<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Development and Testing Engineering lead</title>
        <description>Engineering lead will participate in Security Certification &amp;amp; Accreditation Assessments, Security Assessments and Penetration Testing on Agency Systems. 

Responsibilities to include; System documentation review, validation of process and procedures, Vulnerability Assessments and Penetration Testing. They will also be required to write test penetration plans as well as document the results for the technical and non technical audience. 

Additional Responsibilities will include; analyze and evaluation of proposed security architectures for new IT Systems and networks. Work with C&amp;amp;A Authorities to define appropriate system and network security requirements. 

Basic Qualifications 

Must hold a current Top Secret Security Clearance with a current background investigation. 

A Bachelors Degree and Minimum of 4 years experience developing Enterprise level web applications and public/private websites for commercial and or Government clients. 

Non Degreed applicants must have a minimum of 8 years working experience and education to qualify 

CISSP or GIAC certs strongly desired 
MCSE,CNE or CCDP a plus 

Also desired is Familiarity with NIST 800-53 and DCID/63 certification Methodology, terminology, formats and differences. 

Strong Pluses; 
Experience conducting security Assessments and penetration testing on web applications using mixture of open source and commercial tools including, Webinspect,Run-Live, OS's( Black Track), Web scarab, Paros, Wire shark, Nikto, Metasploit,ETC. Experience with traditional Vulnerability assessment and penetration testing tools:NMAP,NESSUS,ISS,STAT from harris, Retina, from eEye, SRR from DISA, Snort etc. 


Expertise in Java/J2EE 
SA Level experience in one or more flavors of Unix; Solaris,Linux,TSOL 

SA Level Experience with web servers and application server technologies 

Experience with: JSP,ASP,.NET,AJAX,FLASH,XML,SOAP,PHP,JAVASCRIPT,UNIX Shell Scripting, PERL, SQL, HTTP, TCP/IP. 

Strong Working Knowledge of network and data communications and relational database technologies</description>
        <link>http://sla.ckers.org/forum/read.php?17,9389,9389#msg-9389</link>
        <lastBuildDate>Thu, 20 Jun 2013 07:42:16 -0500</lastBuildDate>
        <generator>Phorum 5.2.15a</generator>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?17,9389,9389#msg-9389</guid>
            <title>Development and Testing Engineering lead</title>
            <link>http://sla.ckers.org/forum/read.php?17,9389,9389#msg-9389</link>
            <description><![CDATA[Engineering lead will participate in Security Certification &amp; Accreditation Assessments, Security Assessments and Penetration Testing on Agency Systems. <br />
<br />
Responsibilities to include; System documentation review, validation of process and procedures, Vulnerability Assessments and Penetration Testing. They will also be required to write test penetration plans as well as document the results for the technical and non technical audience. <br />
<br />
Additional Responsibilities will include; analyze and evaluation of proposed security architectures for new IT Systems and networks. Work with C&amp;A Authorities to define appropriate system and network security requirements. <br />
<br />
Basic Qualifications <br />
<br />
Must hold a current Top Secret Security Clearance with a current background investigation. <br />
<br />
A Bachelors Degree and Minimum of 4 years experience developing Enterprise level web applications and public/private websites for commercial and or Government clients. <br />
<br />
Non Degreed applicants must have a minimum of 8 years working experience and education to qualify <br />
<br />
CISSP or GIAC certs strongly desired <br />
MCSE,CNE or CCDP a plus <br />
<br />
Also desired is Familiarity with NIST 800-53 and DCID/63 certification Methodology, terminology, formats and differences. <br />
<br />
Strong Pluses; <br />
Experience conducting security Assessments and penetration testing on web applications using mixture of open source and commercial tools including, Webinspect,Run-Live, OS's( Black Track), Web scarab, Paros, Wire shark, Nikto, Metasploit,ETC. Experience with traditional Vulnerability assessment and penetration testing tools:NMAP,NESSUS,ISS,STAT from harris, Retina, from eEye, SRR from DISA, Snort etc. <br />
<br />
<br />
Expertise in Java/J2EE <br />
SA Level experience in one or more flavors of Unix; Solaris,Linux,TSOL <br />
<br />
SA Level Experience with web servers and application server technologies <br />
<br />
Experience with: JSP,ASP,.NET,AJAX,FLASH,XML,SOAP,PHP,JAVASCRIPT,UNIX Shell Scripting, PERL, SQL, HTTP, TCP/IP. <br />
<br />
Strong Working Knowledge of network and data communications and relational database technologies]]></description>
            <dc:creator>Knowledgecg</dc:creator>
            <category>Jobs</category>
            <pubDate>Mon, 02 Apr 2007 14:40:28 -0500</pubDate>
        </item>
    </channel>
</rss>
