Threat Modeling Engineer

4 weeks ago


McLean, United States Technology Ventures Full time

Must Have: 3+ Threat models, sprints in agile development, Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

Preferred: CCSP(Certified Cloud Security Professional), OSCP( OffSec Certified Professional), Able to provide references to CVEs filled, Create and find threats.


Senior Threat Modeling Architect to join our Information Security Architecture team. The Senior Threat Modeling Engineer will partner closely and collaboratively with Enterprise Architecture (EA), Developers, Platform Owners, and other areas of the firm to help ensure provides secure services and solutions.


Duties and Responsibilities:

• Assess Security Risk from an Architectural Perspective and Apply a Risk-Based Approach to Security

• Generate application treat models in a quick paced environment

• Manage workloads using Kanban methodologies to estimate and track task deliveries

• Mentor, assist, and share your expertise with team members

• Attend regular standups and team meetings

• Identify and be able to explain security weaknesses to a variety of audiences to include but not limited to software development teams

• Hold brown bag sessions to educate developers on the value and benefit that they and the firm derive by identifying threats early

• Develop training material for how to engage the Threat Management service, make use of technologies, and interpret findings.

• Drive beneficial security change into the business through supporting Developers with creation of threat models for their applications and remediation of potential threats, balancing risk against business need.

• Support the Security Architecture team to develop and mature an Application Threat Modeling Program by defining processes, procedures, controls, KRI’s/KPI’s, etc., that identify threats early in the development process reducing risks prior to deployment.

• Work with the InfoSec functional teams in the development of the Information Security strategy and roadmap, including and with focus on Threat Modeling; liaison and consult with Enterprise Architecture, IT and the business for ongoing input and awareness

• Advise and Contribute to Strategy and Roadmaps


Qualifications:

• Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

• Demonstrated experience developing technical threat models

• Demonstrated experience performing security code reviews and explaining results to project teams

• Previous or active experience with bug bounty programs

• Experience working in Sprint or Agile environments

• Strong understanding of protocols, networking, firewalls, caching, VIPs, proxies, web applications, and database systems

• Experience with AWS and Azure or working knowledge of GCP

• Knowledge of several of the following programming languages; Java, C#, Python, C++, Node.JS, JavaScript

• Knowledge in one or several of the following Frontend frameworks; React, Angular, Ember, Vue

• Minimum of 3 years’ experience working as an Information Security Threat Modeling subject matter expert at a senior level

• Minimum of 5 years’ experience working as an Information Security Professional, preferably within the architecture or engineering disciplines

• Passion for leading change and ability to bring others along

• (Desirable) Able to provide references to CVEs filled, Bug Bounty Username, or GitHub repositories

• (Desirable) One or more security-related certifications associated with AWS, GCP, or Azure

• (Desirable) CISSP (+ ISSAP), CCSP, CEH, OSCP, CSSLP



  • McLean, United States Booz Allen Hamilton Full time

    Cyber Threat Intelligence Analyst, Senior Key Role: Analyze a variety of information and intelligence relevant to the threats facing the systems, assets, and resources critical to the nation, and develop research studies and recommendations. Serve as liaison to the firm’s intelligence sharing partnerships and interface with both government and...


  • McLean, United States Technology Ventures Full time

    Location: Hybrid - Onsite in McLean OR Plano, TX Tuesday through Thursday; Open to Remote - prefers local candidatesAssignment Type: Contract Only - Possible ConversionMust Haves: 5+ years of of relevant experience in IT Security. Must have hands-on experience with Cloudflare implementing API security. One must have deep understanding of cryptography...


  • McLean, United States Technology Ventures Full time

    Location: Hybrid - Onsite in McLean OR Plano, TX Tuesday through Thursday; Open to Remote - prefers local candidatesAssignment Type: Contract Only - Possible ConversionMust Haves: 5+ years of of relevant experience in IT Security. Must have hands-on experience with Cloudflare implementing API security. One must have deep understanding of cryptography...

  • Zscaler Engineer

    22 hours ago


    McLean, United States Booz Allen Hamilton Full time

    Job Number: R0196882 Zscaler Engineer The Opportunity: Are you looking for an opportunity to share your experience in security systems to support our country? As a systems security and network security engineer, you can identify the tools needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead...


  • McLean, United States Compunnel Full time

    Description: This position will be supporting the Applied Cryptography team within the Information Security Engineering department within the Information Security Unit of the Information Technology Division. This position is primarily responsible for providing administration and engineering support of the encryption-at-rest services within our clients...

  • Large Language Model

    23 hours ago


    McLean, United States Harmonia Full time

    Harmonia Holdings Group, LLC is an award-winning minority and female owned federal government contractor committed to providing innovative, high-performing solutions to our government clients and focused on fostering a workplace that encourages growth, initiative, creativity, and employee satisfaction. We have an exciting opportunity for a Large Language...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...

  • AI/ML Engineer

    7 days ago


    McLean, United States Smart Synergies Full time

    JOB DESCRIPTION The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...


  • McLean, United States Cognitio Corp Full time

    Job Description The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...

  • Senior Engineer

    3 weeks ago


    McLean, United States Associates Systems LLC Full time

    Responsibilities: As the Senior Engineer , you will lead the planning and execution of complex mission and systems analysis efforts to support the Office of the Undersecretary of Defense for Research and Engineering (OUSD(R&E) Assistant Secretary of Defense for Mission Capabilities (ASD(MC)) and the Deputy Assistant Secretary of Defense for Multi-Domain...

  • Systems Engineer

    10 hours ago


    McLean, United States Bridge Core Full time

    Overview: Systems Engineer - Data Analysis Herndon, VA TS/SCI FS Poly Bridge Core provides high energy, unified teams; technology integration experience; and innovative approaches, to enable our clients’ mission. We enable our clients’ mission by integrating innovative technologies and implementing adoption processes that modernize the digital workplace....


  • McLean, United States Meazure Learning Full time

    Meazure Learning We are leading the transformation of the assessment industry, making it easy for anyone to safely and securely get educated, trained, or certified. View company page At Meazure Learning , we aim to empower open-minded, inquisitive, and driven people, and we love how each new addition to the team adds to our culture. Here, you can positively...

  • Network Engineer

    14 hours ago


    McLean, United States Torin Consulting, Inc. Full time

    CLEARANCE: Active TS/SCI with Polygraph required to apply Torin is seeking a qualified Network Engineer responsible for maintaining the design and the integrity of the customer's complex internal network, including customer-facing hosted and cloud environments. They will provide expert technical assistance to team members with high-level system and...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0198420Mechanical Engineer Key Role: Apply engineering physics, engineering mathematics, and materials science principles to support the design, analysis, manufacture, or maintenance of mechanical systems. Apply specific functional, working, and general industry knowledge. Develop or contribute to solutions to a variety of problems of moderate...

  • Security Engineer

    3 weeks ago


    McLean, United States NetGO Inc. Full time

    NetGO Inc. Security Engineer Remote·Full time Apply for Security Engineer NetGO has a current opening for a Security Engineer to support a Federal Government client with their digital transformation and modernization programs. Description Responsibilities: · Plans, implements, upgrades, or monitors security measures for the client's applications and...


  • McLean, United States CodeHunter Full time

    Job DescriptionJob DescriptionAre you a cybersecurity enthusiast driven by the curiosity to dissect and understand malware's inner workings? Do you excel at staying ahead of cybercriminals and identifying emerging cyber threats? If this resonates with you, then CodeHunter offers the ideal platform for you to showcase your skills. As a Malware Reverse...

  • Software Engineer

    2 weeks ago


    McLean, United States Altamira Technologies Full time

    Description Altamira Technologies is seeking Software Engineers to join our world-class Space Systems engineering team in the Northern Virginia, Washington DC Metro Area. As a candidate for this opportunity, you should have a good foundation in object-oriented software development and be experienced working in a LINUX or UNIX environment. The candidate...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0196908 Mobility Engineer, Senior Key Role: Provide subject matter expertise to perform product management, system engineering, and integration of mobile te chn ologies into end-to-end client solution initiatives.Leverage knowledge of mobility architectures across many mobile te chn ologies, IT standards, and applications through...

  • DevOps Engineer, Mid

    21 hours ago


    McLean, United States Booz Allen Hamilton Full time

    3+ years of experience with software development 2+ years of experience with building and administering instances and services in the cloud and on-premise for development, test, and production environments Experience with scripting, testing, and deploying new versions of cloud services and infrastructure, including design and management of automation...