Security Content Automation Protocol (SCAP) Developer
Exceptional Software Strategies, Inc. - Annapolis Junction, MD

This job posting is no longer available on Exceptional Software Strategies, Inc.. Find similar jobs: Exceptional Software Strategies jobs

This position is for a software developer to create configuration management systems capable of interfacing with COTS products such as HBSS, ArcSight, InnerView, Sensage

Responsibilities:
Organize and express security-related information in standardized ways, as well as related reference data, such as identifiers for software flaws and security configuration issues.

·

Maintain the security of enterprise systems, verifying the installation of patches, checking system security configuration settings, and examining systems for signs of compromise.

·

Employ SCAP as a method for using specific standards to enable automated vulnerability management, measurement, and policy compliance evaluation.

·

Provide a working knowledge of SCAP version 1.0 specifications, specifically, XCCDF, OVAL, CCE, CVE, CPE, and CVSS.

Minimum Requirements:
·

This Labor Category must be in compliance with certification requirements detailed in DoD 8570-M, IAT Level 2.

·

Ten (10) years (e.g. B.S. Degree plus 6 yrs) of software development experience.

·

Two (2) years experience with Open Checklist Interactive Language (OCIL) as described in SCAP version 1.0 or 1.1.

·

Experience with XML, which must include:
o

Two (2) years experience programming in an object oriented language such as C#, C++ or Java.

·

Two (2) years experience working with web service development.

·

Two (2) years experience working with benchmarks such as DISA Security Technical Implementation Guides (STIGs) or NSA Security Guides or the National Vulnerability Database (NVD).

·

One (1) year experience with configuration compliance scanning tools, IAVMs, and the SCAP Validation Program.

One (1) year experience using version control software.

Exceptional Software Strategies, Inc. - 24 months ago - save job