Software Security Test Engineer

XOR Security
Alexandria, VA Full Time
POSTED ON 8/22/2022 CLOSED ON 10/2/2022

Job Posting for Software Security Test Engineer at XOR Security

Job Description:

XOR Security is currently seeking  a Software Security Test Engineer to support an Agency-level SOC program. The position will lead the analysts that will conduct software testing leveraging open source technologies and COTS products.  To support this vital mission, XOR staff are on the forefront of providing Advanced CND Operations, and Systems Engineering support to include the development of advanced analytics and countermeasures to protect critical assets from hostile adversaries. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in software assurance testing, vulnerability assessment, and penetration testing.  Candidates must have experience researching software vulnerabilities for known CVEs, conducting network packet capture analysis, alignment with organizational policies, and analyzing network/system level activities of the application.   The ideal candidate will have a solid understanding of operating system and application vulnerabilities, with hands-on experience conducting technical software testing in a cyber security context in support of continuous monitoring efforts. 

Corporate duties such as solution/proposal development, corporate culture development, mentoring employees, supporting recruiting efforts, will also be required.  The program allows for remote support with requirements to come on site only if needed with 24 hours notice.   

The Position is contingent on successfully completing a program-based background investigation.

Job Duties:

  • Monitor email and ticketing queues to intake desktop software review requests from federal leadership and security division.
  • Research open-source resources (e.g. National Vulnerability Database) for applicable CVEs and known exploited vulnerabilities
  • Determine gaps with USPTO baselines and policy
  • Install software in lab environment and test for efficacy of security functionality and assess network and system level activity using testing software such as Fiddler) and installed software on Kali Linux such as the Wireshark
  • Assess available documentation including usage and installation instructions for risk
  • Assess risk in terms of data collection, processing and storage
  • Develop disposition and recommendation reports detailing risks, mitigation recommendations, and approval recommendations
  • Manage lab environment to ensure deployed software is up to date
  • Advise on open-source testing automation tools
  • Stay up to date with current vulnerabilities, attacks, and countermeasures and provide a detailed analysis of enterprise risks, compensating controls, and risk mitigation plans.

Required Qualifications:

  • 7 years experience in IT, software testing, and/or cyber security
  • Technical BA/BS
  • Experience using Fiddler for software testing
  • Experience analyzing PCAP for network activity
  • Experience assessing security documentation, system design documents
  • Self-starter with excellent organizational and attention to detail in tracking and reporting compliance activity and trend analysis of enterprise vulnerabilities.
  • A working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory is also required, and a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.).

Desired Qualifications:

  • One or more certifications:  CEH, LPT, GPEN, GWAPT, CSSLP, CISSP, CAP, Security , Network , PenTest , GSNA
  • Experience using Kali Linux for software testing
  • Experience assessing FedRAMP packages
  • Experience managing tasks in Agile-based task tracking software such as Rally

Closing Statement:

XOR Security offers a very competitive benefits package including paid health insurance coverage from first day of employment, 401k with a vested company match, vacation and supplemental insurance benefits.

XOR Security is an Equal Opportunity Employer (EOE). M/F/D/V.

Citizenship Clearance Requirement
Applicants selected may be subject to a government security investigation - Applicants must meet eligibility requirements – US CITIZENSHIP and AGENCY CLEARANCE REQUIRED.

 

Software Engineer
Mantis Security Corporation -
Herndon, VA
Junior Software Test Engineer
SimVentions, Inc - Glassdoor 4.6 -
Bryantown, MD
Junior Software Test Engineer
SimVentions, Inc - Glassdoor 4.6 -
Pomfret, MD

Salary.com Estimation for Software Security Test Engineer in Alexandria, VA
$92,590 to $118,129
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs with skills like those required for the Software Security Test Engineer.

Click the checkbox next to the jobs that you are interested in.

  • Bug/Defect Analysis Skill

    • Income Estimation: $88,998 - $118,673
    • Income Estimation: $94,568 - $124,317
  • Debugging Skill

    • Income Estimation: $92,108 - $125,753
    • Income Estimation: $88,998 - $118,673
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at XOR Security

XOR Security
Hired Organization Address Washington, DC Full Time
Job Title: Digital Forensics & E-Discovery Specialist – SME Location: 1 Massachusetts Ave NW Washington, District of Col...
XOR Security
Hired Organization Address Washington, DC Full Time
Job Title: Senior Insider Threat Analyst Location: 1 Massachusetts Ave NW Washington, District of Columbia 20001 Clearan...
XOR Security
Hired Organization Address Washington, DC Full Time
SUMMARY: Digital Forensics & E-Discovery Specialist – Senior XOR Security, an Agile Defense Company, is currently seekin...
XOR Security
Hired Organization Address Washington, DC Full Time
Job Title: SOC Analyst Lead Location: 1155 21st St NW Washington, District of Columbia 20581 - Onsite twice a week Clear...

Not the job you're looking for? Here are some other Software Security Test Engineer jobs in the Alexandria, VA area that may be a better fit.

Software Engineer – Evinova

50200079 - Software Engineer, Gaithersburg, MD

Application Security Engineer

Software Guidance & Assistance, Rockville, MD