Mc Lean, VA, 22102, USA
9 days ago
Remote Veracode Security Engineer
Job Description Work together with the client and application community to maintain a resilient security posture for highly visible applications. Remediate application security flaws in conjunction with the application security team. Lead security discussions with the application teams to prescribe security best practices within their development lifecycle. Perform dynamic and static application performance testing, perform security requirements creation or generation-level threat modeling leveraging tools, including SD Elements, and perform application-level testing using applications such as Burp Suite. Work with the latest OWASP frameworks. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com .     To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/ . Skills and Requirements 6+ years of Information Technology experience  3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode  2+ years of experience with Java, Python, .NET, or C#  3+ years of experience with Burp Suite  3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services  Experience with Eclipse, JDeveloper, including pipeline development, or Visual Studio  Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25  Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP  Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic website connectivity issues  Ability to obtain a security clearance  HS diploma or GED There are specific areas they should be familiar with if they have really worked heavily with maintaining a Veracode system. From your end, if you can just confirm they have worked with maintaining the system. We would prefer to handle getting into the weeds on our end. Also, something to include when vetting candidates, really need to have solid Unix experience. · Static (SAST) and Dynamic (DAST) scanning, preferably using Veracode, but we are considering candidates with experience using other applications to perform SAST and DAST · Interactive (IAST) scanning is not a must but a really nice to have. The application we use for this is Contrast · Python scripting experience · Need experience with Linux/Unix, proficient using Linux / Unix command line. A nice to have is experience with putting together Linux / Unix scripts -Experience with putting together Linux / Unix scripts null We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to HR@insightglobal.com.
Confirm your E-mail: Send Email