Senior Software Engineer IRES - SSFB/HSV

United States-Colorado-Colorado Springs-20348-CSP1

Amentum

Explore Amentum's commitment to global government and private-sector solutions. Learn about our global mission to drive mission success.

View all jobs at Amentum

Senior Software Engineer IRES - SSFB/HSV - (ADV0009AV) 

Your Impact:

 

Position Title: Senior Software Engineer

Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL

Relocation Assistance: None available at this time

Remote/Telework: NO - Not available for this position

Clearance Type: DoD Secret 

Shift: Day shift (Mon-Fri)

Travel Required: Up to 10% of the time

#cjpost

Description of Duties:

The Senior Software Engineer supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will:

 

·       Provide Management, Mentorship, and Leadership of other members of the Software Engineering Team.

·       Prioritize and assign work to members of the team.

·       Coordinate and communicate with customers managing expectations and ensuring a high level of customer satisfaction is achieved and maintained.

·       Perform software security audits identifying risks associated with software and provide a comprehensive security assessment for the MDA IC ISSM. This will include known vulnerabilities published to the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD).

·       Discover and compile a list of dependencies/bill of materials for software being audited.

·       Use of various tools to discover vulnerabilities within a software application.

·       Use various programming/scripting/query languages to correlate industry best practices for secure software development.

·       Identify common security issues including input validation, error and exception handling, logging, access controls, SQL

·       Injection, cross-site scripting (XSS), etc. and articulate how to mitigate or reduce their impact.

·       Help correlate Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) vulnerabilities and other policies with vulnerabilities discovered and documenting them to be consumable by a wide audience.

·       Manage a queue of requests for software security audits.

·       Develop reporting metrics for team activities.

·       Interact with requesters of varied backgrounds to determine use-case scenarios, understand application architecture and to help determine risk mitigation strategies.

 

The successful candidate will:

·       Be able to independently perform all aspects of software code auditing.

·       Have the ability to translate technical data into a format understood by individuals form varied backgrounds.

·       Be articulate, in both written and verbal communication, able to brief senior Contract and Government leadership.

·       Work in a fast-paced, high-pressure, changing environment.

·       Be able to use the STIG viewer and identify, understand and apply STIGs required for review of the software.

·       Have excellent written, verbal and interpersonal communications skills.

·       Have a strong commitment to a team environment.

·       Possess a willingness to learn new technologies.

·       Have the ability to de-conflict request/requirements.

 

 

Resumes, in month and year format, must be submitted with application in order to be considered for the position.  The selected candidate may be assigned as an employee for one of our teammate companies.

 

 

Here's What You'll Need:

 

Basic Requirements:

Must have one of the following combinations of education and experience: HS Diploma (or GED) and 8 years of general experience; Associate’s degree and 6 years of general experience; Bachelor’s degree and 4 years of general experience; Master’s degree and 2 years of general experience

 

·       Must have 5 years of directly related experience

·       Must have direct knowledge of MDA Cybersecurity Software Approval Portal (Cyber-SwAP) tool

·       Must be familiar with at least one programming or scripting language and know the difference between compiled and interpreted languages.

·       Must be able to maintain a restricted badge and work on site 3+ days per week.

·       Must have a current IAT Level II Certification (Security+ CE) or be able to obtain within 6 months of hire.

·       Must have, or obtain, an active DoD Secret Clearance

 

Desired Requirements:

·       Be able to perform manual code reviews to filter out false positive results for automated code review findings.

·       Be familiar with secure programming theory, common software and database security vulnerabilities, and remediation processes.

·       Have experience with one/any of the following languages/technologies: .NET, VB, Java, C+, C++, C, JavaScript, Python, PowerShell, Team Foundation Server (TFS), JIRA, Get, Internet Information Service (IIS), Tomcat, Docker, Kubernetes, SQL Server, Oracle Database, Angular, MVC, HTML, ASP, Bash, and Perl.

·       Be proficient in using Fortify Source Code Analyzer (SCA).

·       Have a Microsoft Development certification such as Azure, Foundations, etc.

·       Have a familiarity with the MDA and BMDS programs.

 

This position is expected to pay $86,500 - $111,500 annually; depending on experience, education, and any certifications that are directly related to the position.

 

This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.

 

Our health and welfare benefits are designed to invest in you, and in the things that you care about. Your health. Your well-being. Your security. Your future. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), employee stock purchase plan, health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave.

 

 Jacobs is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language

Primary Location

: United States-Colorado-Colorado Springs-20348-CSP1

Other Locations

: United States-Alabama-Huntsville-20348-RDST-02, United States-Alabama-Huntsville-20348-HVL1, United States-Colorado-Schriever AFB-20348-SHRV

Travel

: Yes, 10 % of the Time

Job Posting

: Oct 9, 2024, 7:26:34 PM

Job

: Information Technology

Organization

: CMS

Job Type

: ExperiencedJob Classification: Fulltime-Regular

Work Locations

: 20348-CSP1 .  Colorado Springs 81919Capabilities: Defense Infrastructure
Job stats:  0  0  0

Tags: Audits Azure Bash C Clearance DISA Docker DoD Java JavaScript Jira Kubernetes NIST Oracle Perl PowerShell Python Scripting Security assessment SQL SQL Server STIGs Tomcat Vulnerabilities XSS

Perks/benefits: 401(k) matching Equity / stock options Flex vacation Health care Insurance Medical leave Parental leave Relocation support

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.