{"schemaVersion":"jobsearcher.job.v1","id":"c2fa69f56cc2b9388fb3929a","url":"https://jobsearcher.com/jobs/c2fa69f56cc2b9388fb3929a","canonicalUrl":"https://jobsearcher.com/jobs/c2fa69f56cc2b9388fb3929a","title":"Senior Vulnerability Code Analyst","description":"We are looking for a Senior Vulnerability Code Analyst specializing in Ruby on Rails. The role involves performing vulnerability code analysis on platforms, ensuring secure coding practices, and supporting vulnerability management.\nTechnical Skills:\nCoding Languages:\nProficiency in Ruby programming language.\nFamiliarity with PHP, Bash, PowerShell, or Python.\nCode Analysis Tools:\nExpertise with static and dynamic code analysis tools such as Fortify, Checkmarx, Veracode, SonarQube, and Burp Suite.\nFamiliarity with fuzzing tools and techniques.\nSecurity Technologies and Concepts:\nExpert knowledge of common cybersecurity vulnerabilities and attack vectors (e.g., OWASP Top Ten, CWE/SANS Top 25).\nUnderstanding of secure coding practices and the software development life cycle (SDLC) security.\nVulnerability Management:\nExperience with threat modeling and risk assessment methodologies.\nExperience managing vulnerability remediation processes and collaborating with development teams to address issues.\nB. Certifications: The following certifications are preferred:\nOffensive Security Certified Professional (OSCP)\nGIAC Web Application Penetration Tester (GWAPT)\nCertified Secure Software Lifecycle Professional (CSSLP)\nExperience and Technical Skills:\nFive years’ experience in the following areas:\nIT security, with a focus on designing and implementing security architectures for cloud environments.\nProficiency with AWS Cloud Platform and cloud security best practices.\nExperience with security technologies such as firewalls, VPNs, IDS/IPS, WAFs, SIEM, and endpoint security solutions.\nKnowledge of encryption, Amazon Cognito, AWS Security Hub, Amazon GuardDuty, and Amazon Inspector.\nFamiliarity with industry standards and regulations such as NIST, HIPAA, and SOC 2, as well as experience in conducting security assessments and audits.\nSkills:\nStrong problem-solving abilities and excellent communication skills, with the ability to explain complex security concepts to non-technical stakeholders.\nAbility to work effectively with cross-functional teams.\nResponsibilities:\nPerform vulnerability code analysis on client platforms, ensuring security compliance prior to deployment.\nCollaborate with the development team to maintain secure coding practices and support vulnerability remediation.\nDeploy and maintain AWS cloud security controls as established by client.\nManage automated security scans and conduct ongoing security assessments to ensure secure operations.\nJob Type: Contract\nPay: $45.00 - $55.99 per hour\nExperience:\nLinux: 3 years (Required)\nPython: 3 years (Required)\nMetasploit: 3 years (Required)\nCybersecurity: 5 years (Required)\nAWS Cloud Security: 3 years (Required)\nAbility to Commute:\nWashington, DC 20035 (Required)\nAbility to Relocate:\nWashington, DC 20035: Relocate before starting work (Required)\nWork Location: Hybrid remote in Washington, DC 20035","company":"Gratitude Systems","rawCompany":"gratitude systems","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-04-12T20:57:17.671Z","occupations":[{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.04","title":"Penetration Testers","slug":"penetration-testers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"541690","title":"Other Scientific and Technical Consulting Services","slug":"other-scientific-and-technical-consulting-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior Vulnerability Code Analyst","description":"We are looking for a Senior Vulnerability Code Analyst specializing in Ruby on Rails. The role involves performing vulnerability code analysis on platforms, ensuring secure coding practices, and supporting vulnerability management.\nTechnical Skills:\nCoding Languages:\nProficiency in Ruby programming language.\nFamiliarity with PHP, Bash, PowerShell, or Python.\nCode Analysis Tools:\nExpertise with static and dynamic code analysis tools such as Fortify, Checkmarx, Veracode, SonarQube, and Burp Suite.\nFamiliarity with fuzzing tools and techniques.\nSecurity Technologies and Concepts:\nExpert knowledge of common cybersecurity vulnerabilities and attack vectors (e.g., OWASP Top Ten, CWE/SANS Top 25).\nUnderstanding of secure coding practices and the software development life cycle (SDLC) security.\nVulnerability Management:\nExperience with threat modeling and risk assessment methodologies.\nExperience managing vulnerability remediation processes and collaborating with development teams to address issues.\nB. Certifications: The following certifications are preferred:\nOffensive Security Certified Professional (OSCP)\nGIAC Web Application Penetration Tester (GWAPT)\nCertified Secure Software Lifecycle Professional (CSSLP)\nExperience and Technical Skills:\nFive years’ experience in the following areas:\nIT security, with a focus on designing and implementing security architectures for cloud environments.\nProficiency with AWS Cloud Platform and cloud security best practices.\nExperience with security technologies such as firewalls, VPNs, IDS/IPS, WAFs, SIEM, and endpoint security solutions.\nKnowledge of encryption, Amazon Cognito, AWS Security Hub, Amazon GuardDuty, and Amazon Inspector.\nFamiliarity with industry standards and regulations such as NIST, HIPAA, and SOC 2, as well as experience in conducting security assessments and audits.\nSkills:\nStrong problem-solving abilities and excellent communication skills, with the ability to explain complex security concepts to non-technical stakeholders.\nAbility to work effectively with cross-functional teams.\nResponsibilities:\nPerform vulnerability code analysis on client platforms, ensuring security compliance prior to deployment.\nCollaborate with the development team to maintain secure coding practices and support vulnerability remediation.\nDeploy and maintain AWS cloud security controls as established by client.\nManage automated security scans and conduct ongoing security assessments to ensure secure operations.\nJob Type: Contract\nPay: $45.00 - $55.99 per hour\nExperience:\nLinux: 3 years (Required)\nPython: 3 years (Required)\nMetasploit: 3 years (Required)\nCybersecurity: 5 years (Required)\nAWS Cloud Security: 3 years (Required)\nAbility to Commute:\nWashington, DC 20035 (Required)\nAbility to Relocate:\nWashington, DC 20035: Relocate before starting work (Required)\nWork Location: Hybrid remote in Washington, DC 20035","datePosted":"2026-04-12T20:57:17.671Z","dateModified":"2026-04-12T20:57:17.671Z","hiringOrganization":{"@type":"Organization","name":"Gratitude Systems","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"c2fa69f56cc2b9388fb3929a"},"url":"https://jobsearcher.com/jobs/c2fa69f56cc2b9388fb3929a"}}