain security controls to protect applications, systems, and infrastructure servicesProvide expert guidance on remediating identified security flaws and vulnerabilitiesStay current with evolving security threats and compliance standards to ensure continuous improvement of security measures Required: Education + Experience 6+ years of Information Technology experience3+ years of experience with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments, particularly using Veracode2+ years of hands-on experience with Java, Python, .NET, or C#3+ years of proficiency with Burp Suite for application security testing3+ years of experience designing and implementing enterprise-wide security controlsExpertise in securing enterprise web applications and thorough knowledge of OWASP Top 10, CVSS, CWE, WASC, and SANS-25Familiarity with federal compliance standards, including NIST 800-53, FIPS, and FedRAMPProficiency in Linux or UNIX environments, including troubleshooting website connectivity issuesExperience with development environments such as Eclipse, JDeveloper, or Visual StudioStrong understanding of CI/CD pipeline security integrationU.S. citizenship and ability to obtain a Public Trust clearance Desired Skills and Experience Bachelor's degree in Computer Science, Information Technology, Information Security, or a related fieldExperience with Interactive Application Security Testing (IAST) tools and methodologiesProficiency with Selenium for automated testingSkill in writing bash scripts for security automationHands-on experience with OWASP ZAP or Burp ProxyCertifications in application security or related fields (e.g., CSSLP, OSCP, GWAPT) Security Clearance U.S. Citizenship requiredApplicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Public Trust determination is required
\nWho You Are  A proactive problem solver that appreciates the challenges of working in a fast-paced, dynamic environment. Intellectually curious with a genuine desire to learn and advance your career. An effective communicator, both verbally and in writing. Customer service-oriented and mission-focused. Critical thinker with excellent problem-solving skills If your experience and qualifications aren't a match for this position, you will remain in our database for consideration for future opportunities that may be a better fit. Who We Are phia, LLC is a Northern Virginia-based, small business established in 2011 with a focus on Cyber Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident Response, Cyber Architecture & Capability Analysis, Cyber Policy & Strategy, and Information Assurance/Security. we proudly support various agencies and offices within the Department of Defense (DoD), Federal government, and private/commercial entities. phia values work-life balance and offers the following benefits to full-time employees:  Comprehensive medical insurance to include dental and vision Short Term & Long-Term Disability  401k Retirement Savings Plan with Company Match Tuition and Professional Development Assistance Flex Spending Accounts (FSA) phia does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity, or any other reason prohibited by law in the provision of employment opportunities and benefits.


Nominal Salary: To be agreed

Source: Grabsjobs_Co

Requirements

Director, Software Engineering

11 West 19th Street (22008), United States of America, New York, New York Director, Software Engineering Director, Software Engineering- Risk Technology The ...


Capital One - Distrito de Columbia

Published 4 days ago

Senior Software Engineer (Back End), Bank Tech

1735 Market St (16035), United States of America, Philadelphia, Pennsylvania Senior Software Engineer (Back End), Bank Tech Do you love building and pioneeri...


Capital One - Distrito de Columbia

Published 4 days ago

Octo Soa Integration Consultant || Washington Dc

OCTO SOA Integration Consultant Work Address: Washington DC 20003 Please Note this position is 100% ONSITE seeks a senior application integration consultant ...


Isoftech Inc - Distrito de Columbia

Published 4 days ago

Senior Back End Engineer

Center 1 (19052), United States of America, McLean, Virginia Senior Back End Engineer Do you love building and pioneering in the technology space? Do you enj...


Capital One - Distrito de Columbia

Published 4 days ago

Built at: 2024-11-15T04:11:01.285Z