Description

Analyzing and guiding the platform architecture with a “design for security” mindset.

Front loading cybersecurity considerations in architectural and feature design discussions.

Assisting developing teams in translating cybersecurity guidelines to concrete actions (For example converting DoD STIGs to concrete action items, FIPS compliance etc.)

Impacting analysis for discovered CVEs, software infrastructure upgrades etc.

Documenting Cybersecurity Risk Analysis

Nice to have: Driving or executing penetration testing activities.

 

Minimum Qualifications:

Bachelors Degree or equivalent with some Post-Graduate work (or equivalent experience)

12+ years of related experience.

SOLID experience in designing distributed software systems.

Modern secure software development practices (CSSLP Certification desirable)

Experience with current secure infrastructure/interface design practices (TLS, Authn/Authz, Zero Trust...)

Strong software development experience with programming languages (C#/ JAVA preferred).

Familiar with the principles of SDLC and methodologies like Agile/Scrum, CI, Clean coding and documentation practices, refactoring, and testing Techniques

Experience with virtualization, microservices (containers, K8s)

Education

Bachelor's degree