Offers “CGI”

Expires soon CGI

Security Architect

  • Internship
  • Fairfax (Linn)
  • IT development

Job description

Job Description

Security Architect

Position Description
CGI Federal is seeking an experienced security architect to join the Enterprise Solutions Group’s Solution Development Architecture team. This team is responsible for modernizing existing applications into web service and microservices-based architectures, and the security architect will provide requirements to ensure the implementation of solutions that meet the business goals of a secure architecture. This position will help develop and implement information security architecture and technology solutions to address the current and emerging information security and compliance requirements of the organization.

Your future duties and responsibilities
Responsibilities
• Provide advanced architecture and engineering support to define and outline architecture for authentication, authorization, identity management, PIV/CAC integration, encryption, and federation.
• Assess proposed enhancements for their impact on a product’s security profile and recommend solutions.
• Develop job aides for use by scrum teams during epic reviews, sprint planning, and development.
• Develop test plans, system specifications, hardening guides to ensure applications can be deployed in secure manner.
• Define plans, architecture patterns, and threat models for use in ongoing security management of Solution Development IP.
• Promote security awareness and continued support by enabling business processes to occur in a secure manner. Stays abreast of emerging issues and threats as well as technology to counter.
• Creates and maintains standards surrounding documentation related to security processes, procedures, and infrastructure.
• Provides engineering support to integrate security and compliance requirements into all enterprise information systems and projects by working closely with product development team.
• Participate in architecture review boards, risk assessments, and project documentation reviews for the development and modernizing initiatives.
• Facilitate and manage security vulnerability assessments and penetration tests.
• Analyze and resolves issues/defects that result from any of vulnerability assessment/penetration tests activities.
• Ensure IT security controls meet regulatory requirements.

Required qualifications to be successful in this role
Requirements
• Demonstrated experience and detailed technical knowledge in application security and development.
• History securing an enterprise application based on ERP and microservices/containerized architecture constructs according to Federal security standards.
• Current experience with designing security and hardening into application development.
• Effective use of defensive coding and code review.
• Hands on programming experience in technologies like Java, Jboss, .NET, JavaScript, C++, Kafka, Python, Ruby, Angular, or Node technologies.
• Experience preventing and remediating problems found in System and Application Vulnerability assessment/ Penetration testing.
• Experience and expertise in security management, auditing methodology, and technology risk assessments.
• Ability to document and explain risks and vulnerabilities to technical and non-technical stakeholders.
• Strong verbal/written communication skills.
• Ability to work in a cross-functional/ technical team environment.
• Degree in Computer Science or equivalent with at least 6 years’ hands-on experience in areas of system development, solution architecture, AND information security.
• One or more certifications like CISSP, CEH, Security +, OSCP

DESIRED QUALIFICATIONS
• Demonstrated experience with Federal and DoD ATO and FedRAMP requirements and processes for ERP and microservices/containerized solutions.
• Preferable to have hands on experience using and analyzing the results of one or more tools like Burp, Kali, Appscan, AppDetective, etc.
• Experience using scan/ attack/ assess tools and techniques, including proficiency in at least one common framework such as Metasploit.

Due to the nature of the government contract, US Citizenship is required.

#CGIFEDERALJOB

Build your career with us.

It is an extraordinary time to be in business. As digital transformation continues to accelerate, CGI is at the center of this change—supporting our clients’ digital journeys and offering our professionals exciting career opportunities.

At CGI, our success comes from the talent and commitment of our professionals. As one team, we share the challenges and rewards that come from growing our company, which reinforces our culture of ownership. All of our professionals benefit from the value we collectively create.

Be part of building one of the largest independent technology and business services firms in the world.

Learn more about CGI at www.cgi.com .

No unsolicited agency referrals please.

CGI is an equal opportunity employer.

Qualified applicants will receive consideration for employment without regard to their race, ethnicity, ancestry, color, sex, religion, creed, age, national origin, citizenship status, disability, medical condition, military and veteran status, marital status, sexual orientation or perceived sexual orientation, gender, gender identity, and gender expression, familial status, political affiliation, genetic information, or any other legally protected status or characteristics.

CGI provides reasonable accommodations to qualified individuals with disabilities. If you need an accommodation to apply for a job in the U.S., please email the CGI U.S. Employment Compliance mailbox at US_Employment_Compliance@cgi.com . You will need to reference the requisition number of the position in which you are interested. Your message will be routed to the appropriate recruiter who will assist you. Please note, this email address is only to be used for those individuals who need an accommodation to apply for a job. Emails for any other reason or those that do not include a requisition number will not be returned .

We make it easy to translate military experience and skills! Click here to be directed to our site that is dedicated to veterans and transitioning service members.

All CGI offers of employment in the U.S. are contingent upon the ability to successfully complete a background investigation. Background investigation components can vary dependent upon specific assignment and/or level of US government security clearance held.

CGI will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with CGI’s legal duty to furnish information.

Skills

·  CiscoCertSecurityProfessnl-US
·  Information Security Mgmt
·  Security Architecture

Reference

721450

Make every future a success.
  • Job directory
  • Business directory