Enable job alerts via email!

Security Code Reviewer (Security Engineer) with Security Clearance

Computer World Services Corp

Springfield (VA)

Hybrid

USD 80,000 - 120,000

Full time

19 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Security Code Reviewer to ensure the security and resilience of government applications. This pivotal role involves conducting thorough code reviews, identifying vulnerabilities, and promoting secure coding practices across development teams. The ideal candidate will possess extensive experience with programming languages like Python, Go, and Java, along with a solid understanding of security vulnerabilities and mitigation strategies. Join a forward-thinking company that values innovation and collaboration, where your expertise will contribute to enhancing security measures and driving process improvements in a hybrid work environment. This is an exciting opportunity to make a significant impact in the realm of software security.

Qualifications

  • 6+ years of experience in software security reviews and secure coding practices.
  • Strong understanding of common security vulnerabilities and mitigations.

Responsibilities

  • Conduct detailed security code reviews and identify vulnerabilities.
  • Promote secure coding practices and document security findings.

Skills

Python
Go
Java
Security Review
Static Analysis
Dynamic Analysis
Version Control
CI/CD
Cryptography
Web Application Security

Education

Bachelor's Degree

Tools

Git
SVN
JIRA
Confluence

Job description

Job Details

Job Description

The Security Code Reviewer ensures that all code deployed within government applications and systems is secure, resilient to attacks, and compliant with best security practices. The role involves following secure coding practices across programming languages and application types. The ideal candidate will have a strong understanding of software development, security vulnerabilities, and the ability to identify and remediate risks within source code.

The Security Code Reviewer may also apply process improvement, reengineering methodologies, and internet-related principles to conduct process modernization projects. Responsibilities include transitioning organizations or project teams to achieve organizational goals through improved automated processes, supporting activity and data modeling, developing modern business methods, identifying best practices, and creating performance measurements.

Expert knowledge in the following areas is required:

  • Specialized experience with Python, Go, and Java programming languages.
  • Architecting and developing web applications using Python data analysis tools/libraries.
  • Working with relational databases and APIs.
  • Deploying applications using continuous integration tools/techniques.
  • Managing and deploying Python applications in Linux.
  • Reviewing code created by others, providing feedback on best practices, and identifying security vulnerabilities.
  • Building JavaScript functions compatible across multiple browsers on a STIG-compliant platform.
  • Version control, configuration management of web pages and supporting elements.
  • Performing testing, debugging, and phased production releases.
Key Tasks and Responsibilities
  • Perform detailed security code reviews for new and existing software applications.
  • Review code for vulnerabilities, security flaws, and potential exploits.
  • Identify security weaknesses related to input validation, authentication, authorization, session management, and cryptography.
  • Write detection logic to identify violative content at scale.
  • Work with development teams to implement secure coding practices in every sprint.
  • Document security vulnerabilities and provide actionable mitigation recommendations.
  • Ensure timely remediation and track progress.
  • Promote secure coding practices within the development team.
  • Stay updated on emerging security threats and industry trends.
  • Conduct security training sessions for developers.
  • Create security assessment reports and collaborate with stakeholders to prioritize security tasks.
  • Utilize static and dynamic analysis tools to automate code review processes.
  • Assist in developing or improving internal security scanning tools.
  • Evaluate security measures and recommend improvements for future projects.
  • Continuously improve the security review process to align with industry standards and regulations.
Job Requirements: Education & Experience

Bachelor's degree or higher with at least 6 years of experience.

The candidate should demonstrate working knowledge of:

  • Software engineering principles and practices.
  • Security review of software code in multiple languages (Python, Go, Java).
  • Common security vulnerabilities and mitigations (e.g., OWASP Top 10, SQL Injection, XSS, CSRF).
  • Secure coding practices and review methodologies.
  • Static and dynamic application security testing tools.
  • Encryption algorithms and cryptography standards.
  • Version control systems (Git, SVN) and CI/CD pipelines.
  • Security frameworks and industry standards (NIST, ISO 27001).
  • Tools like JIRA/Confluence, DevOps, Agile/Scrum methodologies.

Relevant certifications such as Security+, CSD, CSSLP, CSDP are desirable.

Security Clearance

Must possess DHS Suitability background investigation or be eligible for DHS Entry of Duty background investigation, followed by DHS Public Trust Clearance.

Other Notes

This position is hybrid, with travel 1-2 days weekly to Springfield, VA. Computer World Services is an equal opportunity employer committed to inclusion and providing accommodations for individuals with disabilities.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Security Code Reviewer (Security Engineer)

Computer World Services

Springfield

Hybrid

USD 90,000 - 130,000

Yesterday
Be an early applicant

Security Code Reviewer (Security Engineer)

Computer World Services (CWS)Corporation

Springfield

Hybrid

USD 90,000 - 120,000

Yesterday
Be an early applicant

Software Security Engineer

Contemporary Staffing Solutions

Marlton

Remote

USD 100,000 - 130,000

Today
Be an early applicant

Security Code Reviewer (Security Engineer)

Computer World Services Corp. (CWS)

Springfield

Hybrid

USD 80,000 - 110,000

8 days ago

Application Security Engineer

CRESCENT SOLUTIONS

California

Remote

USD 100,000 - 150,000

Today
Be an early applicant

Principal Software Engineer (Data Engineering)

Nava Public Benefit Corp

Washington

Remote

USD 80,000 - 120,000

10 days ago

Application Security Engineer

PeopleLogic

Remote

USD 90,000 - 130,000

2 days ago
Be an early applicant

Application Security Engineer (Remote)

Crane NXT, Co.

Remote

USD 90,000 - 150,000

5 days ago
Be an early applicant

Product Security Engineer

Hologic, Inc.

New York

Remote

USD 86,000 - 140,000

28 days ago