Software Developer with Security Clearance
Amyx Inc
2024-11-10 09:43:13
Chantilly, Virginia, United States
Job type: fulltime
Job industry: I.T. & Communications
Job description
Amyx is seeking to hire a Software Developer-Intermediate to support our Cybersecurity Division/NGA Defender in the NCR (Offsite) Contractor Site area. Develops, creates, maintains, and writes/codes new (or modifies existing) computer applications, software, or specialized utility programs. Responsibilities Analyze information to determine, recommend, and plan the development of a new application or modification of an existing application. Analyze user needs and software requirements to determine feasibility of design within time and cost constraints.
Apply coding and testing standards, apply security testing tools including "'fuzzing" static-analysis code scanning tools, and conduct code reviews. Apply secure code documentation. Capture security controls used during the requirements phase to integrate security within the process, to identify key security objectives, and to maximize software security while minimizing disruption to plans and schedules. Compile and write documentation of program development and subsequent revisions, inserting comments in the coded instructions so others can understand the program. Confer with systems analysts, engineers, programmers, and others to design application and to obtain information on project limitations and capabilities, performance requirements, and interfaces.
Consult with engineering staff to evaluate interface between hardware and software. Correct errors by making appropriate changes and rechecking the program to ensure that desired results are produced. Design, develop, and modify software systems, using scientific analysis and mathematical models to predict and measure outcome and consequences of design. Develop secure code and error handling.
Evaluate factors such as reporting formats required, cost constraints, and need for security restrictions to determine hardware configuration.
Identify basic common coding flaws at a high level. Identify security implications and apply methodologies within centralized and decentralized environments across the enterprise's computer systems in software development. Identify security issues around steady state operation and management of software and incorporate security measures that must be taken when a product reaches its end of life. Perform integrated quality assurance testing for security functionality and resiliency attack. Perform secure programming and identify potential flaws in codes to mitigate vulnerabilities. Perform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
Prepare detailed workflow charts and diagrams that describe input, output, and logical operation, and convert them into a series of instructions coded in a computer language. Address security implications in the software acceptance phase including completion criteria, risk acceptance and documentation, common criteria, and methods of independent testing. Store, retrieve, and manipulate data for analysis of system capabilities and requirements. Translate security requirements into application design elements including documenting the elements of the software attack surfaces, conducting threat modeling, and defining any specific security criteria.
Design countermeasures and mitigations against potential exploitations of programming language weaknesses and vulnerabilities in system and elements. Identify and leverage the enterprise-wide version control system while designing and developing secure applications. Consult with customers about software system design and maintenance. Direct software programming and development of documentation. Supervise and assign work to programmers, designers, technologists and technicians, and other engineering and scientific personnel. Enable applications with public keying by leveraging existing public key infrastructure (PKI) libraries and incorporating certificate management and encryption functionalities when appropriate. Identify and leverage the enterprise-wide security services while designing and developing secure applications (e.g., Enterprise PKI, Federated Identity server, Enterprise Antivirus solution) when appropriate. Conduct trial runs of programs and software applications to ensure that the desired information is produced and instructions and security levels are correct. Develop software system testing and validation procedures, programming, and documentation.
Modify and maintain existing software to correct errors, to adapt it to new hardware, or to upgrade interfaces and improve performance. Apply cybersecurity functions (e.g., encryption, access control, and identity management) to reduce exploitation opportunities.
Determine and document software patches or the extent of releases that would leave software vulnerable. Microsoft Office Suites; SharePoint; Software Assessment tools, Code Scanners, NESSUS, Qualifications Bachelor degree or higher from an accredited college or university (Recommend an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree; or a degree in a Mathematics or Engineering field.)
Clearance: TS/SCI
8140 Certification: CSSLP. Benefits include: Medical, Dental, and Vision Plans (PPO & HSA options available)
Flexible Spending Accounts (Health Care & Dependent Care FSA)
Health Savings Account (HSA)
401(k) with matching contributions
Roth
Qualified Transportation Expense with matching contributions
Short Term Disability
Long Term Disability
Life and Accidental Death & Dismemberment
Basic & Voluntary Life Insurance
Wellness Program
PTO
11 Holidays
Professional Development Reimbursement
Please contact with any questions! Amyx is an Equal Opportunity employer. Amyx is committed to providing equal employment opportunity to all job seekers. Every qualified applicant receives focused consideration for employment and no one is discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status. In addition to federal law requirements, Amyx complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. Equal Opportunity Employer- Minorities/Females/Veterans/Individuals with Disabilities/Sexual Orientation/Gender Identity. Amyx is an E-Verify employer. Amyx proudly and proactively takes affirmative action to advance employment of individuals who are minorities, women, protected veterans and individuals with disabilities. Physical Demands Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.