iWorks Corporation, founded in 2005, is a leading provider of information technology and professional services to the federal government. We are a recognized leader in personnel security and vetting solutions, Agile, DevOps, DevSecOps, data analytics, and cloud solutions. Our continuous process improvement approach, combined with our business and technology expertise, results in innovative solutions.
Application Security Tooling Admin [Journeyman] (Remote)
Location
United States
Posted
59 days ago
Salary
$110K - $135K / year
Seniority
Mid Level
Job Description
Application Security Tooling Admin [Journeyman] (Remote)
iWorks Corporation
Title: Application Security Tooling Admin (Journeyman) Location: Remote - About iWorks: iWorks Corporation, founded in 2005, is a leading provider of information technology and professional services to the federal government. We are a recognized leader in personnel security and vetting solutions, Agile, DevOps, DevSecOps, data analytics, and cloud solutions. Our continuous process improvement approach, combined with our business and technology expertise, results in innovative solutions. We offer exceptional comprehensive benefits (Medical, Dental, Vision, Life and Disability); 401(k); Health and Wellness Benefits; and Paid Sick Time, Vacation Time, and Holiday Time. You're eligible for bonuses throughout the year as part of our incentive program for innovation and business development. All employees are also considered for an annual raise, commensurate with performance and company commitment. About this position: iWorks is seeking an Application Security Tooling Administrator to design, operate, and continuously improve a defense agency's application security (AppSec) scanning ecosystem across the software development life cycle (SDLC). This role will support Sonatype, Fortify, StackRox/Red Hat ACS, and Burp Suite tooling, integrating them into CI/CD pipelines and ensuring auditable, mission-ready security controls in regulated environments. Salary Range: $110,000 – $135,000 - commensurate with the candidate's skills, experience, location, and qualifications. On a day-to-day basis, you will: - Deploy, configure, harden, and maintain Sonatype, Fortify, StackRox/Red Hat ACS, and Burp Suite in on-prem and cloud environments, including Oracle Cloud. - Manage tool upgrades, plugins, licensing, backup/restore, high availability, and disaster recovery. - Integrate AppSec tools into CI/CD pipelines (Jenkins, GitLab CI, etc.) with policy-based gating. - Standardize developer workflows with secure-by-default practices, reference templates, and pull request checks. - Define and tune scanning policies, reduce false positives/negatives, and maintain auditable vulnerability management workflows. - Provide actionable vulnerability findings with secure coding guidance and coordinate remediation with engineering teams. - Implement container/Kubernetes security measures, including image scanning, runtime detection, admission controls, and policy enforcement. - Produce metrics, dashboards, and compliance reports to support RMF/ATO requirements. - Participate in Agile project management and utilize Jira for workflow tracking. Required Education/Qualifications: - Active Secret clearance - 3+ years of experience in Application Security or DevSecOps (regulated environments) - Hands-on experience with AppSec tools: Sonatype, Fortify, StackRox/Red Hat ACS, and Burp Suite - Experience integrating security tools into CI/CD pipelines and automating workflows - Knowledge of Secure SDLC, OWASP Top 10, and application/container security concepts - Linux fundamentals, networking basics, and authentication (SSO/LDAP) - Familiarity with common development stacks (Java, .NET, Node.js, Python) - Experience with Oracle Cloud Infrastructure (OCI) - DoD 8570 IAT II certification (e.g., Security+) Preferred Qualifications: - DoD/IC experience with RMF, STIGs, and vulnerability management processes. - Experience with container registries/orchestration: Harbor, Artifactory, ECR, Kubernetes/OpenShift, Helm. - Integration experience with SIEM/SOAR and ticketing systems (Splunk, ServiceNow, Jira). - Additional certifications: CISSP, CSSLP, GIAC, Kubernetes security certifications. Please Note: We maintain an on-camera policy for all virtual company meetings to foster engagement and collaboration. Reasonable exceptions may be granted with prior approval from Human Resources and/or the applicable manager or client. FLSA & EMPLOYMENT STATUS: FLSA EXEMPT AND FULL-TIME POSITION iWorks Corporation is an Equal Employment Opportunity/Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, Veteran status, sexual orientation, or other protected characteristic. iWorks is committed to maintaining a safe and productive work environment for all employees and ensuring the security and well-being of our clients. As part of our standard hiring process, we may conduct background checks and drug screenings on potential candidates to assess their suitability for employment.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Social Security Claims Specialist
Lincoln FinancialWe help people confidently plan for their version of a successful financial future.
• Supports and promotes change management and/or departmental/enterprise initiatives within assigned area(s) of responsibility. • Meets or exceeds departmental quality and service standards. • Works overtime as needed. • Delivers routine work independently, in accordance with established procedures and guidelines, in a timely manner and meets deadlines appropriately. • Makes routine & non-routine decisions, applying limited but increasingly more discretion within role except for matters of significance which affect the business as a whole or a significant part of it, in accordance with established procedures & guidelines. • Applies expanded knowledge obtained from the role in increasingly more complex situations and continues to acquire more knowledge to apply in role. • Provides a diverse range of information and performs a diverse range of tasks/transactions related to common programs and services. • Reviews and interprets disability insurance policies with specific attention to provisions related to other income and/or offsets. • Contacts and educates claimants eligible for SSDI benefits. • Explains both the differences and coordination between the disability policy/benefits and the SSA's benefits/adjudication. • Provides initial guidance and continues on-going communication with claimants regarding their SS responsibilities and follow-up items until a final determination is made. • Accurately posts SS offsets in applicable system(s). • Develops and maintains working relationships with SSDI vendors and/or claimant attorneys. • Works closely with internal benefits/claims teams; regularly providing information and updates regarding Social Security eligibility and determinations. • Recognizes issues and raises concerns to management, with recommendations for improvement. • Takes initiative to investigate issues and identify root causes; recommends solutions to improve operational effectiveness. • Maintains and updates knowledge of SSDI guidelines and departmental policies & procedures.
Cybersecurity Intern
Sungrow USA CorporationSungrow Power Supply Co., Ltd. (Stock code: 300274) is a globally recognized renewable energy company, specializing in R&D, manufacturing, and services for solar, wind, energy storage, hydrogen, and electric vehicle solutions. Established in 1997, Sungrow is known for its innovative photovoltaic inverters, wind converters, EV chargers, energy storage systems, and hydrogen production technologies. Its products are sold in over 180 countries, with a cumulative installed capacity exceeding 740 GW by the end of 2024. Sungrow has contributed to national standards and holds numerous core technologies. With multiple industry awards and advanced R&D centers, it ranks among the global leaders in clean energy. Guided by its mission “Clean power for all,” Sungrow continues to drive innovation and global sustainability.
Role Description Sungrow Americas is seeking a Cybersecurity Intern to support key initiatives across the cybersecurity program, including governance, product security, and security operations. This role provides hands-on exposure to real-world cybersecurity practices in a critical infrastructure environment, while contributing to active projects that improve security posture, compliance readiness, and operational efficiency. The intern will work across multiple teams to support analysis, documentation, tracking, and technical validation efforts, gaining practical experience in a structured, high-impact environment. Key Responsibilities - Program Support & Execution - Assist in tracking cybersecurity initiatives, tasks, and deliverables across teams - Support documentation of processes, controls, and project artifacts - Help maintain consistency and organization across security workflows - Governance, Risk & Compliance (GRC) - Support policy and control documentation efforts - Assist with evidence collection and audit preparation activities - Help review and organize responses to customer security questionnaires - Product & Application Security Support - Assist with basic security testing and validation activities - Support documentation of findings and remediation tracking - Help maintain visibility into product security tasks and outcomes - Security Operations Support - Assist in reviewing alerts, logs, or security events (under supervision) - Support documentation of incident response activities - Help maintain tracking of operational security tasks - Research & Analysis - Conduct research on: - Emerging threats - Security tools and practices - Regulatory and compliance requirements - Summarize findings into clear, usable outputs for the team Qualifications - Currently pursuing a degree or recently achieved a degree in Cybersecurity, Computer Science, Information Technology, or related field - Basic understanding of: - Cybersecurity principles and common threats - Networking fundamentals - Operating systems (Windows/Linux) - Strong organizational and documentation skills - Ability to communicate clearly and work in a team environment - Interest in learning across multiple areas of cybersecurity Preferred - Exposure to: - Security tools (SIEM, vulnerability scanners, etc.) - Scripting or programming (Python, Bash, etc.) - Familiarity with frameworks such as NIST or ISO 27001 - Prior internship, lab work, or personal projects related to cybersecurity Competencies - Curious Learner: Actively seeks to understand how systems and security processes work - Detail-Oriented: Produces organized, accurate work - Reliable Contributor: Follows through on assigned tasks - Adaptable: Comfortable working across different areas of cybersecurity - Professional: Communicates clearly and takes feedback well Travel - Up to 10% Work Location and Status - Remote - No visa sponsorship Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only contact candidates who best meet the requirements. Thank you for your interest in Sungrow.
Join Rimkus and unlock your potential with endless opportunities for growth, learning, and making a difference! Rimkus (www.rimkus.com) is a worldwide leader in Engineering and Technical Consulting. Rimkus experts specialize in building envelope, engineering, forensic consulting, dispute resolution, construction management services, and solutions built for the environment. NOW IS THE TIME to join this growing and stable company! We offer our full-time employees a competitive salary, bonus opportunities and a full benefits package that includes medical, dental, vision, life, disability, employer-matching 401(k), and opportunities for advancement!
Instructor – Certified Cloud Security Professional, CCSP
Full Stack AcademyWe aim to transform fresh graduates into software professionals while also helping professionals upgrade their skills.
• Deliver assigned lessons aligned with curriculum learning objectives and session plans. • Facilitate engaging live online instruction using instructional best practices for adult learners. • Provide subject matter expertise in CCSP Certification. • Connect course content to real-world industry applications and professional practices. • Encourage collaboration, critical thinking, and problem-solving within the classroom environment. • Provide individualized student support during live sessions and scheduled office hours. • Maintain regular communication with students regarding progress, expectations, and milestones. • Respond to student and staff communications in a timely and professional manner. • Provide clear, constructive, and timely feedback on assignments and assessments. • Evaluate student progress based on course deliverables and established grading rubrics. • Maintain accurate documentation of student performance and engagement. • Identify and escalate academic or performance concerns to the Lead Instructor or appropriate staff. • Support performance improvement plans when necessary. • Adhere to institutional policies and instructional team standards. • Foster an inclusive, respectful, and professional learning environment. • Serve as a role model and mentor for students. • Collaborate with instructional staff and program teams to improve the student learning experience. • Represent the organization professionally when interacting with students, staff, and external stakeholders.


