Application Security Engineer

Leidos Inc

Ashburn (VA)

On-site

USD 107,900 - 195,050

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Leidos Inc in Ashburn, VA is seeking an Application Security Engineer to monitor, assess, and harden CBP security tool suite; responsibilities include integrating security into SDLC, applying SAST/DAST tools, and collaborating with development teams.

The role requires a TS/SCI clearance, 8-12 years of experience, and experience with Kubernetes, CI/CD, and logging. This is an on-site position at Ashburn, VA with competitive pay and benefits.

Qualifications

  • BS degree in Information Technology, Software Engineering, or related field and 8 - 12 years of prior relevant experience
  • 3+ years of prior experience in application security with a focus on SAST, SCA, DAST
  • Knowledge of secure coding practices and integration into SDLC
  • Familiarity with common security frameworks and standards
  • Strong programming/scripting skills
  • Excellent communication and collaboration skills
  • Working in an Agile project management environment
  • Must have a Top Secret Clearance with SCI
  • Must be able to report into the Ashburn VA office up to 5 days per week.

Responsibilities

  • Ensure continuous monitoring of all CSD managed applications and implement an alerting system for critical incidents
  • Participate in market research to identify new security solutions as required to avoid obsolescence and to improve the overall security posture
  • Develop, deploy, maintain, and/or assist in the implementation and integration of ML/AI into CBP's security tool suite
  • Integrate security best practices into the SDLC and ensure security is embedded from design to deployment
  • Utilize SAST tools to analyze source code for vulnerabilities
  • Work closely with development teams and ISSOs to remediate identified security issues
  • Conduct security assessments using Microfocus WebInspect and other DAST tools
  • Collaborate with development teams to address and remediate dynamic security findings
  • Implement and manage container security tools, with a focus on Anchore
  • Provide recommendations for secure container orchestration
  • Work on ensuring systems and applications comply with STIGs
  • Establish and maintain the definitive current basis for control and status accounting of application systems
  • Select configuration items at appropriate levels for documentation and control
  • Tune logging capabilities for efficiency and identify shortfalls and improvements
  • Support the CSD Service Desk in managing and executing the Vulnerability Identification and Remediation process

Skills

Programming/Scripting
Secure coding practices
Agile / project management
Communication skills
Collaboration

Education

BS in Information Technology or Software Engineering
Master's degree (preferred)

Tools

Kubernetes/Rancher
Cloudera
Salt/Ansible
Elasticsearch
Gitlab / CI-CD tools

Job description

Description

The Department of Homeland Security (DHS), Customs and Border Protection (CBP) Cyber Security Directorate (CSD) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. The CBPSOC is responsible for the overall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations.

Primary Responsibilities

Leidos is looking for an Application Security Engineer to support:

  • Ensure continuous monitoring of all CSD managed applications and implement an alerting system for critical incidents
  • Participate in market research to identify new security solutions as required to avoid obsolescence and to improve the overall security posture
  • Develop, deploy, maintain, and/or assist in the implementation and integration of Machine Learning (ML) and Artificial Intelligence (AI) into CBP's security tool suite.
  • Integrate security best practices into the software development life cycle (SDLC) and ensure security is embedded from design to deployment.
  • Utilize SAST tools to analyze source code for vulnerabilities.
  • Work closely with development teams and ISSOs to remediate identified security issues.
  • Conduct security assessments using Microfocus WebInspect and other DAST tools.
  • Collaborate with development teams to address and remediate dynamic security findings.
  • Implement and manage container security tools, with a focus on Anchore, to ensure secure container deployments.
  • Provide recommendations for secure container orchestration.
  • Work on ensuring systems and applications comply with Security Technical Implementation Guide
  • Establish and maintain the definitive current basis for control and status accounting of application systems and their configuration items.
  • Select configuration items at appropriate levels for application products to facilitate documentation, control
  • Tune logging capabilities for efficiency, identify shortfalls, and recommend improvements and new technologies for application logging.
  • Support the CSD Service Desk in managing and executing the Vulnerability Identification and Remediation process for applications.
Basic Qualifications
  • BS degree in Information Technology, Software Engineering, or related field and 8 - 12 years of prior relevant experience
  • 3+ years of prior experience in application security with a focus on SAST, SCA, DAST
  • Knowledge of secure coding practices and integration into SDLC
  • Familiarity with common security frameworks and standards
  • Strong programming/scripting skills
  • Excellent communication and collaboration skills
  • Working in an Agile project management environment
  • Must have a Top Secret Clearance with SCI
  • Must be able to report into the Ashburn VA office up to 5 days per week.
Preferred Qualifications
  • Master's with 1-2 years of prior experience in application security with a focus on SAST, SCA, DAST
  • Experience with data engineering tools such as Kubernetes/Rancher, Cloudera
  • Experience with Configuration Management and IaC tools such as Salt or Ansible
  • Experience with scripting languages, CI/CD tools, Elasticsearch, or Gitlab
  • Experience working in an air-gapped environments
  • Experience working in large computing environments (> 1,000 end-points)

Original Posting: July 10, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Product Application Security Engineer
Sr Product Application Security Engineer

Leidos Inc • United States

On-site
USD 87,000 - 157,000
Sr Product Application Security Engineer
Sr Product Application Security Engineer

Leidos • United States

On-site
USD 87,000 - 157,000
Assessment & Authorization Analyst
Assessment & Authorization Analyst

Leidos • Ashburn (VA)

On-site
USD 87,000 - 157,000
Health benefits
Paid leave
Retirement plan
Cyber Infrastructure Support Lead
Cyber Infrastructure Support Lead

Leidos Inc • Concord (MA)

On-site
USD 108,000 - 195,000
Full Stack Developer
Full Stack Developer

Leidos • United States

On-site
USD 131,000 - 238,000
Health and Wellness programs
Paid Leave
Retirement benefits
Application Software Engineer
Application Software Engineer

Leidos • San Diego (CA)

On-site
USD 87,000 - 158,000
Competitive benefits
Flexible schedules
Paid Time Off
+1
Data Systems Engineer
Data Systems Engineer

Leidos Inc • Chantilly (VA)

On-site
USD 87,000 - 158,000
Senior Splunk Engineer
Senior Splunk Engineer

Leidos Inc • Arlington (VA)

On-site
USD 131,000 - 237,000
Software Engineer TS/SCI Poly
Software Engineer TS/SCI Poly

Stryker Corporation • Aurora (CO)

On-site
Confidential
Health insurance
Paid time off
401K with company match
+3
Sr. ISSE with TS/SCI Polygraph
Sr. ISSE with TS/SCI Polygraph

Leidos • Corridor North (MD)

On-site
USD 131,000 - 238,000
Paid Time Off
401K with 6% match
Flexible Schedules
+2