Security Application Architect
- Serves as a cybersecurity analyst with regards to Authorization of information systems and all associated cybersecurity policies and procedures. Supports overall DOD implementation of its authorization process, to.
- Conducts HP Fortify static code analysis scans and provides results to developer teams on a recurring basis.
- Analyzes HP Fortify static code scans and works with developer teams to identify false positives and plan remediation steps.
- Documents false positive findings with justifications within the HP Fortify tool for security team lead review.
- Develops and Maintains Plan of Actions and Milestone (POA&M) and Request for Exceptions (RFE) to document non-compliant security controls, and coordinates with System and Application administrators to plan remediation.
- Coordinates with A&A Team to provide vulnerability management information for inclusion into RMF Package.