Cloud Security Developer (Mid-Level)

DecisionPoint | Cortek
1d

About The Position

DecisionPoint Corporation is seeking a Mid-Level Cloud Security Developer to support the U.S. Transportation Command (USTRANSCOM) Integrated Booking System (IBS) program. This role is responsible for implementing secure development practices within cloud-based and modernized application environments.The Cloud Security Developer works closely with DevSecOps engineers, developers, and cybersecurity teams to ensure that applications are built, deployed, and maintained securely across the system lifecycle.The IBS technology stack includes Angular (TypeScript) and Java (Spring Boot), and this role requires familiarity with these technologies to support secure coding, vulnerability remediation, and application security integration.

Requirements

  • Active Secret Clearance
  • IAT Level II certification (CompTIA Security+ CE required)
  • 3+ years of experience in development or cybersecurity
  • Experience with Java (Spring Boot) and/or Angular (TypeScript)
  • Experience with secure coding and vulnerability remediation
  • Experience with tools like Fortify or SonarQube
  • Familiarity with AWS or cloud environments
  • Familiarity with Docker and Kubernetes
  • Understanding of authentication, authorization, and encryption
  • Strong problem-solving and communication skills

Nice To Haves

  • Experience supporting DoD systems
  • Familiarity with DISA STIGs and RMF
  • Experience with CI/CD security integration
  • Experience with API security and microservices
  • Familiarity with OWASP Top 10
  • Agile/DevSecOps experience

Responsibilities

  • Implement and support secure coding practices across IBS applications
  • Review and remediate findings from Fortify, SonarQube, and similar tools
  • Collaborate with developers to integrate security into the SDLC
  • Support development of secure APIs and application components
  • Support implementation of security controls in cloud environments (AWS preferred)
  • Assist in securing containerized applications (Docker, Kubernetes)
  • Implement authentication, authorization, and encryption mechanisms
  • Support secure configuration of cloud services and applications
  • Analyze and remediate vulnerabilities identified through scans
  • Support compliance with DoD security requirements (STIGs, RMF)
  • Assist with security documentation and ATO support
  • Support continuous monitoring activities
  • Integrate security into CI/CD pipelines
  • Support automated security testing and validation
  • Improve pipeline-based security enforcement
  • Work with development, DevSecOps, and IA teams
  • Document security practices and configurations
  • Guide developers on secure coding
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service