Security Engineer (Web Application)
Description
gTANGIBLE Corporation (gTC), www.gtangible.com, is a C corporation and a registered Government contractor that provides services and solutions in:
- National Security Programs
- Professional, Administrative, and Management Support
- Mission and Warfighter Support
We are a Service-Disabled Veteran-Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLEis in the processof identifying candidates for the following position.
Requisition Type:Full Time
Position Status: Contingent
Position Title: Security Engineer (Web Application)
Location:Arlington, VA
Security Clearance: Secret
Duties and Responsibilities
The Security Engineer (Web Application)supports thisTransportation Security Administration Information Technology (TSA IT) Task Order (TO) by web application testing that require testing both via automated tools and with manual testing techniques. Application testing will require authenticated and non-authenticated testing to ensure full evaluation of the cybersecurity controls for the applications.Off hours testing conducted on a as needed basis. Periodic travel required. Duties include the following:
- Identifies flaws in business logic, programmatic vulnerabilities and weaknesses, and ensures appropriate and consistent risk levels are assigned to such findings.
- Identifies policy gaps, deficiencies and recommends updates, additions, and modification to TSA security policy.
- Conducts security testing of web applications, web services, end points, (and other web-related assets) using both Information Assurance & Cybersecurity Division (IAD)-provided automated testing tools and manual testing techniques.
- Analyzes and validates test results and removes false positives and submits to stakeholders.
- Participates with stakeholders regarding findings meetings and responses.
- Provides Subject Matter Expertise on emerging web and mobile technologies, languages, and frameworks. In addition, also provide and support on external security audits conducted of the TSA.
Knowledge and Qualifications
- At least ten (10) years of technical IT security experience.
- At least five (5) years of experience performing web application security testing, software development and/or testing.
- At least three (3) years of experience performing web application security testing using manual techniques and vulnerability testing tools and/or code review tools for Federal IT systems.
- Ability to work independently/minimal oversight.
- Experience with manual web security testing techniques.
- Strong understanding of NIST SP 800-53 and DISA STIGS.
- Required Certifications: CISSP, CEH, GWAPT or other relevant certifications.
- Experience with WebInspect, AppScan, BurpSuite, SmartBear SoapUI, Nessus Professional, HP Fortify, Apple Developers Toolkit, Eclipse, and Wireshark.
- Strong organizational, analytical, and technical writing skills to be able to document findings in reports.
gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.
Recommended Jobs
CMM Operator/Dimensional Inspector
CMM Programmer/Dimensional Inspector Eagle Technologies, LLC (Newport News, VA) is seeking a qualified CMM Operator/Inspector. Eagle Technologies is a small business who designs and manufactures a…
Senior Software Developer Mobile/RE HYBRID!
Be Challenged and Make a Difference In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatch…
Rental Insurance Escrow Analyst
Rental/Insurance Escrow Analyst Employment Type: 6-Month Contract Location: Hybrid - Glen Allen, VA Portfolio: Rental Housing Job Overview We are seeking a meticulous and analytical…
DOW - Technical Writer
cFocus Software seeks a Technical Writer to join our program supporting the Department of Defense (DoD). This position is remote. This position requires the ability a Public Trust clearance. Qualif…
Production Equipment Operator — Door Manufacturing
Step into a day on our door line You clock in at 3:00 p.m. at 280 Donovan, Stanley, VA. On any given evening, you might start by loading raw materials, rotate to an assembly station to craft compone…
Guest Experience Team Lead - VA
Original X Productions are the operators of worldwide location-based entertainment experiences including The FRIENDS™ Experience, and Hershey Super Sweet Adventure. We are looking for staff who are p…
Office of Youth, Campus, And Young Adult Ministries Intern
Office of Youth, Campus, and Young Adult Ministries Intern The primary function of the Office of Youth, Campus, and Young Adult Ministries (OYCYAM) intern is to assist the office with the preparation …
Biomed Technician
Biomedical Technician Location: Hybrid (Virginia Beach) - 50% Travel Compensation: up to $33/hour + Bonus + Equity Start Date: ASAP Scientific Safety Alliance Scientific Safety Allia…
MCTSP Program Technical Analyst (PTA) - Arlington, VA
Public Trust: None Requisition Type: Pipeline Your Impact Own your opportunity to work with the largest government agency in the nation. Make an impact by advancing the Department of Defen…
Electrical Installation Technician
Job Title: Overhead Crane Installation Technician Location: Ashland (local shop) + Travel Job Type: Full-Time Travel: Approximately 50% (nationwide/regional, primarily driving to job sites)…