Prior experience (3-5 years) in a Production Engineering or related position.
Experience working with Developers, DevOps, and Engineering teams in a dynamic environment to promote/implement the DevSecOps program throughout the organization.
Experience coordinating and performing vulnerability assessments through the use of automated and manual tools (Tenable, NMAP, etc).
Ability to review and analyze vulnerability data to identify security risks to the organization's network, infrastructure, and application's and determine any reported vulnerabilities that are false positives.
Capability to prepare security vulnerability and risk management reports for management.
Leadership and Teaming skills to coordinate remediation of vulnerabilities within established timeframes.
Proficiency in C/C++ Programming and Bash, Python, or other scripting languages.
Familiarity with Information Security frameworks/standards (i.e. CIS, NIST, RFC2196, etc).
Comprehension in the security areas of Key Management Systems, Certificate Management, Encryption, Penetration Testing, Vulnerability Scanning, Security and Monitoring tools, etc.
Experience configuring, implementing and leveraging computer security and networking diagnostic/monitoring tools.
Knowledge of Windows and Linux patch management and related information security functions (authentication, encryption, iptables, SSL, Ciphers, etc)
Ability to work with APIs and Plugins to integrate security tools into established CI/CD pipelines.
Job Type: Full-time
Pay: $100,068.44 - $110,856.62 per year
Benefits:
401(k)
401(k) matching
Dental insurance
Health insurance
Life insurance
Schedule:
8 hour shift
Ability to commute/relocate:
Richmond, VA: Reliably commute or planning to relocate before starting work (Required)
Experience:
Azure: 1 year (Preferred)
AWS: 1 year (Preferred)
Kubernetes: 1 year (Preferred)
Work Location: In person