Security Testing Lead - Computer World Services - Falls Church, VA
Computer World Services
Computer World Services Corp. (CWS) is seeking a highly qualified Security Testing Lead. This position is responsible for planning, coordinating, and executing security testing activities that support the Enterprise Testing program and ensure that application security risks are continuously identified, documented, tracked, and remediated. The Lead directs dynamic security testing activities (including common attack vectors such as SQL Injection, XSS, OWASP Top 10 vulnerabilities, and privilege escalation scenarios), supports penetration testing efforts, validates remediation actions, and produces consolidated reporting to inform stakeholders of the current security posture.
\n
Key Tasks & ResponsibilitiesCoordinate and execute dynamic security testing aligned to common attack vectors (OWASP Top 10, SQL Injection, XSS, privilege escalation).Manage results from SAST/DAST scans, dependency scanning, and licensing compliance checks; document and track findings to closure.Maintain and update security test plans, scenarios, and coverage reporting aligned with program security posture and playbook requirements.Support penetration testing activities and validate vulnerability remediation effectiveness.Provide consolidated security risk dashboards and reporting to stakeholders; communicate trends and readiness risks.Coordinate security testing schedules aligned with program milestones and release readiness evaluations.
Education & Experience10+ years (5+ years application security testing in DevSecOps environments) (Tricentis Tosca experience preferred
CertificationsSecurity+ CECEH or PenTest+CSSLP or CISSPPreferred: GIAC GPEN/GWEB (as available)
Security ClearanceCandidate must have active Top Secret Clearance with ability to be cleared to Top Secret/SCI.
Other (Travel, Work Environment, DoD 8570 Requirements, Administrative Notes, etc.)Hybrid Work Environment: Work From Home and attend scheduled work sessions near Hanover, MD. Travel: Participate in scheduled