Threat Modeling Engineer

3 weeks ago


McLean, United States Technology Ventures Full time

Must Have: 3+ Threat models, sprints in agile development, Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

Preferred: CCSP(Certified Cloud Security Professional), OSCP( OffSec Certified Professional), Able to provide references to CVEs filled, Create and find threats.

Senior Threat Modeling Architect to join our Information Security Architecture team. The Senior Threat Modeling Engineer will partner closely and collaboratively with Enterprise Architecture (EA), Developers, Platform Owners, and other areas of the firm to help ensure provides secure services and solutions.

Duties and Responsibilities:

Assess Security Risk from an Architectural Perspective and Apply a Risk-Based Approach to Security

Generate application treat models in a quick paced environment

Manage workloads using Kanban methodologies to estimate and track task deliveries

Mentor, assist, and share your expertise with team members

Attend regular standups and team meetings

Identify and be able to explain security weaknesses to a variety of audiences to include but not limited to software development teams

Hold brown bag sessions to educate developers on the value and benefit that they and the firm derive by identifying threats early

Develop training material for how to engage the Threat Management service, make use of technologies, and interpret findings.

Drive beneficial security change into the business through supporting Developers with creation of threat models for their applications and remediation of potential threats, balancing risk against business need.

Support the Security Architecture team to develop and mature an Application Threat Modeling Program by defining processes, procedures, controls, KRI's/KPI's, etc., that identify threats early in the development process reducing risks prior to deployment.

Work with the InfoSec functional teams in the development of the Information Security strategy and roadmap, including and with focus on Threat Modeling; liaison and consult with Enterprise Architecture, IT and the business for ongoing input and awareness

Advise and Contribute to Strategy and Roadmaps

Qualifications:

Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

Demonstrated experience developing technical threat models

Demonstrated experience performing security code reviews and explaining results to project teams

Previous or active experience with bug bounty programs

Experience working in Sprint or Agile environments

Strong understanding of protocols, networking, firewalls, caching, VIPs, proxies, web applications, and database systems

Experience with AWS and Azure or working knowledge of GCP

Knowledge of several of the following programming languages; Java, C#, Python, C++, Node.JS, JavaScript

Knowledge in one or several of the following Frontend frameworks; React, Angular, Ember, Vue

Minimum of 3 years' experience working as an Information Security Threat Modeling subject matter expert at a senior level

Minimum of 5 years' experience working as an Information Security Professional, preferably within the architecture or engineering disciplines

Passion for leading change and ability to bring others along

(Desirable) Able to provide references to CVEs filled, Bug Bounty Username, or GitHub repositories

(Desirable) One or more security-related certifications associated with AWS, GCP, or Azure

(Desirable) CISSP (+ ISSAP), CCSP, CEH, OSCP, CSSLP



  • McLean, United States Booz Allen Hamilton Full time

    Cyber Threat Intelligence Analyst, Senior Key Role: Analyze a variety of information and intelligence relevant to the threats facing the systems, assets, and resources critical to the nation, and develop research studies and recommendations. Serve as liaison to the firm’s intelligence sharing partnerships and interface with both government and...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0198124 Cyber Threat Intelligence Analyst, Senior Key Role: Analyze a variety of information and intelligence relevant to the threats facing the systems, assets, and resources critical to the nation, and develop research studies and recommendations. Serve as liaison to the firm's intelligence sharing partnerships and interface with both...


  • McLean, United States Technology Ventures Full time

    Location: Hybrid - Onsite in McLean OR Plano, TX Tuesday through Thursday; Open to Remote - prefers local candidatesAssignment Type: Contract Only - Possible ConversionMust Haves: 5+ years of of relevant experience in IT Security. Must have hands-on experience with Cloudflare implementing API security. One must have deep understanding of cryptography...


  • McLean, United States Technology Ventures Full time

    Location: Hybrid - Onsite in McLean OR Plano, TX Tuesday through Thursday; Open to Remote - prefers local candidatesAssignment Type: Contract Only - Possible ConversionMust Haves: 5+ years of of relevant experience in IT Security. Must have hands-on experience with Cloudflare implementing API security. One must have deep understanding of cryptography...

  • Zscaler Engineer

    1 day ago


    McLean, United States Booz Allen Hamilton Full time

    Job Number: R0196882 Zscaler Engineer The Opportunity: Are you looking for an opportunity to share your experience in security systems to support our country? As a systems security and network security engineer, you can identify the tools needed to assess vulnerabilities and recommend the best solution and security strategy. We need your experience to lead...

  • Splunk Engineer

    19 minutes ago


    McLean, United States Easy Dynamics Corporation Full time

    Ready to embark on a transformative journey in cybersecurity? At Easy Dynamics, we're at the forefront of industry innovation, from pioneering zero trust architecture to mastering cloud delivery. As a Splunk Engineer, your role entails crafting, executing, and upholding intricate Splunk setups for diverse clientele. Collaboration with fellow technical team...


  • McLean, United States Compunnel Full time

    Description: This position will be supporting the Applied Cryptography team within the Information Security Engineering department within the Information Security Unit of the Information Technology Division. This position is primarily responsible for providing administration and engineering support of the encryption-at-rest services within our clients...


  • McLean, United States Harmonia Full time

    Harmonia Holdings Group, LLC is an award-winning minority and female owned federal government contractor committed to providing innovative, high-performing solutions to our government clients and focused on fostering a workplace that encourages growth, initiative, creativity, and employee satisfaction. We have an exciting opportunity for a Large Language...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0193177 Reverse Engineer and Security Researcher Key Role: C ond uct testing and analysis to identify vulnerabilities and potential threat vectors into systems and networks, develop exploits, and engineer attack methodologies.Apply basic principles, theories, and concepts, including limited industry knowledge. Solve routine problems of limited...


  • McLean, United States Wells Fargo Full time

    About this role: Wells Fargo is seeking a... In this role, you will: Lead computer security incident response activities for highly complex events Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies Provide security consulting on large projects...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...

  • AI/ML Engineer

    7 days ago


    McLean, United States Smart Synergies Full time

    JOB DESCRIPTION The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...


  • McLean, United States Cognitio Corp Full time

    Job Description The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...

  • Senior Engineer

    3 weeks ago


    McLean, United States Associates Systems LLC Full time

    Responsibilities: As the Senior Engineer , you will lead the planning and execution of complex mission and systems analysis efforts to support the Office of the Undersecretary of Defense for Research and Engineering (OUSD(R&E) Assistant Secretary of Defense for Mission Capabilities (ASD(MC)) and the Deputy Assistant Secretary of Defense for Multi-Domain...

  • Systems Engineer

    17 hours ago


    McLean, United States Bridge Core Full time

    Overview: Systems Engineer - Data Analysis Herndon, VA TS/SCI FS Poly Bridge Core provides high energy, unified teams; technology integration experience; and innovative approaches, to enable our clients’ mission. We enable our clients’ mission by integrating innovative technologies and implementing adoption processes that modernize the digital workplace....


  • McLean, United States Meazure Learning Full time

    Meazure Learning We are leading the transformation of the assessment industry, making it easy for anyone to safely and securely get educated, trained, or certified. View company page At Meazure Learning , we aim to empower open-minded, inquisitive, and driven people, and we love how each new addition to the team adds to our culture. Here, you can positively...

  • Network Engineer

    21 hours ago


    McLean, United States Torin Consulting, Inc. Full time

    CLEARANCE: Active TS/SCI with Polygraph required to apply Torin is seeking a qualified Network Engineer responsible for maintaining the design and the integrity of the customer's complex internal network, including customer-facing hosted and cloud environments. They will provide expert technical assistance to team members with high-level system and...


  • McLean, United States Booz Allen Hamilton Full time

    Job Number: R0198420Mechanical Engineer Key Role: Apply engineering physics, engineering mathematics, and materials science principles to support the design, analysis, manufacture, or maintenance of mechanical systems. Apply specific functional, working, and general industry knowledge. Develop or contribute to solutions to a variety of problems of moderate...


  • McLean, United States CodeHunter Full time

    Job DescriptionJob DescriptionAre you a cybersecurity enthusiast driven by the curiosity to dissect and understand malware's inner workings? Do you excel at staying ahead of cybercriminals and identifying emerging cyber threats? If this resonates with you, then CodeHunter offers the ideal platform for you to showcase your skills. As a Malware Reverse...