Perform regular SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) scans to identify, triaging, and remediating software vulnerabilities.
Lead the integration and configuration of SonarQube into existing CI/CD pipelines to automate code quality checks and security gating.
Collaborate directly with software engineering teams to interpret scan results, provide remediation guidance, and ensure secure coding practices.
Monitor and report on security metrics, trends, and the overall health of the software security posture.
Stay current on the latest exploits, security trends, and automated testing tools to continuously improve Arcarithm’s defensive capabilities.
Maintain and manage closed area computer systems, ensuring hardware, software, and networking configurations remain compliant with restricted environment protocols.
Execute routine system maintenance, patching, and troubleshooting within air-gapped or classified workspaces.
Ensure all closed-area assets are properly documented, tracked, and ready for government or internal audits.
Coordinate with facility security officers (FSOs) to ensure technical controls align with physical security requirements for high-security areas.
Develop and maintain standard operating procedures (SOPs) for the use and maintenance of secure computing resources.
Requirements
3+ years of hands-on experience in Cybersecurity, Application Security, or Systems Administration within a secure or defense-related environment
Proven experience running and managing SAST/DAST tools and integrating SonarQube into automated pipelines
Experience maintaining 'Closed Area,' SCIF, or air-gapped workstations and servers
Secret DOD Clearance
with ability to obtain Top Secret
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent professional experience)
Exceptional organizational skills with the ability to manage complex security documentation and audit-ready records.