Cyber Security Architect

2 weeks ago


Washington, United States Kalani Consulting Full time
Job DescriptionJob Description

Cyber Security Architect

Kalani Consulting Inc recently awarded Best and Brightest Companies to Work for in The Nation for the second year in a row and Washington Post’s Top Workplaces of 2023 is looking to add more talent to our team Kalani is a fast-growing small business located in Northern Virginia with an increasing base of government customers.  We specialize in Information Technology, and Management Consulting. We offer very competitive salaries and benefits and are an employee-focused company. Join us and experience the Aloha Spirit

Overview:
This individual will serve as the Senior Information Systems Security Engineer and Senior Technical Consultant for the Department of State DevOps team, Solution Architecture team and Application Vulnerability Assessment Program. Responsibilities include developing pipelines. Must be able to configure, implement and administer Fortify Static Code Analyzer, Web Inspect, OWASP and SonaType into the Azure DevOps pipeline and provide hands-on technical subject matter expertise for applications using the application scanning tools. 

Responsibilities:

  • Maintain Azure DevOps pool agent servers.
  • Monitor and coordinate security findings.
  • Manage the program testing processes and testing activities of the security program.  
  • Manage the resolution of open issues and communicate essential information to stakeholders. 
  • Administer applications and users and field troubleshooting questions for users and other stakeholders. 
  • Analyze internal security and provide relevant information to internal and external stakeholders. 
  • Analyze all platform level system changes and monitor impact and provide appropriate technical solutions to resolve issues efficiently; evaluate and document operating baseline according to required standards.   
  • Work with Project teams to review vulnerabilities and manage the resolution of vulnerabilities.    
  • Support the creation and maintenance of program documentation including Standard Operating Procedures, Test Plans, Reference Guides, Troubleshooting Guides, Training Guides, etc. 
Qualifications:
  • Strong understanding of DevSecOps tools and processes, as well as OWASP top risks and mitigations.
  • Hands-on experience in installing, configuring, operating, and monitoring CI/CD pipeline tools.
  • Previous work writing/developing CI/CD pipelines using YAML, maintaining/configuring build agents, and generating documentation and statements of procedures for these processes.
  • Experience integrating static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and other application security tools (i.e., IaC scanning, container security, etc.) into CI/CD pipelines to automate security testing.
    • Examples include Fortify SCA, Fortify WebInspect, Sonatype, Checkov, Owasp ZAP, Burp Suite, etc.
  • Knowledge of NIST's Secure Software Development Framework and how code scanning tools align.
  • Ability to troubleshoot, via log analysis, both frequent and infrequent technical issues related to CI/CD pipeline run errors.
  • Programming/scripting experience in Python/PowerShell to design and implement automation to streamline processes.
  • Solid understanding of other core programming languages such as C#/.NET, Java, Node.js, PHP, etc. to aid in troubleshooting of customer CI/CD pipelines.
  • Experience reviewing and validating outputs of code scans to assist customers in identify true positives and provide appropriate remediation guidance.
Clearance Requirement:
  • Active DOD Secret Clearance

Kalani Consulting, Inc. is an equal opportunity employer that values the strength diversity brings to the workplace.  All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law.

Powered by JazzHR

mrZEt9EEok



  • Washington, United States CIRCOR International, Inc. Full time

    CIRCOR International is a global manufacturer specializing in highly engineered, complex, and severe environment products that serve long-term, high growth infrastructure markets, including oil and gas, power generation, industrial, and aerospace & defense.CIRCOR. Excellence in Flow Control.We are ~3100 people servicing customers in over 100 countries, with...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, United States Ageatia Global Solutions Full time

    PURPOSE: Develops and implements security solutions. Administers security technology systems by architecting and engineering/developing trusted systems into secure systems. Assists in the development of implementation and deployment plans that are aligned to the organizational strategic plan objectives and security requirements. Advises management in...


  • Washington, United States Ageatia Global Solutions Full time

    PURPOSE: Develops and implements security solutions. Administers security technology systems by architecting and engineering/developing trusted systems into secure systems. Assists in the development of implementation and deployment plans that are aligned to the organizational strategic plan objectives and security requirements. Advises management in...


  • Washington, United States Non-Departmental Agency Full time

    Summary Cyber Security Researchers focus in the cyber arena and specialize in the design, development, integration, and deployment of cutting-edge tools, techniques, and systems to support cyber operations. ...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Cyber Security Researchers focus in the cyber arena and specialize in the design, development, integration, and deployment of cutting-edge tools, techniques, and systems to support cyber operations.Duties As a Cyber Security Researcher for CIA, you will focus in the cyber arena and specialize in the design, development, integration, and deployment...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Cyber Security Officers identify current threats, mitigate vulnerabilities, and anticipate future cybersecurity challenges, protecting CIA data and systems and managing IT risk. Duties As a Cyber Security Officer (CSO), you will protect Agency data and systems using sophisticated tools, instrumentation, and knowledge of CIA Information Technology...


  • Washington, United States Non-Departmental Agency Full time

    Summary Cyber Security Officers identify current threats, mitigate vulnerabilities, and anticipate future cybersecurity challenges, protecting CIA data and systems and managing IT risk. ...


  • Washington, United States Jlha Full time

    If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Cyber Security Specialist Full Time Washington, DC, US 30+ days ago Requisition ID: 1085 At Herren Associates, we’re focused on driving innovation throughout the Federal landscape and in the business...


  • Washington, United States Latitude, Inc. Full time

    Job DescriptionJob DescriptionWe are seeking a highly motivated and experienced Cyber Security Systems Engineer to join our dynamic team. The Cyber Security Systems Engineer will be responsible for designing, implementing, and maintaining security systems and protocols to protect our organization's infrastructure and assets from cyber threats. The ideal...


  • Washington, United States Robert Half Full time

    Job Title: Contract Cyber Security AnalystLocation: Washington, DCPosition Type: ContractDuration: 6 Month Contract with possibility of extension Start Date: ASAPJob Summary:As a Contract Cyber Security Analyst, you will be responsible for strengthening our client's cybersecurity defenses and protecting their digital assets against evolving cyber threats....


  • Washington, United States Robert Half Full time

    Job Title: Contract Cyber Security AnalystLocation: Washington, DCPosition Type: ContractDuration: 6 Month Contract with possibility of extension Start Date: ASAPJob Summary:As a Contract Cyber Security Analyst, you will be responsible for strengthening our client's cybersecurity defenses and protecting their digital assets against evolving cyber threats....


  • Washington, United States Robert Half Full time

    Job Title: Contract Cyber Security AnalystLocation: Washington, DCPosition Type: ContractDuration: 6 Month Contract with possibility of extension Start Date: ASAPJob Summary:As a Contract Cyber Security Analyst, you will be responsible for strengthening our client's cybersecurity defenses and protecting their digital assets against evolving cyber threats....


  • Washington, United States Bering Straits Native Corporation Full time

    Intrusion detection. Cyber incident response. Perform cyber investigations and analysis. Cross-train and mentor other staff members. Ability to proficiently utilize the client's wide variety of security tools including:Arc. Sight HP - Akamai Web Appl Security Analyst, Security, Analyst, Cyber, Manufacturing, Technology, Network


  • Washington, United States Enlightened, Inc. Full time

    Job DescriptionJob DescriptionSenior Cyber Security AnalystAre you passionate about Cyber Security and looking to contribute to meaningful projects that impact our Nation and communities? If so, we are ready to Enlightened you! This is an excellent opportunity to use critical thinking to bring together information from multiple sources to determine if a...


  • Washington, United States Node.Digital Full time

    Security Splunk Architect/Engineer Location: Washington DC metro area (Hybrid) Must have an active Secret OR Top Secret Clearance We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk...


  • Washington, United States Node.Digital Full time

    Job DescriptionJob DescriptionSecurity Splunk Architect/EngineerLocation: Washington DC metro area (Hybrid)Must have an active Secret OR Top Secret ClearanceWe are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance...


  • Washington, United States Node.Digital Full time

    Security Splunk Architect/Engineer Location: Washington DC metro area (Hybrid) Must have an active Secret OR Top Secret Clearance We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk...


  • Washington, United States cFocus Software Incorporated Full time

    cFocus Software is seeking a Cybersecurity Systems Engineer to join our program in Washington, DC. This position requires an active TS/SCI CI Poly clearance. Position Requirements: Active TS/SCI with CI Polygraph required. The Cybersecurity Engineer shall perform, or review, technical security assessments of computing environments to identify points of...


  • Washington, United States cFocus Software Incorporated Full time

    cFocus Software is seeking a Cybersecurity Systems Engineer to join our program in Washington, DC. This position requires an active TS/SCI CI Poly clearance. Position Requirements: Active TS/SCI with CI Polygraph required. The Cybersecurity Engineer shall perform, or review, technical security assessments of computing environments to identify points of...