Defense Point Security
  • Washington, DC, USA
  • Salary
  • Full Time

Benefits: See Below


Do you want to work for a company that is passionate about security and has a fun, start-up culture with large company perks? Do you want to be in an environment where you will continuously learn new skills, grow and take on new opportunities due to the abundance of new projects on the horizon?

If you answered yes to these questions, this opportunity could be for you! 

Defense Point Security is currently seeking a Security Code Reviewer in Washington, D.C.

Job Responsibilities:

  • Conduct web application and code testing for all systems and applications, and open source dependencies, providing analysis and risk assessments for vulnerabilities discovered
  • Utilize code analysis and fuzzing tools that are furnished or approved by the Government to assess the quality and security of source code
  • Define secure coding standards and develop secure coding training for current and future developers
  • Conduct code reviews for all code changes for a given application release, providing both a detailed risk analysis of the security posture of the code and technical programming solutions (secure coding standards) to the developers to mitigate insecure code from being implemented
  • Apply the DoD-DHS Software Assurance Forum guidance to Systems Lifecycle
  • Process, software development, and engineering principles
  • Provide a monthly report on the overall quality of source code from a security perspective. This report shall include reports of quality by project and/or development team and shall include trend analysis to identify the number of new defects introduced per release, defects remediated in each release, and trends in the types of defects introduced and remediated
  • Provide DevOps evaluation, implementation, and operations support for USCIS static and dynamic code analysis tools (currently HPe WebInspect Enterprise, and HPe Fortify). This includes user account and access management, server management, monitoring, patching, version upgrades, and integration with continuous integration/continuous delivery pipelines
  • The contractor shall assist the government in performing market research to identify and implement new tools that provide better code analysis or support languages not currently support by current toolsets

Job Qualifications:

  • This position requires US Citizenship due to our Federal contractual obligations
  • Bachelor's degree in Computer Science, Information Management or Engineering
  • 7 years of experience in performing software development
  • 3 years of experience performing security code reviews
  • 2 years experience utilizing HPe Fortify or other static and dynamic code scanning tools to perform security assessments
  • At least 1of the following active certifications: EC-Council Certified Secure Programmer, Certified Secure Software Lifecycle Professional (CSSLP), SANS Global Information Assurance Certification (GIAC) Secure Software Programmer (.NET or JAVA), HP ATP Fortify Security V1
  • Deep understanding of secure coding concepts and practices, skilled in writing and correcting coding mistakes for source code written in Java, Ruby, C#, Javascript, and other languages
  • Proficiency in analyzing and testing web applications developed in at least 2 of the following languages listed below, and in combination, the team must have a proficiency in all of the following languages: Java, JavaScript, Ruby, C#
  • Knowledge of the latest security threats, techniques and exploits targeting vulnerabilities
  • Strong familiarity with multiple operating systems, databases, applications and platforms
  • Cyber-threat research, reporting and development/implementation of vulnerability mitigation strategies
  • Experience with network, web, and information security
  • Knowledge of common IT technologies (OS, databases, network devices, applications)

 

 

Job Location: Washington, D.C.

Position Type: Full Time/ Regular

All candidates must be clearable.

To see other locations please see the Security Engineering Career Menu on defpoint.com

 

Defense Point Security is an IT Security Consulting firm specializing in public and private sector security solutions.  Our goal is to provide expert IT security services to our clients while cultivating information security knowledge among all employees for the advancement of cyber security.  Defense Point Security offers a competitive employment package including medical, vision, and dental insurance (among others).

Defense Point Security offers a competitive benefits package to include:

  • Medical, Dental, Vision Insurance Premiums are 100% paid by DPS for employee and eligible dependents
  • Personal Accident Insurance paid by DPS
  • Life Insurance paid by DPS
  • Short and Long Term Disability Insurance paid by DPS
  • 401k Contribution Matching and 100% vested after 90 days
  • Flexible Spending Accounts 
  • Commuter Assistance
  • Paid Time Off starting at 3 weeks a year (15 days)
  • 10 paid Federal Holidays
  • Up to $100 per month reimbursed for cell phone
  • Up to $50 per month reimbursed for home internet
  • Up to $200 every 2 years for a cell phone upgrade
  • Capital BikeShare Membership for DC Metro Area
  • Reimbursement for qualifying training expenses
  • Flexible / Alternative Work Schedules

 

Defense Point Security is an Equal Opportunity / Affirmative Action Employer. We are committed to hiring and retaining a diverse Community workforce. DPS gives equal consideration to all qualified candidates without regard to race, color, religion, creed, gender identity, national origin, sex, pregnancy, marital status, age, sexual orientation, disability, veteran status, or any other protected class.

 
Defense Point Security
  • Apply Now

    with our quick 3 minute Application!

  • * Fields Are Required

    What is your full name?

    How can we contact you?

    If you do not agree, you will not be able to receive text messages from this employer.
  • Sign Up For Job Alerts!

  • Share this Page
  • Facebook Twitter LinkedIn Email
.
Logo Home Corporate Info Services R&D DPS News Careers Search