← all jobs

[Remote] NIH - Application Scanning Analyst

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. cFocus Software Incorporated seeks an Application Scanning Analyst to join their program supporting the National Institutes of Health (NIH). This role involves performing application security assessments and vulnerability scanning to enhance application security and support enterprise vulnerability management programs.

Responsibilities

  • Perform authenticated and unauthenticated web application vulnerability scans
  • Conduct application security assessments against internally developed and commercial applications
  • Perform Dynamic Application Security Testing (DAST) and support Static Application Security Testing (SAST) activities
  • Assess APIs, web services, and middleware for security vulnerabilities
  • Conduct application configuration reviews and identify security weaknesses
  • Perform recurring vulnerability scans in accordance with Government-defined schedules
  • Analyze application scan results to identify security vulnerabilities and misconfigurations
  • Validate scan findings to eliminate false positives
  • Prioritize vulnerabilities using risk-based methodologies, including CVSS scoring and exploitability
  • Correlate application vulnerabilities with infrastructure and network risks
  • Identify critical vulnerabilities requiring immediate remediation
  • Perform root cause analysis for recurring application security issues
  • Collaborate with software development teams to improve application security
  • Provide remediation recommendations aligned with secure coding practices
  • Assist developers with vulnerability mitigation strategies
  • Support integration of security scanning into DevSecOps and CI/CD pipelines
  • Recommend application security improvements throughout the software development lifecycle (SDLC)
  • Promote secure-by-design principles across NIH application environments

Skills

  • Public Trust Clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 5+ years of experience performing application security assessments or web application vulnerability scanning
  • Experience conducting authenticated and unauthenticated web application security testing
  • Experience supporting enterprise vulnerability management programs
  • Experience interpreting application security findings and developing remediation guidance
  • Experience supporting Federal cybersecurity or large enterprise environments
  • GWAPT
  • GWEB
  • CSSLP
  • OSWA
  • CEH

Company Overview

  • cFocus Software automates FedRAMP compliance and develops government chatbots for the Azure Government Cloud, Office 365, and SharePoint. It was founded in 2006, and is headquartered in Largo, Florida, USA, with a workforce of 11-50 employees. Its website is https://cfocussoftware.com/.
  • More open positions

    [Remote] Data Scientist II

    Work from home Full-time role

    [Remote] Project Manager - NCPDP

    Work from home Full-time role

    [Remote] Data Engineer

    Work from home Full-time role

    [Remote] ILA Administrative Assistant, Part-time, Mornings

    Work from home Full-time role

    [Remote] Health IT Business Analyst II

    Work from home Full-time role

    [Remote] AI Consultant

    Work from home Full-time role

    [Remote] Start Your Sales Career: Account Executive Role ($100K)

    Work from home Full-time role

    [Remote] Client Relations Account Executive III

    Work from home Full-time role

    Now Hiring: New Notary Certification for Beginners Work From Home Nationwide Chicago, IL

    Work from home Full-time role

    Technical Solutions Manager

    Work from home Full-time role

    SR Specialized BI Analyst

    Work from home Full-time role

    Customer Technical Support Specialist – careerzynith Accounting Software – Remote Home‑Based Role for Small Business Success

    Work from home Full-time role

    Entry-Level Remote Data Entry Associate – $27/hr – Work‑From‑Home – No Experience Required at careerzynith

    Work from home Full-time role

    Remote Amazon Data Entry Jobs Hiring - Part-Time - No Experience

    Work from home Full-time role

    Pre-Authorization Spec - Must have Experience submitting Pre Auth/direct portal

    Work from home Full-time role

    Creative Strategist lead - Maternity Cover

    Work from home Full-time role

    Head of Performance Marketing

    Work from home Full-time role

    Remote Customer Service Representative – Home‑Based Support for careerzynith Products & Services

    Work from home Full-time role

    Junior Identity Security Metrics Consultant & Databricks Analyst

    Work from home Full-time role

    Remote Chat Support Specialist – Real‑Time Client Engagement & Service Excellence for careerzynith Public Relations Agency

    Work from home Full-time role

    Manager, Drug Safety & Pharmacovigilance - Remote

    Work from home Full-time role