Security Testing Lead overseeing application security testing activities at Computer World Services. Ensuring continuous identification and remediation of application security risks through dynamic testing methods.
Responsibilities
Coordinate and execute dynamic security testing aligned to common attack vectors (OWASP Top 10, SQL Injection, XSS, privilege escalation).
Manage results from SAST/DAST scans, dependency scanning, and licensing compliance checks; document and track findings to closure.
Maintain and update security test plans, scenarios, and coverage reporting aligned with program security posture and playbook requirements.
Support penetration testing activities and validate vulnerability remediation effectiveness.
Provide consolidated security risk dashboards and reporting to stakeholders; communicate trends and readiness risks.
Coordinate security testing schedules aligned with program milestones and release readiness evaluations.
Requirements
10+ years (5+ years application security testing in DevSecOps environments) (Tricentis Tosca experience preferred
Security+ CE
CEH or PenTest+
CSSLP or CISSP
**Preferred:** GIAC GPEN/GWEB (as available)
Candidate must have active Top Secret Clearance with ability to be cleared to Top Secret/SCI.
Benefits
Hybrid Work Environment: Work From Home and attend scheduled work sessions near Hanover, MD.
Travel: Participate in scheduled meetings in and around the DC metropolitan area. Potential travel to locations throughout CONUS.
Técnico de Segurança do Trabalho JR assisting with safety documentation and training for field activities at Arcadis. Focused on sustainable solutions in engineering and consulting.
Senior Security Engineer managing the vulnerability management program and collaborating with engineering teams at Causaly. Focused on cloud security and secure coding practices.
Compliance Specialist managing documentation and policies for Orro's Information Security Management System. Supporting essential compliance activities across ISO 27001 and IRAP with strong attention to detail.
Infra Security Engineer focusing on endpoint security solutions in South Korea's urban mobility services. Collaborating on security architecture and threat detection initiatives.
Senior Cyber Security Consultant supporting client cybersecurity development initiatives. Job focuses on administrative and technical aspects of cybersecurity within a collaborative consulting team setting.
Vice President of Infrastructure Security overseeing enterprise - level cyber risk across platforms. Partnering with infrastructure and technology leaders to ensure secure, resilient, and compliant services.
Assistant Vice President providing cybersecurity advisory across enterprise infrastructure at State Street. Supporting technology outcomes in secure and resilient ways across cloud, hybrid, and on - prem environments.
Infrastructure Specialist managing IT projects, analyzing problems and providing solutions across various platforms. Collaborating closely with teams throughout project lifespans to ensure successful outcomes.
Security & Resiliency Consultant at Kyndryl analyzing and resolving cybersecurity challenges for clients in a collaborative environment. Engaging in business development conversations and implementing security measures to protect systems.
Cybersecurity Engineer ensuring safe operating environments for CACI users by protecting network boundaries and providing security services. Collaborating with stakeholders and conducting security assessments.