Software Cybersecurity Evaluator IRES - SSFB/HSV
Listed on 2026-01-27
-
IT/Tech
Cybersecurity, Information Security
THIS POSITION MAY BE ELIGIBLE FOR A SIGN-ON BONUS
Position Title: Software Cybersecurity Evaluator
Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL
Clearance Type: DoD Secret
Shift: Day shift
Travel Required: Up to 10% of the time
Description of Duties- Cyber Evaluations:
- Conduct cyber evaluations of software applications, identifying vulnerabilities, security gaps, and compliance risks.
- Perform static and dynamic analysis of software code to detect security flaws, backdoors, and other vulnerabilities.
- Test applications for compliance with DoD cybersecurity frameworks, including NIST 800‑53, RMF, and STIGs.
- Penetration Testing & Vulnerability Assessment:
- Perform penetration testing and vulnerability assessments on government software systems.
- Assist in the identification and mitigation of application‑level vulnerabilities.
- Collaboration & Recommendations:
- Work closely with developers, security engineers, and system administrators to implement security recommendations.
- Document findings, create security reports, and provide actionable recommendations for remediation.
- Assist in the development of secure coding practices and software security guidelines.
- Third‑Party & Emerging Threats:
- Evaluate third‑party software for compliance with government cybersecurity standards.
- Stay up to date with emerging cybersecurity threats, tools, and best practices.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Basic Requirements- Must have 6 or more years of general (full‑time) work experience; may be reduced with completion of advanced education.
- Must have 5 or more years of experience in cybersecurity, penetration testing, or software security evaluation.
- Must have 1 or more year of experience working in a management or leadership role.
- Must have experience with secure coding practices and software vulnerability assessment tools (e.g., Nessus, Burp Suite, Fortify, Sonar Qube).
- Must be familiar with secure software development lifecycle (SSDLC) methodologies.
- Must have strong knowledge of encryption protocols, authentication mechanisms, and network security.
- Must have strong research ability and the capacity to independently investigate and resolve complex cybersecurity issues.
- Must have an active DoD Secret Security Clearance.
- Have a Bachelor’s degree (or higher) in Cybersecurity, Computer Science, or a related field.
- Certifications such as CISSP, CEH, OSCP, or GIAC GWEB are highly preferred.
- Have experience conducting cybersecurity assessments in DoD or government environments.
- Have an understanding of container security and Dev Sec Ops principles.
- Be familiar with threat modeling, risk assessment frameworks, and security controls testing.
- Have knowledge of cloud security best practices (AWS, Azure, Gov Cloud).
This position is expected to pay $120,000 - $140,000 annually; depending on experience, education, and any certifications that are directly related to the position.
This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.
Our health and welfare benefits are designed to invest in you, and in the things that you care about. Your health. Your well‑being. Your security. Your future. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), employee stock purchase plan, health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).