Senior Software Engineer IRES - SSFB/HSV
United States-Colorado-Colorado Springs-20348-CSP1
Applications have closed
Amentum
Explore Amentum's commitment to global government and private-sector solutions. Learn about our global mission to drive mission success.Your Impact:
Position Title: Senior Software Engineer
Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoD Secret
Shift: Day shift (Mon-Fri)
Travel Required: Up to 10% of the time
#cjpost
Description of Duties:
The Senior Software Engineer supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will:
· Provide Management, Mentorship, and Leadership of other members of the Software Engineering Team.
· Prioritize and assign work to members of the team.
· Coordinate and communicate with customers managing expectations and ensuring a high level of customer satisfaction is achieved and maintained.
· Perform software security audits identifying risks associated with software and provide a comprehensive security assessment for the MDA IC ISSM. This will include known vulnerabilities published to the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD).
· Discover and compile a list of dependencies/bill of materials for software being audited.
· Use of various tools to discover vulnerabilities within a software application.
· Use various programming/scripting/query languages to correlate industry best practices for secure software development.
· Identify common security issues including input validation, error and exception handling, logging, access controls, SQL
· Injection, cross-site scripting (XSS), etc. and articulate how to mitigate or reduce their impact.
· Help correlate Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) vulnerabilities and other policies with vulnerabilities discovered and documenting them to be consumable by a wide audience.
· Manage a queue of requests for software security audits.
· Develop reporting metrics for team activities.
· Interact with requesters of varied backgrounds to determine use-case scenarios, understand application architecture and to help determine risk mitigation strategies.
The successful candidate will:
· Be able to independently perform all aspects of software code auditing.
· Have the ability to translate technical data into a format understood by individuals form varied backgrounds.
· Be articulate, in both written and verbal communication, able to brief senior Contract and Government leadership.
· Work in a fast-paced, high-pressure, changing environment.
· Be able to use the STIG viewer and identify, understand and apply STIGs required for review of the software.
· Have excellent written, verbal and interpersonal communications skills.
· Have a strong commitment to a team environment.
· Possess a willingness to learn new technologies.
· Have the ability to de-conflict request/requirements.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Here's What You'll Need:
Basic Requirements:
Must have one of the following combinations of education and experience: HS Diploma (or GED) and 8 years of general experience; Associate’s degree and 6 years of general experience; Bachelor’s degree and 4 years of general experience; Master’s degree and 2 years of general experience
· Must have 5 years of directly related experience
· Must have direct knowledge of MDA Cybersecurity Software Approval Portal (Cyber-SwAP) tool
· Must be familiar with at least one programming or scripting language and know the difference between compiled and interpreted languages.
· Must be able to maintain a restricted badge and work on site 3+ days per week.
· Must have a current IAT Level II Certification (Security+ CE) or be able to obtain within 6 months of hire.
· Must have, or obtain, an active DoD Secret Clearance
Desired Requirements:
· Be able to perform manual code reviews to filter out false positive results for automated code review findings.
· Be familiar with secure programming theory, common software and database security vulnerabilities, and remediation processes.
· Have experience with one/any of the following languages/technologies: .NET, VB, Java, C+, C++, C, JavaScript, Python, PowerShell, Team Foundation Server (TFS), JIRA, Get, Internet Information Service (IIS), Tomcat, Docker, Kubernetes, SQL Server, Oracle Database, Angular, MVC, HTML, ASP, Bash, and Perl.
· Be proficient in using Fortify Source Code Analyzer (SCA).
· Have a Microsoft Development certification such as Azure, Foundations, etc.
· Have a familiarity with the MDA and BMDS programs.
This position is expected to pay $86,500 - $111,500 annually; depending on experience, education, and any certifications that are directly related to the position.
This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.
Our health and welfare benefits are designed to invest in you, and in the things that you care about. Your health. Your well-being. Your security. Your future. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), employee stock purchase plan, health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave.
Jacobs is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language.
Primary Location
: United States-Colorado-Colorado Springs-20348-CSP1Other Locations
: United States-Alabama-Huntsville-20348-RDST-02, United States-Alabama-Huntsville-20348-HVL1, United States-Colorado-Schriever AFB-20348-SHRVTravel
: Yes, 10 % of the TimeJob Posting
: Oct 9, 2024, 7:26:34 PMJob
: Information TechnologyOrganization
: CMSJob Type
: ExperiencedJob Classification: Fulltime-RegularWork Locations
: 20348-CSP1 . Colorado Springs 81919Capabilities: Defense InfrastructureTags: Audits Azure Bash C Clearance DISA Docker DoD Java JavaScript Jira Kubernetes NIST Oracle Perl PowerShell Python Scripting Security assessment SQL SQL Server STIGs Tomcat Vulnerabilities XSS
Perks/benefits: 401(k) matching Equity / stock options Flex vacation Health care Insurance Medical leave Parental leave Relocation support
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.