Overview
Skills
Job Details
Hello!!
Greetings from the Global IT Solutions USI, Inc.
We have an immediate need for one of our Direct End-client(s). So, please go through the below Job Description and if you are interested, apply with your latest resume along your contact details, so that we will be able to get in touch with you, to discuss more about the position.
Candidates that are authorized to work for any employer in United States without Sponsorship are encouraged to apply. Else, Work Authorization MUST BE valid till SEPT 2027.
Position: Cyber Command Software Security Assurance Project Manager Lev.3
Client Location: New York, NY
Work Location: Remote (Must work on EST time zone)
Duration: 24 months (35 hours/week)
Resource Must provide Three (3) Professional References ; Work Authorization & Valid Photo ID
Scope of Services:
- Perform application security services including risk assessments, architecture reviews, and code review for internal and third-party applications.
- Coordinate with developers, project teams, and third-party vendors to assess and guide secure software development and integration.
- Provide consultative guidance during design, development, and deployment phase of new solutions.
- Review threat models, validate security controls, and ensure alignment with security policies.
- Review and interpret security testing reports and vulnerability findings, and assist with risk remediation strategies.
- Contribute improvements in existing AppSec process, workflows, and documentation.
- Participate in defining and expanding secure software development lifecycle practices across the organization.
- Support the development and refinement of policy and governance documents related to software security.
- Track and report on security metrics, status of findings, and overall risk trends.
- Support management of tools, resources, and schedules for security testing
Must have Skills:
- At least 15-20 years of hands-on experience in application security, secure software development, or security consulting.
- Experience conducting security reviews (code, design threat modeling, architecture) for modern applications (web, mobile, cloud-native).
- Strong knowledge of secure development practices, OWASP Top 10, and relevant standards.
- Ability to communicate technical risks and recommendations clearly to technical and non-technical audiences.
- Familiarity with tools used in code analysis, vulnerability scanning, and security testing.
- Experience working cross-functionally with developers, engineers, and product teams.
- Experience working within or alongside DevOps/CI-CD environments.
- Familiarity with container security, API security, and cloud-native application architectures (AWS, Azure, Google Cloud Platform).
- Experience supporting security governance or policy development.
- Experience with risk exception processes or helping define security risk tolerances.
- Experience in large, complex organizations and government/public sector environments.
- Experience with third-party risk assessments, vendor management, or SaaS reviews
Thanks,
Ram M.
Global IT Solutions USI Inc.
Phone: Ext. 205
Mobile:
E-mail:
An E-Verify Company
Certified Minority-owned Business Enterprise (MBE) New York City (NYC), New York State (NYS) and The Port Authority of New York & New Jersey (PANYNJ)