Application Security Engineer

Via Logic LLC

Ashburn (VA)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Leidos is seeking a security-focused professional to monitor CBP CSD applications and drive secure software development practices. The role emphasizes implementing ML/AI enhancements, collaborating with development teams, and ensuring secure container deployments.

Ideal candidates have a strong background in SAST/DAST/SCA, secure coding, and experience in Agile environments; willingness to report to Ashburn, VA up to five days a week.

Qualifications

  • BS degree in Information Technology, Software Engineering, or related field; 8–12 years of experience.
  • 3+ years of experience in application security with emphasis on SAST, SCA, DAST.
  • Knowledge of secure coding practices and SDLC integration.

Responsibilities

  • Ensure continuous monitoring of all CSD managed applications and implement alerting for critical incidents.
  • Participate in market research to identify new security solutions to improve security posture.
  • Develop, deploy, maintain, and assist in ML/AI integration into CBP’s security tool suite.
  • Integrate security best practices into the SDLC from design to deployment.
  • Utilize SAST/DAST/other tools to analyze and remediate vulnerabilities.

Skills

Programming/scripting
Communication
Agile

Education

BS in IT/Software/related field

Tools

SAST
SCA
DAST
Kubernetes/Rancher
Cloudera
CI/CD
GitLab

Job description

The Department of Homeland Security (DHS), Customs and Border Protection (CBP) Cyber Security Directorate (CSD) Security Operations Center (SOC) is a US Government program responsible for preventing, identifying, containing, and eradicating cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. The CBP SOC is responsible for the overall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations.

Primary Responsibilities
  • Ensure continuous monitoring of all CSD managed applications and implement an alerting system for critical incidents
  • Participate in market research to identify new security solutions as required to avoid obsolescence and to improve the overall security posture
  • Develop, deploy, maintain, and/or assist in the implementation and integration of Machine Learning (ML) and Artificial Intelligence (AI) into CBP’s security tool suite.
  • Integrate security best practices into the software development life cycle (SDLC) and ensure security is embedded from design to deployment.
  • Utilize SAST tools to analyze source code for vulnerabilities.
  • Work closely with development teams and ISSOs to remediate identified security issues.
  • Conduct security assessments using Microfocus WebInspect and other DAST tools.
  • Collaborate with development teams to address and remediate dynamic security findings.
  • Implement and manage container security tools, with a focus on Anchore, to ensure secure container deployments.
  • Provide recommendations for secure container orchestration.
  • Work on ensuring systems and applications comply with Security Technical Implementation Guide
  • Establish and maintain the definitive current basis for control and status accounting of application systems and their configuration items.
  • Select configuration items at appropriate levels for application products to facilitate documentation, control
  • Tune logging capabilities for efficiency, identify shortfalls, and recommend improvements and new technologies for application logging.
  • Support the CSD Service Desk in managing and executing the Vulnerability Identification and Remediation process for applications.
Basic Qualifications
  • BS degree in Information Technology, Software Engineering, or related field and 8 - 12 years of prior relevant experience
  • 3+ years of prior experience in application security with a focus on SAST, SCA, DAST
  • Knowledge of secure coding practices and integration into SDLC
  • Familiarity with common security frameworks and standards
  • Strong programming/scripting skills
  • Excellent communication and collaboration skills
  • Working in an Agile project management environment
  • Must have a Top Secret Clearance with SCI
  • Must be able to report into the Ashburn VA office up to 5 days per week.
Preferred Qualifications
  • Master’s with 1-2 years of prior experience in application security with a focus on SAST, SCA, DAST
  • Experience with data engineering tools such as Kubernetes/Rancher, Cloudera
  • Experience with Configuration Management and IaC tools such as Salt or Ansible
  • Experience with scripting languages, CI/CD tools, Elasticsearch, or Gitlab
  • Experience working in an air-gapped environments
  • Experience working in large computing environments > 1,000 end-points
Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Leidos Inc • Ashburn (VA)

On-site
USD 107,000 - 196,000
Assessment & Authorization Analyst
Assessment & Authorization Analyst

Koitecc Solutions • Ashburn (VA)

On-site
USD 87,000 - 157,000
Health and Wellness programs
Paid Leave
Retirement
AI Security Specialist
AI Security Specialist

Via Logic LLC • Ashburn (VA)

On-site
USD 150,000 - 190,000
Assessment & Authorization Analyst
Assessment & Authorization Analyst

Leidos Inc • Ashburn (VA)

On-site
USD 69,550 - 125,725
Health and Wellness programs
Income Protection
Paid Leave
+1
AI Security Specialist
AI Security Specialist

Koitecc Solutions • Ashburn (VA)

On-site
USD 140,000 - 210,000
Assessment & Authorization Analyst
Assessment & Authorization Analyst

Leidos • United States

On-site
USD 69,550 - 125,725
Operations & Maintenance Cloud Engineer
Operations & Maintenance Cloud Engineer

Via Logic LLC • Ashburn (VA)

Hybrid
USD 100,000 - 130,000
Assessment & Authorization Analyst
Assessment & Authorization Analyst

Leidos • Ashburn (VA)

On-site
USD 87,000 - 157,000
Health benefits
Paid leave
Retirement plan
Operations & Maintenance Cloud Engineer
Operations & Maintenance Cloud Engineer

Leidos • Ashburn (VA)

Hybrid
USD 87,000 - 158,000
AI Security Specialist
AI Security Specialist

Leidos Inc • Ashburn (VA)

On-site
USD 107,000 - 196,000