Jobbörse
Finde Jobs in deiner Nähe – ob vor Ort, hybrid oder remote.- Ähnliche Jobs zu: Senior Security Analyst, Customer Assurance
Senior Ruby on Rails Security Analyst
6AM City, LLCWashingtonJob DescriptionJob DescriptionPOSITION SUMMARY: CODICE seeks a highly skilled Senior Vulnerability Code Analyst specializing in Ruby-on-Rails to join our team. This role is critical in ensuring the se
Senior Enterprise Security Analyst: SIEM & Forensics
AmtrakWashingtonYour success is a train ride away!As we move America’s workforce toward the future, Amtrak connects businesses and communities across the country. We employ more than 20,000 diverse, energetic profess
Senior Information Security Analyst
National Education AssociationWashingtonPosting Period:May 08, 2026 - Until FilledEmployee Type:NEASO NEA Staff Organization, OO114 Information Technology Services Department (ITS)Position Type:RegularSalary Range:$102,062.00 - $158,178.00R
Travel Nurse - Med Surg Job in Winston-Salem, NC - $2,190 per Week (2 YearsExperience Needed)
Vetted HealthWashingtonVetted is seeking a RN - Med Surg for a travel job in Winston-Salem, North Carolina . Must have 2+ years of experience. This contract pays approximately $9,489/month gross. Assignment details
Primary Care Nurse Practitioner or Physician Assistant - DC Union Station Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Primary Care Physician - DC Metro - Union Station Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Per Diem Primary Care Physician (Casual Employee) DC Farragut Square Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Primary Care Nurse Practitioner or Physician Assistant - DC Thomas Circle Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Primary Care Physician - DC Metro - Farragut Square Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Primary Care Physician - DC Metro - Adams Morgan Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Virtual Primary Care Physician - NY, DC or CA Licensed
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Primary Care Nurse Practitioner or Physician Assistant - DC Adams Morgan Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Per Diem Primary Care Physician (Casual Employee) DC Thomas Circle Office
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office. We
Family Medicine Nurse Practitioner (Casual Employee)
One MedicalWashingtonAbout Us One Medical is a primary care solution challenging the industry status quo by making quality care more affordable, accessible and enjoyable. But this isn’t your average doctor’s office.
Dedicated CDL-A Truck Driver Job (Earn Up to $70,000/Yr)
US XpressWashingtonCDL-A Truck Drivers: GREAT ROUTES AVAILABLE! Top Pay & Benefits OTR Drivers: Average 2,000+ miles per week. Bonuses may be available. Count on consistent miles and paycheck with flexible home time t
Registered Dental Hygienist
Rieser Family Dental, LLCWashingtonWe have and immediate opening for a Full or Part-Time Registered Dental Hygienist. Monday 8:00am-3:00pm, Tuesday & Wednesday 10:30am-6:00pm Thursday 8:00am-3:00pm Every other Friday 8:00am-2:00pm
Nurse Supervisor RN-Specialty
MercyWashingtonFind your calling at Mercy! Supervises and coordinates daily activities of the nursing staff to include responsibility to supervise operations and address nursing practice issues. Directs patient car
LPN - Cardiac Telemetry - Full Time - Nights
MercyWashingtonFind your calling at Mercy! Utilizes the nursing process to provide patient care under the supervision of person(s) licensed by a State regulatory board to prescribe medication and treatment, or unde
Patient Care Technician - 7 East - Part-time
Children's National HospitalWashingtonThis is a part-time position working 12 hour shifts that can rotate between day and night and every other weekend.Department Information - 7 East is a 50-bed Pediatric Medical Care Unit that provides
Treatment Support Technician
Gateway RehabWashingtonJob Type Full-time Description ATTENTION! $1,000 SIGN-ON BONUS!THIS MIGHT BE YOUR NEXT GREAT CAREER MOVE! Looking for a meaningful full-time job where you can make a difference and stay busy? Gateway
Ambulatory Patient Care Tech - Friendship Heights
Children's National HospitalWashingtonThis is a full time position that will work day shift, 8:30am - 5:00pm.The Ambulatory Patient Care Tech will work in collaboration with the multidisciplinary health care delivery team under the direct
Patient Care Technician | PACU
Children's National HospitalWashingtonThis is a full time, day shift position working 8:00am - 4:30pm with occasional weekends.In collaboration with the multidisciplinary health care delivery team, under the direction of the Registered Nu
Attorney - Corporate Immigration
WashingtonJob Description Job DescriptionUSILAW - a leading Global Corporate Immigration law firmheadquartered in Bethesda, Maryland islooking for motivated attorneys with between1 to 3 years of experiencein U.
Patient Care Technician
BridgePoint HealthcareWashingtonBRIDGEPOINT CONTINUING CARE HOSPITAL - NATIONAL HARBORSIDEPatient Care Tech - Be the Heart of Medically Complex CareBridgePoint Continuing Care Hospital - National Harborside | Washington, DC Position
Family Practice - Without OB Physician
Washington DCWashingtonAre you a primary care physician who values precision, clinical excellence, and patient-centered care? Closeknit brings together structured, evidence-based care models with a compassionate approach to
Senior Ruby on Rails Security Analyst
- Washington, Utah, United States
- Washington, Utah, United States
Über
Job Description
POSITION SUMMARY: CODICE seeks a highly skilled Senior Vulnerability Code Analyst specializing in Ruby-on-Rails to join our team. This role is critical in ensuring the security of our client’s platforms by performing thorough vulnerability code analysis prior to the deployment of every change. The ideal candidate will possess deep technical expertise in both Ruby on Rails and security practices, including extensive experience in code analysis and secure coding principles. ESSENTIAL FUNCTIONS Duties and Responsibilities Conduct vulnerability code analysis on the client’s platforms, with a focus on Ruby-on-Rails applications. Perform security assessments prior to the deployment of every code change. Utilize static and dynamic code analysis tools to identify potential vulnerabilities and security risks. Conduct threat modeling and risk assessments for new and existing applications. Work closely with development teams to remediate identified vulnerabilities and implement secure coding practices. Provide guidance and mentorship on secure coding principles and best practices. Stay current with emerging security threats and vulnerabilities, particularly those affecting Ruby-on-Rails applications. Collaborate with the CISO and other security team members to enhance overall application security posture. Develop and maintain security standards and guidelines for Ruby-on-Rails development. Participate in the software development lifecycle to ensure security is integrated at every stage. Conduct code reviews with a security focus and provide actionable feedback to developers. Assist in the selection and implementation of appropriate security tools and technologies. Contribute to the development of security policies and procedures related to application security. Prepare detailed reports on vulnerability assessments and remediation recommendations. Knowledge, Skills and Abilities o
Coding Languages Ruby Demonstrated expert-level proficiency in Ruby programming language In-depth understanding of Ruby on Rails framework and its security implications Experience with Ruby version management tools (e.g., RVM, rbenv) Familiarity with Ruby testing frameworks (e.g., RSpec, Minitest) Additional Languages Demonstrated familiarity with at least one of the following: PHP: Understanding of common PHP frameworks and their security considerations Bash: Ability to write and analyze shell scripts for potential vulnerabilities PowerShell: Knowledge of PowerShell scripting and its security implications in Windows environments Python: Familiarity with Python scripting, especially in the context of security tools and automation o
Code Analysis Tools Static Analysis Tools Demonstrated expertise with tools such as: Fortify: Ability to configure, run, and interpret results from Fortify static code analysis Checkmarx: Experience with Checkmarx SAST and its integration into CI/CD pipelines Veracode: Proficiency in using Veracode's static analysis capabilities SonarQube: Skill in setting up and managing SonarQube for continuous code quality and security checks o Dynamic Analysis Tools Demonstrated expertise with tools such as: Burp Suite: Advanced knowledge of using Burp Suite for web application security testing OWASP ZAP: Experience in configuring and using ZAP for automated and manual security testing o Fuzzing Tools and Techniques Familiarity with fuzzing concepts and tools Experience with tools like AFL (American Fuzzy Lop) or libFuzzer Understanding of how to integrate fuzzing into the development and testing process o
Security Technologies and Concepts Vulnerability Knowledge Demonstrated expert knowledge of common cyber security vulnerabilities, including: In-depth understanding of the OWASP Top Ten and how they apply to Ruby on Rails applications Comprehensive knowledge of the CWE/SANS Top 25 Most Dangerous Software Errors Ability to identify and explain less common vulnerabilities specific to Ruby on Rails Attack Vectors Understanding of various attack methodologies used against web applications Knowledge of how these attacks can be executed and mitigated in a Ruby on Rails environment Secure Coding Practices In-depth knowledge of secure coding practices for Ruby on Rails Understanding of input validation, output encoding, and other security controls specific to web applications Familiarity with Ruby on Rails security features and best practices SDLC Security Comprehensive understanding of how to integrate security into each phase of the Software Development Life Cycle Experience with security practices in Agile and DevOps environments o
Vulnerability Management Threat Modeling Experience with threat modeling methodologies (e.g., STRIDE, DREAD) Ability to create and analyze threat models for Ruby on Rails applications Skill in identifying potential threats and proposing appropriate mitigations Risk Assessment Proficiency in conducting risk assessments for web applications Ability to prioritize vulnerabilities based on their potential impact and likelihood Experience in using risk assessment frameworks and methodologies Remediation Process Management Proven experience in managing the vulnerability remediation process Ability to work effectively with development teams to ensure timely fix of security issues Experience in tracking and reporting on remediation progress Skill in providing clear, actionable guidance for addressing identified vulnerabilities QUALIFICATIONS Required Education: Bachelor's degree in Computer Science, Information Security, Software Engineering, or a related field Required Experience: § Minimum of 5 years of experience in application security, with a specific focus on Ruby on Rails applications § Demonstrated track record of identifying and mitigating security vulnerabilities in complex web applications § Experience working in an Agile development environment and integrating security into CI/CD pipelines § History of successful collaboration with development teams to implement security best practices § Strong analytical and problem-solving skills with attention to detail § Excellent communication skills (both written and verbal) for explaining complex security concepts to various stakeholders § Ability to work effectively in a team environment § Self-motivated with a passion for continuous learning in the rapidly evolving field of application security Preferred Education: Advanced degree (Master's or Ph.D.) in a relevant field is a plus Preferred Licensure/ Certification: Offensive Security Certified Professional (OSCP)
Demonstrates hands-on ability to identify and exploit vulnerabilities Indicates a strong understanding of offensive security techniques
GIAC Web Application Penetration Tester (GWAPT)
Shows specialized knowledge in web application security testing Indicates proficiency in identifying and exploiting web application vulnerabilities
Certified Secure Software Lifecycle Professional (CSSLP)
Demonstrates comprehensive knowledge of secure software development practices
Indicates understanding of security considerations throughout the entire software lifecycle Company Description CODICE provides innovative solutions in health information management for the full lifecycle of healthcare finance and compliance operations. Our customized knowledge-based software helps manage healthcare costs.
At the heart of CODICE services are our technology competencies. Paired with our unparalleled process methods, these competencies deliver solutions and results that become an integral part of our clients success. CODICE's technical expertise can be leveraged for full system development, project management or staff augmentation. CODICE areas of expertise include:
SYSTEM DEVELOPMENT: Fully customized development from requirements to testing.
ENTERPRISE CONTENT MANAGEMENT: System implementations for content management, digital assets, web content and record keeping.
SYSTEM INTEGRATION: Expert integrations using open standards, APIs, and a comprehensive toolkit to seamlessly link applications.
DATA WAREHOUSING & BUSINESS INTELLIGENCE: Data collection and analysis from multiple sources into a single access point portal that provides tools for key business functions.
Company Description
CODICE provides innovative solutions in health information management for the full lifecycle of healthcare finance and compliance operations. Our customized knowledge-based software helps manage healthcare costs.
At the heart of CODICE services are our technology competencies. Paired with our unparalleled process methods, these competencies deliver solutions and results that become an integral part of our clients success. CODICE's technical expertise can be leveraged for full system development, project management or staff augmentation. CODICE areas of expertise include:
SYSTEM DEVELOPMENT: Fully customized development from requirements to testing.
ENTERPRISE CONTENT MANAGEMENT: System implementations for content management, digital assets, web content and record keeping.
SYSTEM INTEGRATION: Expert integrations using open standards, APIs, and a comprehensive toolkit to seamlessly link applications.
DATA WAREHOUSING & BUSINESS INTELLIGENCE: Data collection and analysis from multiple sources into a single access point portal that provides tools for key business functions. #J-18808-Ljbffr
Sprachkenntnisse
- English
Dieses Stellenangebot stammt von einer Partnerplattform von TieTalent. Klick auf „Jetzt Bewerben”, um deine Bewerbung direkt auf deren Website einzureichen.