Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
GL
Gormat, LLC
System Engineer 2
Career Insights for Systems Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Maryland data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Systems Engineer creates computer and data communication networks for companies and organizations. Plans and designs layout for a network, determines the hardware needed and placement of computers, servers, cables and routers; determines data storage, system capacity, and speed.
$121,841 / year median in Maryland
+3% projected growth
Job Description
Job Requirements Annapolis Junction, MD Top Secret/SCI Polygraph Senior Level Career (10+ yrs experience) $140,000 - $155,000 Job Description Software Analyst supports the mission of the National Information Assurance Partnership by conducting in-depth software assurance and Software Bill of Materials (SBOM) analysis for commercial technologies seeking evaluation, authorization, or deployment within National Security Systems (NSS) and other sensitive U.S. Government environments. This role focuses heavily on software supply chain transparency, software provenance, open-source software (OSS) risk analysis, vulnerability identification, and vendor cybersecurity practices. The analyst evaluates software components, dependencies, development practices, and third-party supplier risks to identify potential threats to the confidentiality, integrity, and availability of government systems. The position requires strong technical analysis, cybersecurity knowledge, and the ability to assess software ecosystems from both a security and supply chain perspective. Key Responsibilities Conduct Software Bill of Materials (SBOM) analysis on commercial software products, platforms, and applications undergoing evaluation or review. Analyze software dependencies, transitive dependencies, and third-party libraries to identify supply chain risks and hidden software exposure. Review and validate SBOM formats and standards including: SPDX CycloneDX SWID tags Assess software provenance, code lineage, package integrity, and software component authenticity. Identify known vulnerabilities and software weaknesses through: CVE analysis KEV review Vulnerability databases Threat intelligence sources Evaluate risks associated with: Open-source software (OSS) Foreign-developed software components Unsupported or end-of-life dependencies Unmaintained libraries Software obfuscation or lack of transparency Perform secure software supply chain assessments aligned with: