Cybersecurity Lead

McLean, VA, United States

Steampunk

Federal government clients at the center of everything we design, develop, and deliver to drive game-changing mission impacts.

View all jobs at Steampunk

Apply now Apply later

Overview

As the Cybersecurity Lead, you will be responsible for overseeing a dynamic software development program across multiple applications. This role will be instrumental in ensuring the security and integrity of software applications developed across various platforms while ensuring adherence to industry standards, security best practices, and regulatory compliance.

 

You will work closely with cross-functional teams, including developers, project managers, and other key stakeholders, to embed cybersecurity at every stage of the software development lifecycle (SDLC). You will be responsible for identifying potential security risks, implementing risk mitigation strategies, and leading the integration of secure coding practices across multiple applications.

Contributions

Key Responsibilities:

  • Lead cybersecurity initiatives across multiple software development projects to ensure security is built into every phase of development. Provide guidance and support to development teams on secure coding practices and threat mitigation techniques.
  • Develop and execute a comprehensive cybersecurity strategy for the software development program, ensuring alignment with business goals and regulatory requirements.
  • Conduct regular security assessments, vulnerability assessments, and threat modeling on applications and infrastructure. Identify and mitigate potential risks throughout the software development lifecycle.
  • Implement security best practices, such as secure SDLC frameworks, automated security testing, code reviews, and penetration testing to identify and resolve vulnerabilities in applications.
  • Lead the response to security incidents and vulnerabilities within the software development program. Drive remediation efforts across multiple apps, ensuring timely and effective resolution.
  • Oversee security audits, assessments, and penetration testing initiatives to ensure compliance with industry regulations and standards.
  • Maintain comprehensive documentation related to cybersecurity protocols, guidelines, and security incidents. Report on the security posture of ongoing projects to senior leadership and relevant stakeholders.

 

Qualifications

Required:

  • Bachelor's degree in Computer Science, Information Security, Engineering, or related field, or equivalent work experience.
  • 8+ years of experience in cybersecurity, software development.
  • 5+ years of experience leading cybersecurity teams and managing large-scale security initiatives, particularly in the context of software development and/or DevSecOps.
  • Cybersecurity certifications (e.g., CISSP, CISA, CISM, CCSP, GCIH, GCIA, GSEC, OSCP, CHFI, CEH).
  • Experience with cloud platforms (AWS, Azure, Google Cloud) and their security principles and best practices.
  • Strong knowledge of cybersecurity frameworks (e.g., NIST, RMF, FISMA) and best practices.
  • Extensive hands-on experience with security tools, secure coding practices, and SDLC integrations.
  • Proven experience in risk management, vulnerability management, and incident response in a software development environment.

 

Preferred:

  • Experience in client engagement and relationship building.
  • Familiarity with containerization and orchestration tools (e.g., Docker, Kubernetes).
  • Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automating security tasks and developing custom security tools.

About steampunk

Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $130,000 to $160,000.  The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here. 

 

Identity Statement

As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

 

Steampunk is a Change Agent in the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors.  Through our Human-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges.  As an employee owned company, we focus on investing in our employees to enable them to do the greatest work of their careers – and rewarding them for outstanding contributions to our growth. If you want to learn more about our story, visit http://www.steampunk.com.

 

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Steampunk participates in the E-Verify program. 

Apply now Apply later
Job stats:  0  0  0
Category: Leadership Jobs

Tags: Audits AWS Azure Bash CCSP CEH CHFI CISA CISM CISSP Cloud Compliance Computer Science DevSecOps Docker DoD FISMA GCIA GCIH GCP GSEC Incident response Kubernetes NIST OSCP Pentesting PowerShell Python Risk management RMF Scripting SDLC Security assessment Strategy Vulnerabilities Vulnerability management

Perks/benefits: Health care

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.