Today
Top Secret/SCI
Unspecified
Unspecified
IT - Security
Washington, DC (On-Site/Office)
GCyber is hiring a Senior Application Security Analyst to support a high-profile Government customer in Washington, DC.
The role involves enforcing security best practices like the OWASP Top 10 to ensure secure development. You'll conduct static and dynamic application security testing on cloud applications to identify vulnerabilities. You'll also provide guidance to developers on improving code quality, managing secrets, and securing dependencies.
As the Senior Application Security Analyst, your responsibilities include:
Minimum Qualifications and Experience:
The role involves enforcing security best practices like the OWASP Top 10 to ensure secure development. You'll conduct static and dynamic application security testing on cloud applications to identify vulnerabilities. You'll also provide guidance to developers on improving code quality, managing secrets, and securing dependencies.
As the Senior Application Security Analyst, your responsibilities include:
- Enforce security best practices (e.g., OWASP Top 10).
- Apply your expertise in application security to perform application security testing on portfolio of cloud applications (e.g., static / dynamic)
- Review developer findings and validate proposed fixes.
- Provide security guidance to developers on code, secrets, and dependencies.
- Ensure timely action on vulnerabilities identified in testing.
- Support secure and compliant application development.
- Perform ad-hoc risk assessments on applications.
Minimum Qualifications and Experience:
- Active TS/SCI clearance
- BA/BS Degree in Information Technology, Cybersecurity, or a related field (6 years additional experience may be substituted for a degree)
- 7+ years of experience including hands on knowledge and experience performing application security assessments.
- DoD 8570 IAT II Certification (Security+, CySA+, CCNA-Security, CND, GICSP, GSEC, SSCP)
- Excellent verbal and written communication skills.
- Experience drafting and/or supporting the development of cybersecurity policies in Federal Government environments.
- Proactive and solutions-oriented, willing to take initiative to recommend and collaborate across functional teams execute improvements
group id: 90817175