Software Security Engineer Resume Samples

4.9 (92 votes) for Software Security Engineer Resume Samples

The Guide To Resume Tailoring

Guide the recruiter to the conclusion that you are the best candidate for the software security engineer job. It’s actually very simple. Tailor your resume by picking relevant responsibilities from the examples below and then add your accomplishments. This way, you can position yourself in the best way to get hired.

Craft your perfect resume by picking job responsibilities written by professional recruiters

Pick from the thousands of curated job responsibilities used by the leading companies

Tailor your resume & cover letter with wording that best fits for each job you apply

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Resume Builder
CHOOSE THE BEST TEMPLATE - Choose from 15 Leading Templates. No need to think about design details.
USE PRE-WRITTEN BULLET POINTS - Select from thousands of pre-written bullet points.
SAVE YOUR DOCUMENTS IN PDF FILES - Instantly download in PDF format or share a custom link.

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Create a Resume in Minutes
AK
A Kilback
Addie
Kilback
815 Delia Points
Chicago
IL
+1 (555) 405 5123
815 Delia Points
Chicago
IL
Phone
p +1 (555) 405 5123
Experience Experience
Philadelphia, PA
Software Security Engineer
Philadelphia, PA
Pagac, Senger and Labadie
Philadelphia, PA
Software Security Engineer
  • Work closely with the development teams within an agile development process to fix security issues identified in largescale user-facing web applications
  • Lead and mentor developers in utilize secure development techniques and libraries
  • Work with a team of architects and developers, operational leads and functional owners to plan and implement security technical features
  • Work closely with application development teams to assess the security posture of applications
  • Work with global development teams to build testing solutions and troubleshoot security issues in order to deliver product in high quality
  • Perform on-going security testing and code review to improve software security
  • Working knowledge of secure development practices such as OWASP / BSIMM
Dallas, TX
IBM Analytics Software Security Engineer
Dallas, TX
Windler-Murray
Dallas, TX
IBM Analytics Software Security Engineer
  • Cisco Certified Network Associate (CCNA) Security, Certified Ethical Hacking (CEH), Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM) or other certifications are a plus
  • Perform ethical hacking, application penetration tests and internal assessments against defined industry standards (Open Web Application Security Project / OWASP Top 10) and IBM security policy
  • Proactively track gaps or conflicts in existing software development processes, and highlight work with product development and engineering teams to remediate
  • Perform ethical hacking, application penetration tests and internal assessments against defined industry standards (Open Web Application Security Project (OWASP) / OWASP Top 10) and IBM security policy
  • Assist with developing consistent, integrated metrics and reporting for key risk indicators
  • Regularly identify, prioritize and manage security risks, communicating concerns to management and contributing to mitigations plans
  • Provide secure development guidance (education, awareness, processes, and tooling) to colleagues within your department and across IBM
present
Detroit, MI
Senior Software Security Engineer
Detroit, MI
Gusikowski, Oberbrunner and Little
present
Detroit, MI
Senior Software Security Engineer
present
  • Provide guidance to all engineering regarding secure web application development best practices
  • Familiar with OWASP Application Security Verification Standard (ASVS) and how it applies to application development teams
  • Working knowledge of automated application security-related tools such as AppSpider, Checkmarx, Qualys, and Nessus
  • Working knowledge of manual assessment tools such as HTTP Proxies (BurpSuite Pro, OWASP ZAP), automation scripts, shell scripting w/ curl, fuzzers and other commercial and open source tools
  • Competitive pay + bonus incentive, employee equity in the company, 3 weeks paid vacation plus 10 company holidays, 2 community service days, medical/eye/dental coverage, and even pet insurance!
  • Maintain current working knowledge of web application security issues
  • Ensure that security best practices are followed throughout product development
Education Education
Bachelor’s Degree in Computer Science
Bachelor’s Degree in Computer Science
Southern Illinois University Carbondale
Bachelor’s Degree in Computer Science
Skills Skills
  • Knowledgeable of the following security processes: DIACAP, RMF, NSA, anti-tamper, and Program Protection
  • Excellent interpersonal, organizational and communication skills; able to concisely communicate security risks to both technical and business audiences
  • A strong understanding of Unix, Windows and network security skills
  • Working knowledge of Java,Python and SQL would be an advantage
  • 2+ years of experience in a hands-on security role, with demonstrable software engineering skills and mastery of multiple classes of security defects
  • Strong grasp of cryptography fundamentals
  • Experience developing custom scripts or tools used for vulnerability scanning and identification is
  • Ability to organize, multi-task and prioritize tasks in a matrix organization
  • Working knowledge of secure development practices such as OWASP / BSIMM
  • Ability to work both independently and perform as a leader in a team environment
Create a Resume in Minutes

15 Software Security Engineer resume templates

1

Software Security Engineer Resume Examples & Samples

  • Provide advice and consultancy on risk assessment, identification of relevant threats (threat modeling) and fixing vulnerabilities
  • Share architectural and technical guidance with product development team while maintaining a thorough understanding of products
  • Master a solid understanding of the security architecture of the Blackboard Learn product suite
  • Investigate and respond to third-party reported security vulnerabilities
  • Coordinate security testing, including definition of scope, coverage, and management of cross-functional remediation plans
  • Perform manual penetration testing and verification of Web 2.0 applications
  • Leverage automated security tool results to support manual analysis
  • Lead source code review using static analysis tools for critical areas of the application
  • Provide guidance on the design and correct implementation of planned security controls such as encryption, log management, and authentication
  • Develop prototypes of security features in the application
  • Design security test cases for both dynamic and static analysis testing tools to broadly assess the application
  • Contribute to security policy, standards, and guidelines
  • Develop training materials for general security awareness and specific security engineering training
  • Scripting experience to contribute to security testing automation
2

Vertica Senior Software Security Engineer Resume Examples & Samples

  • Evaluate the existing database system security issues and provide solutions; propose and implement extensions as necessary
  • Evaluate existing client encryption mechanisms and propose and implement extensions as necessary
  • Design and implement the integration with third-party authentication systems such as LDAP/AD and Kerberos/GSS
  • Design and implement extensions to the database storage engine such as row-level security, and file system encryption
  • Provide security expertise and reviews for other software engineers
  • Deep understanding of modern security concepts such as PKI, hashing, SSO etc
  • Experience using standard security libraries such as OpenSSL and MIT Kerberos
  • C/C++, high performance, multi-threading
  • Database internals
  • ODBC/JDBC drivers
  • Security for distributed systems
3

Senior Software Security Engineer Vpn & Firewall Resume Examples & Samples

  • Contribute to the development of project goals, schedules, and resource planning
  • Systems and network programming
  • Linux/Unix OS development
  • Multi-threading, synchronization, and memory management
  • Excellent Verbal and Writing, and Professional Presentation Skills
  • MSEE/CS with 5+ years experience in a development position, or BSEE/CS with 10+ years experience
  • In depth understanding of Active Directory: architecture and/or native access
4

Software Security Engineer Resume Examples & Samples

  • Perform penetration testing throughout the product lifecycle
  • Participate in defect resolution by reproducing defects, researching and proposing secure alternatives, verifying solutions, and identifying new regression test cases as needed
  • Review developer designs, code, and functional specifications and provide feedback on the security implications
  • Automate security testing, security tool usage, and fuzz testing for use in regression tests
  • Relevant Security and/or QE experience in software security engineering
  • BS or MS in computer science with emphasis on security
  • Significant demonstrable experience as an individual contributor security engineer, working on penetration testing, vulnerability analysis, and tools development
5

IBM Analytics Software Security Engineer Resume Examples & Samples

  • Contribute to software product alignment with information security controls, standards and regulatory requirements
  • Perform ethical hacking, application penetration tests and internal assessments against defined industry standards (Open Web Application Security Project / OWASP Top 10) and IBM security policy
  • Assist with documenting security controls, systems and tooling
  • Proactively track gaps or conflicts in existing software development processes, and highlight work with product development and engineering teams to remediate
  • Provide regular reporting on the department’s compliance status
  • Provide secure development guidance (education, awareness, processes, and tooling) to colleagues within your department and across IBM
  • Regularly identify, prioritize and manage security risks, communicating concerns to management and contributing to mitigations plans
  • Assist with developing consistent, integrated metrics and reporting for key risk indicators
  • Stay current with security trends, regulations and Industry standards/certifications, and contribute to a roadmap to enhance the security of our offerings
  • Cisco Certified Network Associate (CCNA) Security, Certified Ethical Hacking (CEH), Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM) or other certifications are a plus
  • At least 3 years experience in IT security or software development
6

Software Security Engineer Resume Examples & Samples

  • Perform on-going security testing and code review to improve software security
  • Working knowledge of secure development practices such as OWASP / BSIMM
  • Manual application pen testing skills
  • Comprehension of cyber and information security including secure coding, security in the SDLC, hacking techniques and the evolving threat landscape
  • Experience with penetration testing and vulnerability scanning tools
  • Knowledge of application level firewalls
  • Experience or working knowledge of security in the cloud
  • Knowledge of current information security standards and regulations such as ISO27000 series
  • Security relevant certification(s) (OSCP,GWAPT,CEH,CISM,CISSP ) etc. would be advantageous
  • Working knowledge of Java,Python and SQL would be an advantage
7

Senior Software Security Engineer Resume Examples & Samples

  • The ideal candidate will have a strong development background with prominent web development languages and frameworks; with the ability to understand the code and provide security remediation advice
  • Provide expert-level guidance to security analysts, testers, and development teams during application security assessments. Must be able to identify, re-create, and remediate security defects
  • Design, develop, and implement automation features into our existing security pipeline. Experience with Django / Python required. Experience with Go a plus
  • Working knowledge of automated application security-related tools such as AppSpider, Checkmarx, Qualys, and Nessus
  • Working knowledge of manual assessment tools such as HTTP Proxies (BurpSuite Pro, OWASP ZAP), automation scripts, shell scripting w/ curl, fuzzers and other commercial and open source tools
  • Experience using and testing REST and/or SOAP APIs
  • In depth knowledge on common web application security flaws and secure coding practices and the ability to clearly explain security issues to project and development staff
  • Familiar with OWASP Application Security Verification Standard (ASVS) and how it applies to application development teams
  • Ability to prioritize and track security issues and work with the necessary teams to ensure remediation
  • Serve as a leader by promoting security awareness, mentoring other team members, and staying up-to-date on current development methodologies (Agile/DevOps) and information security trends
  • Understanding of HTTP, REST, SOAP, XML and JSON as it relates to APIs and AJAX
  • Familiar with AWS/Rackspace/VSphere APIs and the cloud SDK’s
  • Experience with OpenStack, Kubernetes, and Docker a plus, but not required
  • Understanding of modern application development and operational philosophies
  • Able to convey risk to all levels of the business, from C-level executives to operations and development teams
  • Experience working in a multi-platform, multi-protocol, distributed enterprise computing environment
  • A deep understanding of web applications and architectures, relational and non-relational databases, and hardware architectures, and effectively applying the principles of information security to IT environments
  • Understanding of governance frameworks such as ITIL and ISO 27001
  • Project management: Able to assess needs, define objectives, identify resources needed to achieve objectives and begin implementation towards goal completion
  • Must be able to work effectively alone and as part of a larger project team
  • BS preferred but not required
  • 5+ years application security experience
  • 5+ years development experience
8

Software Security Engineer Resume Examples & Samples

  • Work closely with the development teams within an agile development process to fix security issues identified in largescale user-facing web applications
  • Lead and mentor developers in utilize secure development techniques and libraries
  • Work closely with application development teams to assess the security posture of applications
  • Collaborate with Development and Software Engineering teams to identify deficiencies in, improving company policies & procedures for, and executing on a Secure SDLC
  • Lead in the development and providing guidance during architecture and design activities of new and existing applications, while also conducting architectural risk and impact assessments on new and existing applications
  • Maintain knowledge of current and emerging secure application technologies/products/trends related to architectural solutions; actively and continuously share this knowledge with others
  • Communicate Findings/Remediation Guidance/Security Design Patterns to development teams in a concise and succinct manner
  • Increase knowledge in application security through self-study, training, and certifications
  • Research and gather secure code specifications and requirements based on OWASP
  • Stay connected to emerging technologies/industry trends and apply them into operations and activities
  • Passionate about building and maintaining world-class, secure consumer-facing products
  • Experience in secure development of largescale, user-facing web applications
  • Understanding of the HTTP protocol which includes the different parts of a client request and server response
  • Experience working with, and theoretical knowledge of front-end architectural topics (HTTP, Cookies, caching, web performance, scalability, security, third-party integrations)
  • Hands-on experience with the following technologies
9

Software Security Engineer Resume Examples & Samples

  • Function as cyber security leader in daily Sprint stand up, and provide ownership for all aspects of security lifecycle in product release
  • Provide mentoring, and skill set knowledge transfer to scrum team members
  • Bachelor's Degree in Information Systems (IS), Information
  • Minimum of 5 years of experience writing object-oriented software, or
10

Software Security Engineer Resume Examples & Samples

  • Perform cloud application security assessment, code reviews, etc
  • Develop and maintain cloud security application
  • Develop automation to identify security flaws in code with Java, Python, Perl and selenium
  • Develop mobile automation for iPhone, Android, and BlackBerry mobile applications
  • Report bugs and track for a resolution
  • Work with global development teams to build testing solutions and troubleshoot security issues in order to deliver product in high quality
11

Software Security Engineer Resume Examples & Samples

  • 3 yrs experience * Strong Python/C/C++ programming skills required
  • Must have strong understanding of embedded hardware & software concepts
  • Must have strong understanding of software architecture concepts
  • Must have a strong understanding of operating system concepts such as tasks, signals, timers, priorities, deadlocks, stacks, etc
  • Must have experience with JTAG-enabled devices and software debuggers and excellent debugging skills
  • Understanding of a broad range of topics from network stacks, Mutimedia frameworks, UI frameworks, loaders, application framework
  • Desirable: MSM and AMSS development experience, ARM architecture and software development experience
  • Desirable: Experience with onchip simulators / emulators. * Desirable: Experience with ARM Trustzone architecture
  • Strong verbal and written communication skills a must * Team player who can function well with minimum supervision
  • Attention to detail and follow-through
  • Please see Minimum Qualifications
12

Software Security Engineer Resume Examples & Samples

  • 3 yrs experience
  • Strong Python/C/C++ programming skills required
  • Desirable: Experience with onchip simulators / emulators
  • Desirable: Experience with ARM Trustzone architecture
  • Strong verbal and written communication skills a must
  • Team player who can function well with minimum supervision
13

Software Security Engineer Resume Examples & Samples

  • Strong Facilitation skills, leading in-person and remote teams in co-creation sessions, creating wireframes, workflows and prototypes
  • Working knowledge in configuration management tools such as CVS/SVN/ClearCase/Git/Perforce
  • Lean/Six Sigma Certification
  • Experience with NodeJS
  • Experience with Lua
  • Experience with GOLang
  • Understanding of GitHub and Git pull requests
  • Understanding of Delay Tolerant Networking (DTN)
  • Experience with application logging integration, and products (Log4J, Logstash, Splunk)
14

Software Security Engineer Resume Examples & Samples

  • Fluent (3-5+ years of experience) in Java and/or Go
  • Cryptography and key management
  • Knowledge of/experience developing and working with tools such as GIT, Gradle, Swagger, Scrum development process
  • Experience with relational databases
  • Hands on experience developing and diagnosing for security, performance and scalability
  • Understanding of HTTP, Internet protocols, Web browsers
15

Information & Software Security Engineer Resume Examples & Samples

  • Work with global product teams to identify potential security vulnerabilities, where the weak points in the systems are, create a risk profile of the system, then assess & implement proposed solutions that eliminate identified vulnerabilities
  • Support the establishment and dissemination of best practices for the creation of secure systems, the implementation of techniques that are free from logical design and technical implementation flaws
  • Support the capture of key requirements and performance metrics, architecture design, implementation, integration, and testing of the proposed solutions
16

Senior Software Security Engineer Resume Examples & Samples

  • 4 - 6 years of experience developing and/or testing software solutions with an emphasis on secure design and implementation tactics
  • Experience with cryptography and open source software components
  • Proven experience following or implementing a systems development lifecycle (agile, waterfall, DevOps, etc.)
  • Development experience with C# and VB (.NET) on Windows and Java on Linux operating systems as well as popular databases (i.e. SQL, Oracle)
  • Experience with SAST tools (e.g. Checkmarx, Coverity, Fortify, Veracode, WhiteHat Security)
  • Experience with DAST, IAST, RASP and WAF tools
  • Experience automating manual tasks using languages such as Perl, Powershell, Python, PL/SQL, or through SOAP or RESTful APIs
  • Familiarity with CVE, CWE, and CVSS identification systems
  • Experience defining secure development standards
  • Experience in threat modeling and architectural risk analysis
  • Possess a thoughtful understanding of modern cyber security threats and relevant tactics for implementing measures to combat those threats
  • Experience performing application assessments or limited penetration testing on business systems or platforms
  • Ability to mentor junior cyber security teammates, enabling their growth as professionals
  • Strong written and verbal communication (including presentation) skills to effectively convey or influence ideas
  • Ability to provide thought leadership on multiple cyber security domains or concepts
17

Senior Software Security Engineer Resume Examples & Samples

  • Bachelor’s/Master's degree in CS or related field with a minimum of 8 years of overall experience
  • Minimum 5 years of experience for software development in .Net/JAVA and other object oriented language
  • 3 years of application security experience
  • Experience with programming languages such as C#/Java/JavaScript/Visual Basic/C++/C/PYTHON/PERL
  • In-depth knowledge of application security for ASP .NET and .NET (Web, Web-services, Windows and mobile) applications
  • Demonstrable experience of security risk assessment, threat modeling and penetration testing concepts
  • Knowledge of tiered application architectures, web front-ends/server-side apps, application, and relational databases
  • Experience with APIs: REST, SOAP, SOA and other integrations
  • At least one of the following security certifications CISSP, GIAC, CISM, or CEH
  • LI-MK1
18

Embedded Software Security Engineer Resume Examples & Samples

  • Analyzing security threats and protection mechanisms
  • Research and develop new technology solutions
  • Evaluate and promote new products, processes, or systems
  • Provide technical guidance on product and process maintenance
  • Lead teams in the implementation of embedded security solutions
  • Communicate results to customers, suppliers, team members, and other business units
  • Bachelor degree in Computer Science, Computer Engineering or Electrical Engineering OR General 4 year degree with a minimum of 5 years developing embedded security solutions
  • 3+ years experience in embedded Linux software development
  • Experience with cryptographic / encryption software libraries and tools
  • Experience in mobile device security technology, such as Wi-Fi and/or Bluetooth
  • Strong communication and organizational skills
  • Knowledge of public key infrastructure (PKI) systems
  • Knowledge of smart card technology
  • Knowledge of hardware security modules (HSM) and/or trusted platform modules (TPM)
  • Knowledge of Internet of Things security
  • Experience with platform hardening, such as authentication methodology, signing, or security certificates
19

Senior Software Security Engineer Resume Examples & Samples

  • Ensure that security best practices are followed throughout product development
  • Provide guidance to all engineering regarding secure web application development best practices
  • Provide and meet time estimates for assigned deliverables
  • Minimum of 7 years of server-side Java experience, including 2+ years of experience with web application vulnerability testing (e.g. source code analysis, penetration testing)
  • Familiarity with Java security, J2SE and JAAS
  • Experience with web application servers (e.g. Tomcat, Websphere and Oracle)
  • Database familiarity and experience using Oracle and Postgres a plus
  • Cryptography knowledge a plus
20

Software Security Engineer Resume Examples & Samples

  • A Bachelor of Science degree in a STEM program including Computer Science OR other bachelor degree in a STEM program (including Computer Science) that included 12 semester (or 18 quarter) credit hours in mathematics, including differential and integral calculus and applied mathematics and 10 semester (or 15 quarter) credit hours in natural science (biology, chemistry, earth sciences) including physics is required
  • Experience with Windows Deployment Service, Windows Server Architecture, Active Directory management, and Windows System Update Services
  • Solid experience with TCP/IP networks
  • Familiar with Windows Hyper-V and VMWare virtualization services
  • Experience with vulnerability management and compliance assurance
21

Software Security Engineer Resume Examples & Samples

  • Project Security Engineering - Engaging on customer projects to assist in engineering a secure solution in accordance with policies, procedures, standards and best practices. The security engineer conducts threat analysis and modeling, defines security requirements, analyzes and tests the environment against the requirements, recommends remediation for identified risks, documents the security posture of the environment, including unmitigated risks and presents the information to the CIS Engineering Technical Review Board or other authorities. Existing tools, templates and techniques may be used to aid with analysis, but unique situations may require additional consulting and identifying non-standard approaches to securing the environment
  • New Product Assessments - Peforming a security analysis of Open Source and COTS solutions to determine the viability of installing them in the Lockheed Martin computing environment. Standard processes and tools may be used to analyze the product. The security engineer will document their findings and make a recommendation on use of the product and specify any conditions of use that might apply to reduce risk
  • Exploration Initiatives - Security Engineer may participate in exploration initiatives or other special assignments, applying security knowledge, policies, procedures and best practices to identify security solutions for potential use across the enterprise
  • Secure Software Engineering - Duties may include providing ongoing support to internal users of the security tools and services provided by ASE, including Code Signing, the Common Encryption Component (CEC), and maintaining portions of the Secure Software Engineering portal. Providing guidance on secure software engineering techniques such as writing secure software code, creating database stored procedures, and configuring web servers
  • All security engineers must be familiar with CPS/IPM/CRX policies, standards, practices and procedures, specifically those pertaining to security and the protection of the LM network
  • Proven ability to interpret security and information protection policies into executable requirements
  • Prior experience with secure software development and integration
  • Wide range of knowledge across IT disciplines including software, hardware, network engineering
  • Experienced in Information Assurance and security engineering principles involving application security (secure coding), security testing, communications / network security, computer security and other areas of Information Assurance
  • Experience developing or testing web applications or web services
  • Experience performing security risk assessments
  • Proven successful experience interacting with internal customers and project co-workers
  • Proven successful experience interacting with external vendors / suppliers / partners
  • Effective written and oral communication skills
  • Experience following standardized engineering life-cycle processes and tailoring processes when appropriate
  • Knowledge of LM Corporate security policies
  • Current active DoD Secret Security Clearance preferred
  • CISSP and/or CISM security certification
  • Strong background developing /debugging and/or testing of web applications and web services
  • Understanding of OWASP Top 10 Web Application Security Risks and their countermeasures
  • Understanding of the SANS Top 25 Most Dangerous Software Errors and their countermeasures
  • Experience performing manual web application security testing with common web/web services testing tools (Fiddler2, Wireshark, SoapUI, etc.)
  • Experience developing applications on multiple platforms, e.g. Windows, Linux, OS X, iOS, etc
  • Fluent with multiple programming languages and environments, e.g. Java, .Net, C/C++, C#, Javascript, PERL, Python, AJAX, Flash, Silverlight, ABAP, etc
  • Experience with Cloud technologies
  • HTML5 Experience and knowledge is a plus
  • Knowledge of and experience with the LM Enterprise Security API (ESAPI) is a plus
  • Software development in Objective C using Xcode for OS X and/or iOS is a plus
22

Software Security Engineer Resume Examples & Samples

  • BA/BS in Computer Science or equivalent practical experience
  • Software development experience in C, C++ (part on an entreprise development team)
  • 2-4 years of experience with network/infrastructure penetration testing
  • 2 years of relevant work experience, including: code auditing, fuzzing, black-box analysis
  • Security source code review experience in C/C++, C#, Node, GoLang, Ruby and Java
  • Experience with threat modeling and security design review methodologies
  • A strong understanding of Unix, Windows and network security skills
  • Ability to work both independently and perform as a leader in a team environment
  • Excellent interpersonal, organizational and communication skills; able to concisely communicate security risks to both technical and business audiences
  • Experience developing custom scripts or tools used for vulnerability scanning and identification is a plus
  • Strong grasp of cryptography fundamentals
  • Produced public facing research and/or delivered presentations at security conferencess
  • The ability to demonstrate significant depth of understanding in one or more security fields (memory corruption, Linux system security, operating system kernel security, etc.)
23

Software Security Engineer Resume Examples & Samples

  • Support program offices by identifying and facilitating software and hardware assurance engineering activities
  • Identify and develop requirements for research and development (R&D) initiatives to improve vulnerability analysis, testing, and protection tools for software and hardware assurance
  • Enable efficient coordination and use of software assurance (SwA) and hardware assurance (HwA) design, analysis, and test capabilities
  • Facilitate the exchange of information, techniques, and best practices for promoting software and hardware assurance as part of the DoD systems engineering and system security engineering (SSE) processes
  • Develop and sustain a DoD inventory of SwA and HwA resources including tool licenses
  • Master’s degree (or secondary bachelor's degree) in an engineering discipline or related field
  • 3-5 years of experience working in the defense acquisition community (industry, military, Government civilian, or contract support)
  • Experience with software development life cycle to include software assurance, verification and validation (to include static and dynamic code analysis), and cyber security testing activities; experience with software assurance tools is a plus
  • Knowledge of OSD inter-office coordination and communication protocols
24

Associate Software Security Engineer Resume Examples & Samples

  • Liaison with the OEM customer on issues for new and existing projects
  • Complete required designs for new security features
  • Document new designs
  • Maintain existing designs
  • Liaison with the manufacturing, warranty and validation teams on new designs
  • Liaison with other functional areas
  • Participate in code reviews
  • Develop security related code
  • Perform and/or assist in security related systems configuration
  • Bachelor’s Degree in Computer Science, Electrical Engineering, and Computer Engineering
  • Able to work on a team
  • Ability to learn new skills as needed
25

Senior Cyber Security Assessment Software Security Engineer Resume Examples & Samples

  • B.S. required and 10-12 years’ experience with cyber vulnerability assessments techniques and procedures
  • Ability to conduct scans and assess results with Coverity & Fortify
  • Knowledge of Java and C#
  • Risk management Framework (RMF) familiarity
  • CSSLP or GSSP-Java
  • M.S. or Ph.D preferred
26

Cyber Security Assessment Software Security Engineer Resume Examples & Samples

  • B.S. degree and 5+ years’ experience with cyber vulnerability assessments techniques and procedures
  • Ability to conduct scans with Coverity and Fortify. 8570.01-M IAT Level III required: CISSP or CSSLP
  • Knowledge and proficiency in using the Adobe Acrobat and MS Office Suite (Word, Excel, PowerPoint, Outlook, and Project)
  • Knowledge of Java and C# software languages
  • Requires a minimum of an active Secret security clearance with the ability to obtain a Top Secret
  • M.S. or PHD preferred
27

Software Security Engineer Resume Examples & Samples

  • Run periodic vulnerability assessments on Pega products
  • Present test results to key stakeholders
  • Maintain current working knowledge of web application security issues
  • Bachelor’s degree in computer science or equivalent field of study
  • Java experience, including experience with web application vulnerability testing (e.g. source code analysis, penetration testing)
  • Understanding of web application architecture and security issues (e.g. OWASP Top Ten)
  • Knowledge of the HTTP protocol and client-side programming including HTML, JSP, JavaScript and JSON
  • Experience with security assessment tools and products (e.g. Burp Suite Pro, AppScan and WebInspect)
  • Familiarity with operating systems and development tools such as eclipse and ant
  • Database familiarity and experience using Oracle and Postgres a plusCryptography knowledge a plus
28

Senior Software Security Engineer Resume Examples & Samples

  • Enhance the security model for Veritas NetBackup Appliances delivering seamless integration with underlying SOA architecture. Verify security systems by developing and implementing monitoring systems, automated tests
  • Partner with information developers in developing a security guide and best practices
  • Work with security architects to take ownership of functional areas within the security framework
  • Develop and test Appliance software feature updates, solutions for customer escalations and non-standard configurations, as necessary
  • Participate in the all areas of software development, including analysis, design, reviews, testing and demonstration of design and process improvements
  • 5 - 8 years of relevant hands-on experience developing security software solutions on the Linux platform
  • Strong analytical skills and experience as a software developer in one or more security technology areas covering user authentication, authorization, access control and encryption on the Linux platform
  • Knowledge of encryption, hashing, and key management
  • Hands-on programming skills in Java, JavaScript and scripting languages like Python or Perl is required
  • Experience with REST or SOAP, J2EE concepts, one or more of J2EE application frameworks is a plus
  • Degree in Computer Science or equivalent
  • Experience with Agile development methodologies including unit testing, test-driven development, Continuous Integration, Continuous Testing, Pairing, Automated Testing is a plus
  • Experience of developing REST based web services is a plus
  • Knowledge of databases, SQL, Networking and Storage a plus
  • Knowledge of cloud infrastructure design a plus
  • Experience with continuous software delivery model is a plus
29

Senior Security Software Security Engineer Resume Examples & Samples

  • 5+ years as a software developer in a large software organization
  • Hands on coding experience in C++, Java, JavaScript or other scripting languages
  • Experience with Agile Scrum development methodology
  • Certified Secure Software Life-cycle Professional (CSSLP)
  • Experience with Continuous Integration and Continuous Deployment (CI/CD) model
30

Software Security Engineer Resume Examples & Samples

  • Maintains a personal, active relationship with Jesus Christ and is a consistent witness for Jesus Christ
  • Faithfully upholds Samaritan's Purse in prayer
  • Consistently participates in daily Samaritan's Purse staff devotions
  • Demonstrates behavior aligned with SP’s Mission Statement, Statement of Faith, Hallmarks, policies, and expectations
  • Effectively represents Jesus Christ to those within both personal and professional spheres of influence
  • Design and Create Test Plans for Web Application and Server Orchestration Platforms
  • Design and Create Test Plans for websites and static code evaluation
  • Build automated testing environment(s) for Web Application and Server Orchestration Platforms
  • Work with the DevOp’s team to ensure that all sites/interfaces are fully functional and secure at all times
  • Participate and aid in maintaining departmental policies concerning frontend programming best practices and quality assurance
31

Senior Software Security Engineer Resume Examples & Samples

  • 5+ years’ experience with operating system security, including modern exploitation and mitigations
  • Expertise in finding vulnerabilities in hardened, low-level system components
  • Public track record of vulnerability research and discovery
  • Experience exploiting bugs and bypassing security mitigations
  • Software development skills in in C and C++
32

Software Security Engineer Resume Examples & Samples

  • Penetration testing - You will examine chosen target systems in detail, looking for vulnerabilities and weaknesses, and, in collaboration with other penetration testing and red teams around the company, demonstrating the value of an assume breach mentality
  • Emerging Threat and Vulnerability Research - You will identify and evaluate new areas for research, perform analysis into emerging threats, including proactive security research on the technologies that Azure and our customers utilize and depend on. A very high level of creativity, excellent communication skills, and an ability to work independently are critical
  • Security Assessments - You will apply your research and knowledge to threat models and security assessments of Azure services, platforms and infrastructure. You have a goal to prioritize areas of security risk while identifying and addressing risks that affect Azure’s ability to protect, detect, investigate, and recovery from security vulnerabilities and targeted attacks
  • 2+ years of experience in a hands-on security role, with demonstrable software engineering skills and mastery of multiple classes of security defects
  • 1+ years of coding experience in one or more popular languages and platforms, including C/C++, C#, Java, Javascript/Typescript, SQL, assembly, Ruby, Python, and/or others, and the ability to pick up new platforms quickly
  • Experience in technical disciplines outside security space, including general software development, networking, database management, big data, and full-stack development is a strong plus
33

Senior Software Security Engineer Resume Examples & Samples

  • Expertise in 2 or more Application Security disciplines, e.g., Secure Coding, Security Scanning Tools, Threat Modeling, OWASP Top 10 Vulnerability Remediation, etc
  • Strong multi-platform Object-Oriented programming skills, e.g., C, C++, Java, Objective-C Expertise in at least one scripting language, e.g., Python, Perl, JavaScript
  • Extensive experience with architecture, component and code-level reviews with an eye towards Application Security
  • Ability to communicate Risk Assessments and complex technical concepts to both technical and non-technical audiences
34

Systems Software Security Engineer Resume Examples & Samples

  • Ensure the integrity, dependability and availability of systems, networks and data through planning, analysis, development, implementation, maintenance and enhancement of information systems programs, policies, procedures and tools
  • Ensure implementation of appropriate systems security policies, and ensures the rigorous application of information security/information assurance policies, principles and practices in the delivery of information technology (IT) services
  • Knowledge of administrative, procedural and technical controls used to reduce security risks, and experience authoring or adapting security procedures and policy manuals
  • Excellent oral skills in order to interact with staff, other groups, and contractors, and to coordinate efforts to promote awareness of technical security issues
  • Experience performing duties that pertain to developing, implementing, and maintaining programs, polices, and procedures to protect the integrity and confidentiality of systems, networks, and data
  • Experience assessing new systems design methodologies to improve software quality
  • Experience identifying need for changes based on new security technologies or threats
  • Experience reviewing proposed new systems, networks, and software designs for potential security risks
  • Possess the ability to develop and maintain Windows scripts to modify object permissions and attributes, registry entries, and other security configuration information
  • Possess the ability to perform STIG assessment on RHEL and Windows operating systems
  • Possess knowledge of DoD Risk Management Framework (RMF) guidance
  • Possess knowledge of and experience with security scanning Windows assets with tools such as SCC, SCAP, Nessus, ACAS, and analysis of the results
  • Ability to create and maintain Microsoft patch bundles for install on fielded systems
  • Bachelor's degree in systems engineering or computer science or a related field plus ten (10) years of experience in information technology methods and practices, including information assurance
  • Must possess an information assurance / security certification such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM)
  • Must hold an active Secret clearance
35

Senior Software Security Engineer Resume Examples & Samples

  • Extensive knowledge of Web Technologies: HTTP, JavaScript, AJAX, CSS, OWASP Top 10 principles
  • Extensive knowledge of Security principles: confidentiality and integrity of data, authentication and authorization, security protocols (HMAC, SSL, JKS, AES, OAuth)
  • Extensive experience building large-scale server applications
  • Extensive experience with service-oriented architecture principles to implement tools like WCF
  • Expert knowledge of VB, C#, OLE, ActiveX and the .NET Framework is a plus
  • Experience with operating system internals, file systems, programming language design, compilers
  • Experience with Mobile OS (iOS and Android) and form factors
  • Management (MAM), mobile Network Access Control (NAC), geo-locationing/fencing, and wireless sensor networks
  • Experience in building authentication or authorization services
  • Experience with scalable rules engines
  • Experience or bent in thinking about operability, monitoring, performance, testability and scalability while building large-scale systems
  • Ability to Contribute to the security community (public research, blogging, presentations, etc)
  • Ability to influence design and architectural decisions
  • 2) Minimum certifications/educational level
  • 5+ years on web applications JavaScript, HTML, CSS
  • 5+ years working with HTTP, SOAP, REST, and JSON
  • Full software development lifecycle experience; must be comfortable working using Agile methodology as well as iterative methodologies
  • Must have prior experience of being a developer of a REST interface
36

Software Security Engineer Resume Examples & Samples

  • Develop threat modeling and threat mitigation strategies
  • Establish security technical direction in software and hardware
  • Provide experienced and expert advice to developers working on security issues
  • Perform technical security investigations as needed to support development work
  • Collaborate with other divisions and 3rd parties to further security goals
  • Help with security process improvements and certifications
  • Train and mentor as many as 150 software engineers in security techniques
  • Hands-on experience in network implementation, monitoring, managing, troubleshooting, and reporting
  • Experience with remote access technologies design and support
  • Current knowledge of trends in security specific to control systems
  • Experience with Microsoft Threat Modeling Tool, encryption, export compliance, PKI, SSL, hardware security mechanisms, authentication systems
  • Experience with HTML/HTML5, Javascript, Chromium, web push technologies, AngularJS
  • Experience with WCF, DCOM, MQ, RESTful programming, Microservices
  • Experience with Embedded Programming and Security
  • Experience working with geographically distributed teams in a 100+ developer organization
  • Certifications such as CISSP, CEH, GIAC, ISA Cybersecurity, etc. are a plus but not required
37

Software Security Engineer Resume Examples & Samples

  • An intense interest in security
  • A burning curiosity of how things work
  • 2+ years software development experience
  • Bachelor's degree in Computer Science, Math or other related subject
  • Experience in .NET, Java, C, or Python software development
  • Familiarity in web development using JavaScript, ASP.NET, AJAX
  • Effective communication and teamwork skills
38

Intern Software Security Engineer Resume Examples & Samples

  • Develop high quality security software which meets requirements, promote re-use of software components and facilitates ease of support
  • Diagnose, isolate, and implement remedies for system failures caused by security errors in software code and system configuration
  • Participates in internal security testing, security audits, code review and unit test review sessions
  • Performs forensic analysis of systems
  • Identifies and implements process improvements in Engineering practices to support best-practice Secure Development Lifecycle activities
  • Utilize software based system maintenance and tracking tools
  • Provide input and technical content for technical documentation, user help materials and customer training
  • Conduct unit tests, track problems, and implement changes to ensure adherence to test plan and functional/nonfunctional requirements
  • Learns and applies test methodology, processes, procedures, standards and tools used by team and applies as and when required
  • Works in an Agile development environment utilizing scrum principles and practices
39

Software Security Engineer Resume Examples & Samples

  • Work with global product teams to identify potential security and privacy vulnerabilities
  • Create a threat model of the system, assess that model, propose mitigation, and guide implementation to address vulnerabilities
  • Support the establishment and dissemination of best practices for the creation of secure and private systems
  • Support the capture of key requirements and performance metrics. Guide architecture design, implementation, integration, and testing of the proposed solutions with a security and privacy focus
  • Stay updated on latest security technologies and methodologies including
  • Knowledge of the state of the art in security analysis tools and product security safeguards
  • In-depth experience and knowledge of threat modeling and systematic discovery of threats, as a part of the Software Development Life Cycle
  • Knowledge and experience with NIST, ISO 27001, or related standards
40

Software Security Engineer Resume Examples & Samples

  • Lead/Contribute towards the design, planning, development, deploy and support of security services
  • Translate complex security policies into rules and models for real-time processing
  • Advocate and champion security best practices in a cross functional team
  • Make architectural and implementation tradeoffs to meet project specifications while adhering to the project milestones and timeline objectives
41

Software Security Engineer Resume Examples & Samples

  • Activities will include
  • Passion for developing and testing software systems
  • Knowledgeable of the following security processes: DIACAP, RMF, NSA, anti-tamper, and Program Protection
  • 2 years of Technical (hands-on) experience related to Information Assurance/Cyber Engineering requirements, determination, development, and implementation
  • Experience in security systems engineering involving various computer hardware and software operating system and application solutions in both a stand-alone and in LAN/WAN configurations
  • Experience with network and system security administration, including operating system security configuration and account management best practices for UNIX(HP-UX & Solaris), MS Windows, Red Hat Enterprise Linux
  • Experience in system engineering, program management, and DoD acquisition processes
42

Mission Critical Software Security Engineer Resume Examples & Samples

  • Support emerging and existing programs in defining, architecting and implementing cybersecurity solutions and requirements
  • Experience with security features and/or vulnerability of various operating systems as defined by NSA, NIST, DISA (STIGs) and USCYBERCOM
  • Experience with IA vulnerability testing and related network and system test tools; e.g., NMap, Nessus, Security Content Automation Protocol (SCAP) Compliance Checker
  • Experience with information security toolset including
  • Ability to organize, multi-task and prioritize tasks in a matrix organization
43

Software Security Engineer, Mid Resume Examples & Samples

  • 5+ years of experience with HP Fortify Static Code Analyzer and Software Security Center, performing source code analysis
  • Experience in programming with one or more of the following languages: Java, JavaScript, Python, C/C++, Groovy, Ruby, Perl, PHP, jQuery, ASP, .NET, and HTML
  • Experience with problem solving through out-of-the-box approaches
  • Ability to perform software validation analysis, defining and documenting test plans and specifications required for regulatory compliance, and developing testing strategies and methodologies
  • DoD 8570 IAT Level II Qualified Certification, including CompTIA Security+, CASP, or CISSP
  • 5+ years of experience with Unix or Linux based operating systems, including Red Hat Enterprise Linux a plus
  • 5+ years of experience with security methodologies, system dependencies, and source code analysis processes
  • Experience with information assurance, risk management framework (RMF), and Security Technical Implementation Guides (STIGs) a plus
  • Experience with review and interpretation of DoD system requirements
  • Knowledge of Configuration Management and Automation tools, including JIRA, Stash, Subversion, Confluence, or Jenkins
  • Knowledge of Agile Development and Management with Agile Scrum
  • Knowledge of Cloud and VM technology to design and implement automated testing and scanning strategies
  • Ability to troubleshoot problems that occur during the configuration and scanning process in a fast-paced, constantly changing environment
  • Ability to make recommendations that mitigate security vulnerabilities identified in reports