Jobs
>
Tampa

    Senior Application Security Engineer - Tampa, United States - FEDITC - Federal IT Consulting

    Default job background
    Description

    FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.

    Overview of position:

    FEDITC is seeking a Application Security Engineer, Sr., to work at MacDill AFB. A United States Citizenship and an active TS/SCI DoD Security Clearance is required to be considered for this position.

    The on-site Continuous Integration /Continuous Delivery (CI/CD) application cybersecurity engineer will specialize in implementing security analysis tools and security gates into all stages of the CI/CD pipeline. Primary function is to work with agile development teams to review application risks, provide remediation recommendations, and help prevent future risks by cultivating secure coding practices. The ideal candidate is someone with a developer background, has DevSecOps experience, and has performed application cybersecurity testing in a prior role. Must also have excellent attention to detail, strong analytic, and communication skills, as well as a working knowledge and understanding of application cybersecurity toolsets used in the CI/CD DevSecOps pipelines. In addition, the contractor will provide application cybersecurity engineer expertise, collaborate with agile development teams, and integrate DevSecOps pipeline solutions, defining a security baseline per product to ensure proper cybersecurity and compliance.

    Responsibilities:

    • Provide cybersecurity guidance and direction in the design, development and implementation of automated solutions, based on a set of standards and processes that enable CI/CD developers to easily apply cybersecurity and compliance services.
    • Responsible for, support of, and coordinating with other Engineers, Architects, and teams in implementing a comprehensive cloud and application cybersecurity program in a DevOps environment.
    • Automate cybersecurity testing using a variety of architectures and cutting-edge technologies.
    • Design, execute, and maintain automated cybersecurity testing for web applications (apps), mobile apps, and application programming interfaces (APIs).
    • Actively review and implement improvements to drive continuous improvement of the efficiency, speed, and quality of the CI/CD DevSecOps environment.
    • Leverage DevSecOps tools to build, harden, maintain and instrument a comprehensive cloud-based cybersecurity orchestration platform to be used in product CI/CD pipelines.
    • Integrate cybersecurity practices across the continuous delivery pipeline to provide a comprehensive automated cloud and application cybersecurity solution.
    • Perform risk and vulnerability assessments of CI/CD IT and IS platforms for authorization; prepare risk assessment reports for submission to the SCA and AO in accordance with DoD, USCYBERCOM, USSOCOM policies, procedures, and regulations.
    • Coordinate, manage and facilitate CI/CD application cybersecurity compliance processes with internal and external stakeholders to provide timely deliverables and rapid remediation.
    • Support the development of standards by creating templates and patterns for ease of use and increase the productivity of the cybersecurity program.
    • Foster, and build a community of practice for collective learning of the cybersecurity tools, practices, and systems across all disciplines.
    • Maintain application cybersecurity toolsets used in the development pipelines. Work hand in hand with developer teams to implement testing into their pipelines.
    • Professional curiosity that leads to learning and staying current with business best practices.
    • Work with leadership to identify and revise cybersecurity testing approaches.
    • Able to work on multiple projects and prioritize accordingly.

    Experience/Skills:

    • 8+ years of related experience.
    • Experience with CI/CD DevSecOps integration with tools such as Jenkins, JIRA, GitLab, and Bitbucket
    • Strong experience in cloud and application cybersecurity domains.
    • Experience with OR knowledge of supporting Cloud based platforms (Google, Microsoft, Amazon Web Services (AWS), and Military Cloud (MilCloud)).
    • Experience with OR knowledge of Open Containers Initiative (OCI) compliant containers and OpenShift Container Platform technology utilizing Kubernetes orchestration technology.
    • Strong and evolving competence in one or more programming languages and scripting using Python, Personal Homepage (PHP), Just Another Virtual Architecture (JAVA), JAVA Script, Power Business Intelligence (BI) and .Net Core.
    • Experience with container cybersecurity solutions such as Twistlock and Claire to scan for vulnerabilities within OCI containers.
    • Have used source control (github/gitlab) to manage code.
    • Experience working in a Linux or Universal Network Information Exchange (UNIX) based environment.
    • Extensive experience in implementing and enforcing application cybersecurity and vulnerability management.
    • Thorough understanding of release strategies that minimize or eliminate application downtime.
    • Experience with Change Management and Ticketing Systems (Remedy).
    • A good understanding of the Software Development Life Cycle (SDLC) and Agile software development methodology
    • Experience with OR knowledge of the Risk Management Framework (RMF), Security Technical Implementation Guides (STIGs) and NIST regulations

    Education:

    • BA / BS degree

    Certifications:

    • IAT Level II

    Clearance:

    • Active TS/SCI clearance is required.
    • Must be a US Citizen and pass a background check.
    • Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITC'S Client(s)/Customer(s)/Prime contractor(s).

    FEDITC, LLC. is committed to fostering an inclusive workplace and provides equal employment opportunities (EEO) to all employees and applicants for employment. We do not employ AI tools in our decision-making processes. Regardless of race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran. FEDITC, LLC. ensures that all employment decisions are made in accordance with applicable federal, state, and local laws. Our commitment to non-discrimination in employment extends to every location in which our company operates.


  • Aurora Technologies

    Security Engineer

    2 weeks ago


    Aurora Technologies Peter, United States

    Messer is the world's largest privately owned specialist for industrial, medical, and specialty gases. Messer's Gases for Life are used in the fields of environmental protection, medicine, industry, food, welding and cutting technology, 3D printing, construction, as well as resea ...


  • MUFG Bank, Ltd. Tampa, United States

    **Do you want your voice heard and your actions to count?** · Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), the 7th largest financial group in the world. Across the globe, we're 120,000 colleagues, striving to make a difference for every client, organizati ...

  • FusionTech

    IT Security Engineer

    2 weeks ago


    FusionTech Riverview, United States

    Ready for the future of IT security? · With over employees, we are one of the most successful IT companies and market leaders in our industry. The combination of direct sales of IT products with comprehensive system house services makes us a strong IT partner for medium-sized bus ...

  • Motion Recruitment

    Security Engineer

    1 week ago


    Motion Recruitment Tampa, United States

    The role of the Security Incident Response Engineer is to provide specialized technical expertise in managing the firm's incident response processes and activities. This professional will play a crucial role in identifying, analyzing, and responding to potential threats to safegu ...

  • V-Soft Consulting Group

    Security Engineer

    1 week ago


    V-Soft Consulting Group Tampa, United States

    Security Engineer (Remote) · Primary Location: Remote · V-Soft Consulting is currently hiring for a Security Engineer (Remote) for our premier client. · Education and Experience " Intune Experience is a must. · Patch My PC experience is a plus. · PowerShell experience is a ...


  • Fisher Investments Saint Petersburg, United States Full time

    It's an exciting time to join Fisher Investments; we're continuing to invest in the future of our firm's technology and information security. Our business is growing internationally, which emphasizes the need to build an unparalleled global team that inspires future scale through ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • Base-2 Solutions, LLC Tampa, FL, United States

    Required Security Clearance: Top Secret/SCI City: Tampa State/Territory: Florida Travel: None Potential for Teleworking: Yes Schedule: Full Time DoD 8570 IAT Requirement: None DoD 8570 IAM Requirement: None DoD 8570 IASAE Requirement: None DoD CSSP Requirement: None Last Updated: ...


  • VLink Inc Tampa, United States

    Qualifications · BA/BS or the equivalent combination of education, technical training, or work/military experience · 10+ years' experience in lieu of education · Candidate must have 5+ year's experience in Cyber Security Engineering · Job description · Education and Experience Re ...


  • Diverse Lynx Tampa, United States

    Job Title: Systems Security Engineer · Location: Tampa, FL (Onsite) · Contract · Mode of interview: Video Call · Note :: Require candidate to join onsite from day 1 · Must Have skills: Systems Security, Application Migration · Responsibilities · Engineer, enforce, and moni ...


  • The Depository Trust & Clearing Corporation Tampa, United States

    Job Tittle: Kubernetes Security Engineer · Duration: Full-time · Location: TX/FL/NJ (Hybrid 3 days onsite, Rest days remote) · About this Opportunity: · The Lead Platform Engineer is a Containers as a Service Security Site Reliability Engineer (CaaS SSRE) role and is focused o ...


  • Zachary Piper Solutions Tampa, United States

    Zachary Piper Solutions · is seeking an · Information Assurance Engineer · to support our customer (DISA). · This position requires you to be on-site at MacDill AFB in Tampa, FL. · The · Information Assurance Engineer · is responsible for identifying threats and vulnerabil ...


  • National Guard Employment Network Tampa, United States

    Job Description · ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spou ...


  • JPMorgan Chase Bank, N.A. Tampa, United States

    Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies. · As a Lead Security Engineer at J ...


  • Amgen Inc. Tampa, United States

    Amgen Inc.; Specialist IS Security Engineer; Tampa, FL; Management and implementation of on premise and cloud based firewalls, proxies, VPN services, and related network protection technologies. May tele- commute. Interested candidates email resume to Talent-Mobility@ Must refer ...


  • C4 Technical Services Tampa, United States

    Forgerock Security Engineer · Work Location: Remote · Description · Accountable for activities that ensure all users in the organization have the appropriate levels of access to applications, systems, and data resources. Evaluates and maintains procedures to safeguard information ...