About the job
Job Description:
The Software Security Engineer is a vital role responsible for ensuring the security, integrity, and compliance of various custom mission-critical applications undergoing modernization and ongoing maintenance. This engineer offers expert advice on secure software design, performs code analysis, mitigates vulnerabilities, and implements secure development lifecycle practices.
Work you'll do:
- Lead software security engineering efforts for the modernization and maintenance of custom applications.
- Conduct secure code reviews, vulnerability assessments, and security architecture evaluations.
- Implement and enforce secure SDLC processes and automation in collaboration with development teams.
- Ensure adherence to NIST RMF, FISMA, and agency-specific security policies.
- Support risk assessments, incident responses, and the preparation of security documentation and ATO artifacts.
Here's what you'll need:
- CISSP certification
- Over 10 years of experience in software security engineering, particularly in:
- Securing custom or legacy software systems
- Secure coding practices
- Federal security frameworks
- AWS GovCloud
- DevOps
Security clearance:
- Active TS/SCI security clearance is required

