Cybersecurity Practitioner

KBR Careers

Oklahoma

On-site

USD 85,000 - 120,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

KBR is seeking a Cybersecurity Practitioner with experience in software development, software assurance, and risk management to evaluate third-party software and provide risk-mitigation recommendations for IT and OT systems.

The role involves conducting SAST on source code and static analysis on binaries, reverse engineering to identify flaws, and supporting DEVSECOPS with secure coding practices. A Secret/Top-Secret clearance is required or must be obtained within six months.

Qualifications

  • Minimum three years in software engineering, development or cybersecurity field.
  • Knowledge of secure coding principles and risk management methodologies.
  • Ability to obtain/maintain a Secret or Top-Secret clearance.

Responsibilities

  • Evaluate third-party software deliverables and assess technical compliance reports.
  • Perform Static Application Security Testing (SAST) on source code and binaries.
  • Reverse engineer software to identify flaws and undocumented objects.
  • Develop utilities to gather system information and SCAP results, and produce CONMON artifacts.
  • Support DEVSECOPS approaches and risk-based mitigation for IT/OT systems.

Skills

Software development
Software assurance
Risk management
SAST
DEVSECOPS
Secure coding
Reverse engineering

Education

Bachelor's degree in Computer Science/Engineering/Cybersecurity

Tools

Ghidra
Binwalk
JTAG
UART
I2C
SCAP tooling

Job description

Cybersecurity Practitioner

KBR is seeking a Cybersecurity practitioner with experience in software development, software assurance, and risk management to evaluate and verify third-party software deliverables, assess technical compliance reports, and provide risk-mitigation recommendations for Information Technology (IT) and Operational Technology (OT) systems. The successful candidate will join a team that evaluates cybersecurity policies and implements the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) to assess, authorize, and monitor system risks and ultimately ensure mission success for the customer. The successful candidate will conduct Static Application Security Testing (SAST) on source code and static binary analysis on compiled executables, assess scan reports to identify software weaknesses and prioritize mitigation plans, and maintain various security testing tools. The successful candidate will reverse engineer commercial and custom software to identify software flaws, logic defects, or undocumented embedded objects. The successful candidate will leverage expertise in Development, Security, and Operations (DEVSECOPS) and secure coding practices to provide technical support that effectively directs system security engineering for acquisition and sustainment programs. The successful candidate will develop and maintain custom software utilities to gather computer system information, consolidate logs and Security Content Automation Protocol (SCAP) results, generate visual metrics, and produce Continuous Monitoring (CONMON) artifacts.

Requirements

The position requires at least three (3) years of experience in software engineering, software development or a cybersecurity-related field. Candidates must demonstrate an understanding of legacy and modern programming standards, secure coding principles, and risk management methodologies. Within six (6) months of the assignment, the candidate must possess or obtain one of the following certifications: CySA+, CGRC (formerly CAP), Security+, CISSP, SSCP, or CSSLP. The candidate must be familiar with secure coding and cybersecurity practices. Additionally, the candidate must be able to obtain and maintain a Secret or Top-Secret security clearance.

PREFERRED: A bachelor’s degree in Computer Science, Computer Engineering, Software Engineering, or Cybersecurity, and at least five (5) years of experience in related engineering or cybersecurity positions. Desired qualifications include hands-on experience with ICT/SCADA systems, vulnerability hunting, threat analysis, software reverse engineering, Ghidra, Binwalk, hardware debugging interfaces (e.g., JTAG, UART, I2C). Possession of one of the following certifications: CDP, CDE, CEH, CASE, GREM, or GICSP. Direct experience supporting USAF, military service, or military weapon systems is highly preferred. Must possess an active Secret or Top-Secret security clearance.

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

R2129155

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Practitioner
Cybersecurity Practitioner

KBR • Oklahoma

On-site
USD 90,000 - 130,000
Cybersecurity Manager
Cybersecurity Manager

KBR Careers • Washington

On-site
USD 214,000 - 321,000
401K with company match
Medical insurance
Dental insurance
+5
Cybersecurity SME
Cybersecurity SME

KBR Careers • Virginia (MN)

On-site
USD 176,000 - 215,000
Security Controls Assessor (SCA) Representative
Security Controls Assessor (SCA) Representative

KBR Careers • Colorado Springs (CO)

On-site
USD 160,000 - 180,000
401K plan with company match
Medical, dental, vision
Life insurance
+2
Security Controls Assessor (SCA) Representative
Security Controls Assessor (SCA) Representative

KBR, Inc. • Colorado Springs (CO)

On-site
USD 160,000 - 180,000
401K with company match
Medical, dental, vision
Cyber Advisor
Cyber Advisor

KBR Careers • McLean (VA)

On-site
USD 160,000 - 196,000
401K with company match
Medical insurance
Dental insurance
+7
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

KBR Careers • Colorado Springs (CO)

On-site
USD 104,000 - 157,000
Bonus potential
Senior Software Cyber Vulnerability Engineer
Senior Software Cyber Vulnerability Engineer

KBR Careers • Huntsville (AL)

On-site
USD 166,000 - 200,000
Zero Harm culture
Equal opportunity employer
Cyber Advisor
Cyber Advisor

KBR Careers • Washington

On-site
USD 160,000 - 196,000
401K plan with company match
Medical, dental, vision
Paid time off
Cyber Advisor
Cyber Advisor

KBR Careers • Chevy Chase (MD)

On-site
USD 160,000 - 196,000
401K plan with company match
Medical insurance
Dental insurance
+7