Cybersecurity Lead

US-VA-McLean

External

Req #: 6203
Type: Full-Time
logo

Steampunk

Connect With Us:
Connect To Our Company
				Overview:

As the Cybersecurity Lead, you will be responsible for overseeing a dynamic software development program across multiple applications. This role will be instrumental in ensuring the security and integrity of software applications developed across various platforms while ensuring adherence to industry standards, security best practices, and regulatory compliance.

You will work closely with cross-functional teams, including developers, project managers, and other key stakeholders, to embed cybersecurity at every stage of the software development lifecycle (SDLC). You will be responsible for identifying potential security risks, implementing risk mitigation strategies, and leading the integration of secure coding practices across multiple applications.

Responsibilities:

Key Responsibilities:

* Lead cybersecurity initiatives across multiple software development projects to ensure security is built into every phase of development. Provide guidance and support to development teams on secure coding practices and threat mitigation techniques.
* Develop and execute a comprehensive cybersecurity strategy for the software development program, ensuring alignment with business goals and regulatory requirements.
* Conduct regular security assessments, vulnerability assessments, and threat modeling on applications and infrastructure. Identify and mitigate potential risks throughout the software development lifecycle.
* Implement security best practices, such as secure SDLC frameworks, automated security testing, code reviews, and penetration testing to identify and resolve vulnerabilities in applications.
* Lead the response to security incidents and vulnerabilities within the software development program. Drive remediation efforts across multiple apps, ensuring timely and effective resolution.
* Oversee security audits, assessments, and penetration testing initiatives to ensure compliance with industry regulations and standards.
* Maintain comprehensive documentation related to cybersecurity protocols, guidelines, and security incidents. Report on the security posture of ongoing projects to senior leadership and relevant stakeholders.

Qualifications:

Required:

* Bachelor's degree in Computer Science, Information Security, Engineering, or related field, or equivalent work experience.
* 8+ years of experience in cybersecurity, software development.
* 5+ years of experience leading cybersecurity teams and managing large-scale security initiatives, particularly in the context of software development and/or DevSecOps.
* Cybersecurity certifications (e.g., CISSP, CISA, CISM, CCSP, GCIH, GCIA, GSEC, OSCP, CHFI, CEH).
* Experience with cloud platforms (AWS, Azure, Google Cloud) and their security principles and best practices.
* Strong knowledge of cybersecurity frameworks (e.g., NIST, RMF, FISMA) and best practices.
* Extensive hands-on experience with security tools, secure coding practices, and SDLC integrations.
* Proven experience in risk management, vulnerability management, and incident response in a software development environment.

Preferred:

* Experience in client engagement and relationship building.
* Familiarity with containerization and orchestration tools (e.g., Docker, Kubernetes).
* Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automating security tasks and developing custom security tools.
			
Share this job: