Information Security SME

1 week ago


Arlington, VA, United States Nava Software Solutions Full time
NAVA Software solutions is looking for an Information Security SME

Details:

Information Security SME

Location: Arlington Virginia - Hybrid 3 days a week onsite

Duration: 12 months

What You'll Do
  • Collaborate with software development, system engineering and security architect peers to continually improve the security posture of applications and ensure the proper implementation of the security controls.
  • Innovate new application security testing methods and support team effort to leverage tools and develop effective process to automate the security test cases.
  • Serves as a Subject Matter Expert (SME) in web application security for organizational projects during the application development phase.
  • Provide guidance, support, testing and recommendations to ensure secure application release. Configure, run and monitor automated security testing tools
  • Perform manual validation of vulnerabilities Perform manual penetration testing of Web applications, Mobile applications, Thick clients and APIs
  • Thoroughly document exploit chain/proof of concept scenarios for internal client consumption
These skills will help you succeed in this role:
  • A degree or certificate in management information systems, cyber security, mathematics, computer science or related field or 7+ years of relevant information security experience
  • Experience in security testing web applications, API and mobile platforms manually.
  • Familiarity with vulnerability assessment, remediation and penetration testing best practices
  • Experience using Burp Suite and its extensions in penetration testing Development experience, working knowledge of Java.
  • Excellent analytical and debugging skills. Excellent communication skills
Even Better If You Have
  • Have or desire to obtain one or more security-related certifications such as Certified Information Systems Security Professional (CISSP), GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT), GIAC Certified Incident Handler (GCEH), Offensive Security Certified Expert (OSCE), and Offensive Security Certified Professional (OSCP)
  • Experience with Linux operating systems Experience with Mobile application programming
  • Experience with Web application technologies
  • Experience with Source code analysis software
  • Experience with Cloud Security (Azure/AWS Security Controls)
  • Experience with Scripting languages (preferably Python)

  • ISSO SME

    2 weeks ago


    Arlington, VA, United States Quadrant Full time

    ISSO SMERosslyn, VAPay From: $155,000 Per YearMUST ISSO SME TS/SCI active DOD DoD 8570/8140 IAT Level III certification Twelve (12) years of experience as an ISSO or senior cybersecurity compliance professional Deep understanding of RMF (NIST SP 800-37), NIST 800-53 controls, and ATO processes and documentation. Hands-on experience with compliance automation...

  • ISSO SME

    5 days ago


    Arlington, VA, United States Quadrant Full time

    ISSO SMERosslyn, VAPay From: $155,000 Per YearMUST ISSO SME TS/SCI active DOD DoD 8570/8140 IAT Level III certification Twelve (12) years of experience as an ISSO or senior cybersecurity compliance professional Deep understanding of RMF (NIST SP 800-37), NIST 800-53 controls, and ATO processes and documentation. Hands-on experience with compliance automation...

  • ISSO SME

    1 week ago


    Arlington, VA, United States Quadrant Full time

    ISSO SMERosslyn, VAPay From: $155,000 Per YearMUST ISSO SME TS/SCI active DOD DoD 8570/8140 IAT Level III certification Twelve (12) years of experience as an ISSO or senior cybersecurity compliance professional Deep understanding of RMF (NIST SP 800-37), NIST 800-53 controls, and ATO processes and documentation. Hands-on experience with compliance automation...

  • ISSO SME

    7 days ago


    Arlington, VA, United States Quadrant Full time

    ISSO SMERosslyn, VAPay From: $155,000 Per YearMUST ISSO SME TS/SCI active DOD DoD 8570/8140 IAT Level III certification Twelve (12) years of experience as an ISSO or senior cybersecurity compliance professional Deep understanding of RMF (NIST SP 800-37), NIST 800-53 controls, and ATO processes and documentation. Hands-on experience with compliance automation...


  • Arlington, VA, United States Booz Allen Hamilton Full time

    Job Number: R0225011Information Systems Security Officer The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the Army. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is an information security...


  • Arlington, VA, United States Booz Allen Hamilton Full time

    Job Number: R0225011Information Systems Security Officer The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the Army. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is an information security...


  • Arlington, VA, United States Booz Allen Hamilton Full time

    Job Number: R0225011Information Systems Security Officer The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to the Army. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is an information security...


  • Arlington, VA, United States Technomics Full time

    Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior level policy makers to program managers, to choose smartly, buy effectively and operate efficiently. We deliver practical,...


  • Arlington, VA, United States Technomics Full time

    Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior level policy makers to program managers, to choose smartly, buy effectively and operate efficiently. We deliver practical,...


  • Arlington, VA, United States Technomics Full time

    Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior level policy makers to program managers, to choose smartly, buy effectively and operate efficiently. We deliver practical,...