Demo

Product Security Engineer

NSS
Virginia, VA Full Time
POSTED ON 1/30/2025
AVAILABLE BEFORE 4/28/2025

Introduction

We working on a project that tackles the problem of managing large-scale IT networks. We are seeking talented and highly motivated engineers to join us in bringing this project to a larger audience. You would be responsible for helping to create, evolve, document, and implement security development and deployment practices for a product that's delivered both on-premises as well as to the cloud. This work would include evaluating and disseminating information and recommendations from resources such as NIST, OWASP, MITRE, and other sources of security information and best practices. This work would also include-with the assistance of the rest of the development team-implementing these security controls and practices as part of the software development process, supplying guidance and requirements for deploying our product on-premises, and creating a secure environment for our upcoming cloud offering.

Our product is a .NET Core application (with some TypeScript and Python components) backed primarily by PostgreSQL, that serves both a web frontend and REST API. The application source is hosted in GitLab, and we use merge requests and GitLab CI to manage our code contribution workflows.

Things we really need

  • Experience maintaining a secure software supply chain (monitoring for CVEs, creating SBOMs, etc.)
  • Experience evaluating security best practices and applying them to processes and assets
  • Experience reviewing code and architecture to identify potential security issues
  • Experience writing internal documentation around security evaluations and decisions
  • Experience with security monitoring infrastructure (log analysis, web application firewalls)
  • United States citizenship
  • 8 years of experience

Things we want too

  • Familiarity with writing infrastructural code in support of security goals (abstractions, constraints, etc.)
  • Familiarity with working with developers to help them learn and self-apply secure development principals
  • Familiarity with government / industry security auditing processes
  • Specific familiarity with web security concepts and best practices (TLS / HTTPS, common web vulnerabilities, federated authentication, etc.)
  • Things that are extra cool

  • Specific familiarity with government programs pertaining to secure application development (STIGs, APL, NIAP)
  • Specific experience with the Microsoft web application development stack (C#, .NET, ASP.NET)
  • Specific experience with AWS security tooling
  • Experience with static application security analysis tools
  • Our end of the bargain

  • Remote-first environment (if that's your thing)
  • Dedicated collaborative office space in NoVA (if that's your thing)
  • We respect work / life balance
  • Occasional on-site team summits
  • Competitive salary and annual reviews
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Product Security Engineer?

    Sign up to receive alerts about other jobs on the Product Security Engineer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $87,720 - $106,708
    Income Estimation: 
    $108,098 - $130,480
    Income Estimation: 
    $88,984 - $115,784
    Income Estimation: 
    $111,369 - $141,168
    Income Estimation: 
    $117,871 - $153,580
    Income Estimation: 
    $109,939 - $144,341
    Income Estimation: 
    $114,500 - $144,633
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $111,369 - $141,168
    Income Estimation: 
    $131,745 - $167,716
    Income Estimation: 
    $144,503 - $184,592
    Income Estimation: 
    $102,541 - $137,871
    Income Estimation: 
    $153,752 - $200,235
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at NSS

    NSS
    Hired Organization Address Washington, DC Full Time
    C4ISR / National Intelligence Acquisition Analyst to provide onsite support based out of the Pentagon in Arlington, VA. ...
    NSS
    Hired Organization Address Springfield, VA Full Time
    We are looking for a mid-level DevOps Software Engineer to work on the Army Global Unified Network (AGUN) – Increment 1 ...
    NSS
    Hired Organization Address Ft. Belvoir, VA Full Time
    Job Title Carpenter - Junior Location Fort Belvoir, VA - Fort Belvoir, VA 22060 US (Primary) Job Description Fibertek is...
    NSS
    Hired Organization Address Washington, DC Full Time
    Are you a recent college grad or new professional , looking to break into the world of DOD Finance and/or Acquisitions? ...

    Not the job you're looking for? Here are some other Product Security Engineer jobs in the Virginia, VA area that may be a better fit.

    Product Demonstrator

    Product Connections, Onley, VA

    Product Demonstrator

    Product Connections, Ocean, MD

    AI Assistant is available now!

    Feel free to start your new journey!