Search jobs > St Louis, MO > Security assessor

Secure Software Assessor - Security Clearance Required

CALIBRE
St. Louis, Missouri
Full-time

CALIBRE Systems Inc., an employee-owned Management Consulting and Digital Transformation Company is seeking a Secure Software Assessor (Mid-level) that analyzes the security of new or existing computer applications, software, or specialized utility programs and provides actionable results.

The Secure Software Assessor's responsibilities include, but are not limited to, the following :

  • Apply coding and testing standards, apply security testing tools including "'fuzzing" static-analysis code scanning tools, and conduct code reviews.
  • Apply secure code documentation.
  • Capture security controls used during the requirements phase to integrate security within the process, to identify key security objectives, and to maximize software security while minimizing disruption to plans and schedules.
  • Develop threat model based on customer interviews and requirements.
  • Consult with engineering staff to evaluate interface between hardware and software.
  • Evaluate factors such as reporting formats required, cost constraints, and need for security restrictions to determine hardware configuration.
  • Identify basic common coding flaws at a high level.
  • Identify security implications and apply methodologies within centralized and decentralized environments across the enterprise's computer systems in software development.
  • Identify security issues around steady state operation and management of software and incorporate security measures that must be taken when a product reaches its end of life.
  • Perform integrated quality assurance testing for security functionality and resiliency attack.
  • Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
  • Address security implications in the software acceptance phase including completion criteria, risk acceptance and documentation, common criteria, and methods of independent testing.
  • Store, retrieve, and manipulate data for analysis of system capabilities and requirements.
  • Translate security requirements into application design elements including documenting the elements of the software attack surfaces, conducting threat modeling, and defining any specific security criteria.

Perform penetration testing as required for new or updated applications.

Consult with customers about software system design and maintenance

Required Skills

  • Ability to use and understand complex mathematical concepts (e.g., discrete math).
  • Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Ability to identify critical infrastructure systems with information communication technology that were designed without system security considerations.

required Experience

  • US citizen
  • Active Top Secret / Sensitive Compartmented Information (TS / SCI) clearance, eligible for Counterintelligence (CI) Polygraph.
  • IASAE Level 2 certification
  • Bachelor’s degree or higher from an accredited college or university in Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree;

or a degree in a Mathematics or Engineering field.

  • Possible travel within the Continental United States (CONUS) and Outside CONUS (OCONUS).
  • 16 days ago
Related jobs
Chipton-Ross
Hazelwood, Missouri

You will have the opportunity to partner with stakeholders to review and identify software requirements, test objectives, test strategies, and testability, enabling continuous integration, delivery, and deployment of safety critical software. Experience in all aspects of designing and implementing s...

CACI
St. Louis, Missouri

Minimum Clearance Required to Start: DOJ MBI. Percentage of Travel Required: Up to 10%. Review and produce a variety of written documents both legal and non-legal using a range of office software applications. The pay and benefits provided for this position will meet or exceed the minimum required a...

Akima
St. Louis, Missouri

Perform overall capacity management (maintain building calculations to manage supply available with loads required); and ensure building modifications comply with code requirements and original design intent. The Lead Mechanical Engineer is required to be a licensed and registered professional engin...

KBR
FT LEONARD WD, Missouri

Responsible for the administration of one or more of the following data systems: Computer systems hardware, software, information systems & peripheral equipment such as servers, desktops, printers and storage devices. Maintains, installs, upgrades and configures data systems, administers operating s...

Peraton
St. Louis, Missouri

The N2W Cyber Security Engineer will support the overall goals / objectives of the NGA Technical Security Program, specifically, cyber security requirements required to support the National Security Information (NSI) compliance. As a member of the N2W team the Cyber Security Engineer will be respons...

KBR
FT LEONARD WD, Missouri

AFCAP V OCN/LN UAE: Escort (Secret Clearance). The Security Escort Program acts as an integrated member. Must currently hold an Active DoD Secret Clearance or be able to obtain one prior to deployment. ...

Akima
St. Louis, Missouri

Possess or able to obtain and maintain a Top-Secret security clearance with eligibility to access Sensitive Compartmented Information. Possess a Top-Secret security clearance with eligibility to access Sensitive Compartmented Information. ...

CACI
St. Louis, Missouri

Minimum Clearance Required to Start: TS/SCI with Polygraph. Percentage of Travel Required: Up to 25%. You will be a critical element, working closely with users, our user support team and CACI’s development teams ensuring that systems supporting the national security of our country remain available ...

KPMG
St. Louis, Missouri

Ability to travel as required to support firm engagements. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Additionally, each year the firm publishes a calendar of holidays to be observed during the year...

Chenega MIOS SBU
St. Louis, Missouri

Louis, MO Join our Talent Network .Chenega Agile Real-Time Solutions (CARS) was created with the purpose of providing integrated enterprise IT support to Federal customers both CONUS and OCONUS.CARS employs Subject Matter Experts (SMEs) with decades of experience working in the Federal marketplace.A...