EngineerJobs.io
← Back to all jobs

Job Description

Metova Federal is seeking a Jr. Cyber Security Engineer to provide cybersecurity engineering support to DoD software application development efforts. The role focuses on defining cybersecurity requirements and conducting application security testing to help teams build and validate secure capabilities throughout the system development lifecycle.

This onsite position is based in Orlando, FL and includes specific certification and clearance expectations for work on government programs.

Responsibilities

  • Define cybersecurity requirements for software applications to align with program requirements and objectives.
  • Recommend security engineering practices to be integrated across the system development lifecycle.
  • Assess cybersecurity requirement compliance using manual and automated software analysis tools, and present results to the customer as needed.
  • Conduct assessments with adversarial tools, techniques, and methods against network-enabled and web applications to identify weaknesses, gaps, and vulnerabilities.
  • Propose mitigation and countermeasures to reduce or eliminate software-level threats.
  • Interface directly with the software development team to help ensure software security engineering principles are applied across the lifecycle.

Requirements

  • Bachelor's Degree in Computer Science, Engineering, Cybersecurity, IT or a related field; professional and/or military experience may be substituted in lieu of the degree.
  • Required certifications to meet IAT Level II in accordance with the DoD 8140 baseline certifications.
  • IAT Level II certification is required immediately upon hire.
  • Maintain certification through continuing education requirements specified by the certification authority.
  • Experience in software engineering, development, and/or systems engineering across all phases of the system development lifecycle.
  • Systems administration skills, including experience with Linux, security settings, services, and hardening practices (including STIGs and security policies); shell scripting or Python is a plus.
  • Ability to troubleshoot, recover, and advise in cases of unexpected adverse configuration changes.
  • Knowledge of threat assessment and solutions to mitigate or eliminate threats.
  • Experience using offensive security tools and adversarial techniques and methods.
  • Experience implementing software application solutions aligned to NIST SP 800-53 security controls.
  • Skills in compliance and vulnerability reporting, along with the ability to produce formal technical documentation.
  • Understanding of risk and compliance frameworks.

Technology Focus

  • Linux, STIGs, shell scripting, Python
  • NIST SP 800-53
  • IAT Level II, DoD 8140
  • Risk Management Framework (RMF)

Security Clearance / Special Requirements

  • In support of a government contract, the position requires U.S. citizenship and a current SECRET security clearance, with the ability to attain TOP SECRET/SCI.
  • Security clearance requirements will be defined in the Government's Task Order.

Benefits

  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

Preferred Experience / Qualifications

  • Understanding of DoD acquisition processes and relevant cyber security processes, including the Risk Management Framework (RMF).
  • Security+ certification

Similar Jobs