Job Description
Leidos is seeking an **Application Security Engineer** as part of our DevOps team in support of a large-scale, complex software program within the Department of Justice. This role focuses on securing applications by identifying vulnerabilities in code, designing security controls, conducting code reviews, and performing penetration tests to proactively prevent security breaches throughout the software development lifecycle.
### Responsibilities:
- Lead security integration efforts across the software development lifecycle.
- Manage and maintain a library of security audit tools for system security testing, internal audits, incident response, and diagnosis of security-related system issues.
- Identify vulnerabilities in code and collaborate with developers to remediate them.
- Automate security testing in CI/CD pipelines.
- Conduct advanced threat modeling and oversee secure architectural choices.
- Manage security incident response and remediation efforts.
- Mentor developers on secure coding practices and conduct training sessions.
- Track and report progress on security vulnerabilities in formal reviews.
- Establish container security standards and collect compliance evidence for reviews and audits.
### Qualifications:
- Bachelor's degree in Cybersecurity, Computer Science, or related field with 8 years of experience.
- 5+ years of experience in application security engineering.
- Expertise in security tools, security controls, frameworks, and incident response.
- Experience with scripting languages, JavaScript, Angular, and CI/CD tools.
- Strong leadership and communication skills.
### Preferred Skills:
- Experience with compliance evidence collection and risk-based release gating.
- Familiarity with container security standards and IAM governance.
- Knowledge of security scanning integration and vulnerability management.
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers; we're recruiting those who disrupt, provoke, and refuse to fail.