Venuiti Solutions Inc. · 1 day ago
Cybersecurity Analyst
Venuiti Solutions Inc. is driving digital innovation in healthcare by delivering secure, scalable software solutions. They are seeking an experienced Cybersecurity Analyst to lead efforts in securing cloud-native applications and integrating strong security practices throughout the development lifecycle.
ComputerHardwareInternetSoftware
Responsibilities
Proven ability to implement RMF processes, security controls, and continuous monitoring to achieve and maintain ATO
Experience with DoD Cyber Security Frameworks as defined by NIST and FedRAMP
Demonstrated expertise with AWS and Network policies, Pod security policies, Container security
Hands-on experience with STIG checklists and eMASS including CCI documentation
Proven track record of improving DHA and DISA operational efficiency in an agile tech environment
Strong technical background with multiple Application Security Tools (SAST, DAST, SCA) and the integration into the SDLC via CI Automation and Integration
Strong knowledge of containers and deployment of containerized applications/microservices architectures
Familiarity with automating tasks in Cloud Infrastructure with serverless technologies and know how event-driven patterns are constructed
Hands-on experience with CI/CD tools such as GitHub Actions & Jenkins for security deployment automation
Familiarity with threat modelling and security design review methodologies
Qualification
Required
US Citizenship Is Required For Security Clearance
5+ years of hands-on experience in cybersecurity and federal security compliance including use of their security tooling
Proficient in scripting languages (Python, Bash, or similar) and experience with RESTful APIs
Experience with modern source code management and software repository systems e.g. Visual Studio, Git/GitHub, etc
Through understanding of base Cloud Infrastructure constructs - Virtual Private Cloud, Subnets, Security Groups and 3-tier application architecture
Deep understanding of the fundamentals of security at multiple layers of abstraction, from operating systems to applications
Strong advocate for automation-first approaches and a passion for driving innovation in secure software development
Proven ability to implement RMF processes, security controls, and continuous monitoring to achieve and maintain ATO
Experience with DoD Cyber Security Frameworks as defined by NIST and FedRAMP
Demonstrated expertise with AWS and Network policies, Pod security policies, Container security
Hands-on experience with STIG checklists and eMASS including CCI documentation
Proven track record of improving DHA and DISA operational efficiency in an agile tech environment
Strong technical background with multiple Application Security Tools (SAST, DAST, SCA) and the integration into the SDLC via CI Automation and Integration
Strong knowledge of containers and deployment of containerized applications/microservices architectures
Familiarity with automating tasks in Cloud Infrastructure with serverless technologies and know how event-driven patterns are constructed
Hands-on experience with CI/CD tools such as GitHub Actions & Jenkins for security deployment automation
Familiarity with threat modelling and security design review methodologies
Ability to Commute: Buffalo, NY 14233 (Required)
Work Location: In person