Application Engineer
using tools such as Fortify and Sonatype, and re-mediate vulnerabilities in accordance with Cyber Hardening Policies...
using tools such as Fortify and Sonatype, and re-mediate vulnerabilities in accordance with Cyber Hardening Policies...
, including adherence to OWASP security principles Conduct application security scans using tools such as Fortify and Sonatype... Experience with DevSecOps and security tools such as Jenkins, Fortify, Sonatype, and JIRA Knowledge of DoD Risk Management...
, Checkmarx), SCA (e.g., Veracode SCA, Sonatype) and DAST (e.g., Acunetix, Burp Suite) tools to analyze the security posture...
, Gradle, Helm, Sonatype). Prior exposure to continuous integration/delivery tools such as Jenkins, GitHub Actions, GitLab...
, SonarQube) Experience configuring and operating software composition analysis tools (e.g., Snyk, Sonatype, Anchore, JFrog Xray...
and artifact management (Sonatype Nexus, various build frameworks) Release management and deployment strategies Infrastructure...
such as GitLab or GitHub Enterprise Experience with CI/CD Pipeline tools such as Maven, Make, Git, Artifactory, Sonatype...
Build/sustain CI/CD pipelines with GitLab CI, Terraform, Docker, and Kubernetes. Integrate Sonatype, Fortify... (Fortify, Sonatype, Selenium). DoD 8570: IAT Level II (Security+ CE minimum). Active Secret clearance. COMPETENCIES...