Threat Modeling Engineer

3 weeks ago


McLean, United States Technology Ventures Full time

Must Have: 3+ Threat models, sprints in agile development, Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

Preferred: CCSP(Certified Cloud Security Professional), OSCP( OffSec Certified Professional), Able to provide references to CVEs filled, Create and find threats.


Senior Threat Modeling Architect to join our Information Security Architecture team. The Senior Threat Modeling Engineer will partner closely and collaboratively with Enterprise Architecture (EA), Developers, Platform Owners, and other areas of the firm to help ensure provides secure services and solutions.


Duties and Responsibilities:

• Assess Security Risk from an Architectural Perspective and Apply a Risk-Based Approach to Security

• Generate application treat models in a quick paced environment

• Manage workloads using Kanban methodologies to estimate and track task deliveries

• Mentor, assist, and share your expertise with team members

• Attend regular standups and team meetings

• Identify and be able to explain security weaknesses to a variety of audiences to include but not limited to software development teams

• Hold brown bag sessions to educate developers on the value and benefit that they and the firm derive by identifying threats early

• Develop training material for how to engage the Threat Management service, make use of technologies, and interpret findings.

• Drive beneficial security change into the business through supporting Developers with creation of threat models for their applications and remediation of potential threats, balancing risk against business need.

• Support the Security Architecture team to develop and mature an Application Threat Modeling Program by defining processes, procedures, controls, KRI’s/KPI’s, etc., that identify threats early in the development process reducing risks prior to deployment.

• Work with the InfoSec functional teams in the development of the Information Security strategy and roadmap, including and with focus on Threat Modeling; liaison and consult with Enterprise Architecture, IT and the business for ongoing input and awareness

• Advise and Contribute to Strategy and Roadmaps


Qualifications:

• Strong understanding of access controls and authentication mechanisms, PKI, and cryptography

• Demonstrated experience developing technical threat models

• Demonstrated experience performing security code reviews and explaining results to project teams

• Previous or active experience with bug bounty programs

• Experience working in Sprint or Agile environments

• Strong understanding of protocols, networking, firewalls, caching, VIPs, proxies, web applications, and database systems

• Experience with AWS and Azure or working knowledge of GCP

• Knowledge of several of the following programming languages; Java, C#, Python, C++, Node.JS, JavaScript

• Knowledge in one or several of the following Frontend frameworks; React, Angular, Ember, Vue

• Minimum of 3 years’ experience working as an Information Security Threat Modeling subject matter expert at a senior level

• Minimum of 5 years’ experience working as an Information Security Professional, preferably within the architecture or engineering disciplines

• Passion for leading change and ability to bring others along

• (Desirable) Able to provide references to CVEs filled, Bug Bounty Username, or GitHub repositories

• (Desirable) One or more security-related certifications associated with AWS, GCP, or Azure

• (Desirable) CISSP (+ ISSAP), CCSP, CEH, OSCP, CSSLP



  • McLean, United States Virpie Tech Full time

    Candidates MUST have an active Internal Revenue Service MBI clearance (IRS laptop & badge preferred) Cloud Engineer for Azure with Terraform experience. The client wants to establish a new Azure landing zone and want a cloud engineer to write/update Terraform scripts for executionCloud Network Engineer AWS. Strong network engineer with deep understanding and...


  • McLean, United States Virpie Tech Full time

    Candidates MUST have an active Internal Revenue Service MBI clearance (IRS laptop & badge preferred) Cloud Engineer for Azure with Terraform experience. The client wants to establish a new Azure landing zone and want a cloud engineer to write/update Terraform scripts for executionCloud Network Engineer AWS. Strong network engineer with deep understanding and...


  • McLean, United States Associates Systems LLC Full time

    All qualified resumes responded to in 24hrs Applicants must have an active Top Secret clearance Work locations are at DARPA in the Ballston area of Arlington, VA and at the Pentagon with opportunities for situational telework. Primary responsibilities are to: Coordinate with appropriate stakeholders and leverage available tools, processes, and forums to...


  • McLean, United States Gridiron IT Full time

    Gridiron IT is seeking a Senior Network and Computer Systems Administrator/SOC Analyst to support a federal program in Washington, DC. Required Education: Bachelor's Degree in Engineering, Technology, or Management. The successful candidate must possess a minimum of BA/BS degree Required Experience: 7 years experience in Network/Computer Systems Admin and/or...


  • McLean, United States JobRialto Full time

    Description: This position will be supporting the Applied Cryptography team within the Information Security Engineering department within the Information Security Unit of the Information Technology Division. This position is primarily responsible for providing administration and engineering support of the encryption-at-rest services within our client's...


  • McLean, United States Technology Ventures Full time

    Cyber Security Engineer Senior - The candidate expectations are a follows: • Collaborate with Information Security Leads to implement and support existing data encryption services within private and public cloud environments. • Perform the planning, design, implementation and Level 3 support of IT Security solutions related to data-at-rest encryption...

  • Software Engineer

    1 week ago


    McLean, United States Cad Crowd - hire 3D modeling, CAD services and freelance engineering for companies. Full time

    Overview:We seek a dedicated Software Engineer to join a long-term program supporting a national security initiative. The successful candidate will be responsible for designing and developing innovative software products, providing robust maintenance and support for existing systems, and effectively troubleshooting complex issues. This role requires...

  • Software Engineer

    1 week ago


    McLean, United States Cad Crowd - hire 3D modeling, CAD services and freelance engineering for companies. Full time

    Overview:We seek a dedicated Software Engineer to join a long-term program supporting a national security initiative. The successful candidate will be responsible for designing and developing innovative software products, providing robust maintenance and support for existing systems, and effectively troubleshooting complex issues. This role requires...


  • McLean, United States Capital One Financial Corporation Full time

    You will:Partner with a cross-functional team of data scientists, software engineers, and product managers to deliver a product customers love. Leverage a broad stack of technologies Python, Conda, AWS, H 2 O, Spark, SQL and more to reveal the in Data Scientist, Modeling, Associate, Data Science, Principal, Scientist, Banking

  • Data Engineer

    2 weeks ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area. About Infinitive: Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...

  • Data Engineer

    1 month ago


    McLean, United States Infinitive Full time

    *Candidates must be local to the Washington D.C. metro area.About Infinitive:Infinitive is a data and AI consultancy that enables its clients to modernize, monetize and operationalize their data to create lasting and substantial value. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and...


  • McLean, United States Peacefestival Full time

    Opportunities for Elasticsearch Engineer in McLean, VA Remote positions only Search completed. Found 0 matching records. Opportunities for Elasticsearch Engineer in McLean, VA Remote positions only Search completed. Found 0 matching records. Elasticsearch Engineer Leading Path The Software Engineer will design, develop, configure, support, and maintain...

  • Data Engineer

    2 weeks ago


    McLean, United States Tandym Group Full time

    An education tech services company in Virginia is currently seeking a new Data Engineer for a promising opportunity with their growing staff. In this role, the Data Engineer will be responsible for the design, structure, and maintenance of data. ***This is a Hybrid opportunity requiring the qualified professional to work onsite at least 2 days a week.*** ...

  • AI\/ML Engineer

    2 weeks ago


    McLean, United States Smart Synergies Full time

    JOB DESCRIPTION The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...


  • McLean, United States Cognitio Corp Full time

    Job Description The AI/ML Engineer will develop algorithms, write scripts, build predictive analytics, use automation, apply machine learning and use the right combination of tools and frameworks to turn a set of data points into objective answers to help senior leadership make informed decisions. The Data Scientist will apply data mining techniques perform...


  • McLean, United States Cornerstone Defense Full time

    Location: McLean, Virginia Type: Contract Job #3091 Title: Machine Learning Engineer Location: McLean, VA *Clearance: *Active TS/SCI w/ Polygraph needed to apply * Company Overview: Cornerstone Defense is the Employer of Choice within the Intelligence, Defense, and Space communities of the U.S. Government. Realizing early on that our most prized...

  • Senior Engineer

    2 weeks ago


    McLean, United States Associates Systems LLC Full time

    Responsibilities: As the Senior Engineer , you will lead the planning and execution of complex mission and systems analysis efforts to support the Office of the Undersecretary of Defense for Research and Engineering (OUSD(R&E) Assistant Secretary of Defense for Mission Capabilities (ASD(MC)) and the Deputy Assistant Secretary of Defense for Multi-Domain...

  • Software Engineer

    4 days ago


    McLean, United States Altamira Technologies Full time

    Description Altamira Technologies is seeking Software Engineers to join our world-class Space Systems engineering team in the Northern Virginia, Washington DC Metro Area. As a candidate for this opportunity, you should have a good foundation in object-oriented software development and be experienced working in a LINUX or UNIX environment. The candidate...


  • McLean, United States Steampunk Full time

    Overview: **Steampunk** is a proven, results-focused cybersecurity, management, and information technology services firm committed to support federal agencies that focus on protecting and defending our nation’s homeland security, intelligence, and stability. In a rapidly changing threat landscape, we have the organizational agility, deep homeland security...