3 days old

Software QA Engineer / Fortify Specialist

Semmes, AL 36575
Apply Now
Apply on the Company Site
Business Group Highlights

Defense

The Defense group supports the Department of Defense (DoD) mission to keep our homeland and its citizens safe. We provide solutions to improve the Nation's defense by providing software, systems engineering, IT, training and logistics and fleet management solutions.


Responsibilities

Lead G6 Software Assurance function and posture other SWA resources for unified mission alignment.
Provide recommendations, guidance, understand and implement best practices, develop SOPs/policies.
Review Fortify FPRs to concur/non-concur with developer analysis of SCA findings. The review process may require complex code analysis. Most review activities are performed against ASP.NET Webforms and MVC web applications. Applicant must be proficient in these technologies.
Test and research new scan findings reported by Fortify SCA to determine severity and potential fixes.
Develop and standardize remediation approaches for design patterns used across the portfolio of hosted applications.
Interface with Fortify support.
- Write simplified test cases that reproduce problematic behavior.
- Submit support tickets and track status through to resolution.
Track and download new releases of Fortify SCA and Fortify Rule packs.
Distribute Fortify software and support installation and configuration activities as needed.
Track software utilization against licensed capacity.
Work integration of scan services into DevOps processes as needed.
Participate in the implement and administration of Software Security Center.
Coordinate with organizations cybersecurity elements on scan reviews and other software assurance activities that arise.
Evaluate additional analysis tooling to expand capabilities as opportunities arise.
Participate in process enhancement and capability growth of software assurance activities within the organization.


Qualifications

Requires 5 to 8 years with BS/BA.

Applicant must have experience with web-oriented development as well as the identification and remediation common code security issues that occur in web-oriented code.
Experience performing code reviews with an emphasis on code security.
Experience using industry-standard static and dynamic code-security-analysis tooling is required. Experience working with Fortify tooling including Fortify SCA, Audit Workbench, Software Security Center, and IDE plugins is preferred.
Experience with working within software development processes within a DOD environment.

Secret Clearance, Security +

Required: Static code security analysis tooling, C#, ASP.NET Webforms and MVC, CSS/JS/HTML, SQL


Desired: Fortify SCA, Fortify Audit Workbench, Fortify Software Security Center, Apache Tomcat, Windows Server administration, Multi-tier architecture, Agile development, jQuery, Bootstrap 3/4, Jira or ServiceNow, Familiarity with Cloud, GOV Cloud, AWS, Azure, Azure DevOps Server, GitLab, SonarQube, Burp Suite, Fortify WebInspect, DISA Application Development STIG, Dynamic Code Analysis

Salary Minimum: $62,753.60 Salary Maximum:$134,160.00 The estimate displayed represents the typical salary range for this position, and is just one component of Perspecta's total compensation package for employees. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Perspecta provides a variety of benefits to employees.
About Perspecta

What matters to our nation, is what matters to us. At Perspecta, everything we do, from conducting innovative research to cultivating strong relationships, supports one imperative: ensuring that your work succeeds. Our company was formed to bring a broad array of capabilities to all parts of the public sectorfrom investigative services and IT strategy to systems work and next-generation engineering.

Our promise is simple: never stop solving our nations most complex challenges. And with a workforce of approximately 14,000, more than 48 percent of which is cleared, we have been trusted to do just that, as a partner of choice across the entire sector.

Perspecta is anAA/EEOEmployer - All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

As a government contractor, Perspecta abides by the following provision

Pay Transparency Nondiscrimination Provision

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of the other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractors legal duty to furnish information. 41 CFR 60-1.35(c).

Industry

  • Information Technology
Posted: 2021-04-16 Expires: 2021-05-16

With offerings in mission services, digital transformation and enterprise operations, our team of 14,000 engineers, analysts, investigators and architects work tirelessly to create innovative solutions. We have the expertise and experience not only to devise solutions, but to execute on them successfully.

Sponsored by:
ADP Logo

Before you go...

Our free job seeker tools include alerts for new jobs, saving your favorites, optimized job matching, and more! Just enter your email below.

Share this job:

Software QA Engineer / Fortify Specialist

Perspecta
Semmes, AL 36575

Join us to start saving your Favorite Jobs!

Sign In Create Account
Powered ByCareerCast