Senior Secure SDLC & DevSecOps Architect

Navy Federal Credit Union

Winchester (VA)

On-site

USD 120,000 - 170,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Navy Federal Credit Union is seeking a Product Security Engineer - Secure Development Lifecycle to define, mature, and integrate secure SDLC practices across its software delivery environment. This senior IC partners with ETS, Product Engineering, Architecture, and Information Security to embed security into workflows and governance.

You will translate standards into practical engineering requirements, develop playbooks and RACI models, reduce security friction, and lead cross-functional

Qualifications

  • Bachelor's degree in information technology, Cybersecurity, Computer Science, Software Engineering, Information Systems, Engineering, or related field, or the equivalent combination of education, training, and experience.
  • Strong understanding of secure development practices including threat modeling, secure coding, application security testing, software composition analysis, API security, software supply chain security, vulnerability management, and risk-based exception handling.
  • Extensive hands-on experience translating security requirements, control objectives, or risk expectations into practical engineering processes, workflow guidance, and delivery requirements.
  • Demonstrated experience developing process documentation, operating models, workflow diagrams, playbooks, standards, RACI models, implementation guidance, or executive-level recommendations.

Responsibilities

  • Define and mature Secure Software Development Lifecycle practices aligned to Navy Federal software delivery processes, operating models, and secure development practices.
  • Define and support a pre-production product security scorecard to support risk-informed release decisions, ensuring product security posture, open risks, exceptions, and required remediation actions are clearly communicated to business and technology stakeholders.
  • Serve as the senior individual contributor integration lead for embedding Secure Development Practice capabilities into Navy Federal engineering workflows, governance forums, and lifecycle activities.
  • Map product security activities to software delivery processes including intake, planning, architecture review, design, development, testing, release, exception management, and operational handoff.
  • Establish repeatable process patterns for integrating threat modeling, secure coding, application security testing, software composition analysis, API security, software supply chain security, product integrity testing, and risk-based exception handling into engineering workflows.
  • Identify and reduce redundant reviews, unclear handoffs, late-stage security friction, and legacy process steps that are not aligned to Navy Federal software delivery practices.
  • Develop Secure SDLC operating models, workflow diagrams, playbooks, process documentation, RACI models, control integration points, and implementation guidance.
  • Translate security standards, objectives, and risk expectations into practical engineering requirements and developer-consumable guidance.
  • Partner with software engineering, architecture, DevSecOps, Information Security, governance, and risk stakeholders to align secure development practices with enterprise delivery processes.
  • Support integration of secure development expectations into architecture governance, delivery boards, exception processes, and lifecycle risk decision points.
  • Recommend process improvements that strengthen security outcomes, improve developer experience, increase risk visibility, and enable secure delivery at scale.
  • Establish adoption and effectiveness measures that demonstrate Secure SDLC maturity, control integration, developer enablement, reduced friction, and improved product security outcomes.
  • Lead cross-functional working sessions, develop executive-ready recommendations, and influence process decisions across security and engineering stakeholders without direct authority.

Skills

Secure SDLC
Threat modeling
Secure coding
DevSecOps
Architecture governance
Stakeholder influence
Independent senior IC

Education

Bachelor's degree in IT / Cybersecurity / CS

Job description

Navy Federal Credit Union is seeking a Product Security Engineer - Secure Development Lifecycle to define, mature, and integrate secure SDLC practices across its software delivery environment. This senior IC partners with ETS, Product Engineering, Architecture, and Information Security to embed security into workflows and governance.

You will translate standards into practical engineering requirements, develop playbooks and RACI models, reduce security friction, and lead cross-functional

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Secure SDLC Architect & Integration Lead
Senior Secure SDLC Architect & Integration Lead

Navy Federal Credit Union • Pensacola (FL)

On-site
USD 120,000 - 165,000
Senior Secure SDLC Architect - AI Powered
Senior Secure SDLC Architect - AI Powered

Navy Federal Credit Union • Vienna (VA)

On-site
USD 130,000 - 190,000
Cybersecurity Engineering Manager
Cybersecurity Engineering Manager

Navy Federal Credit Union • Vienna (VA)

On-site
USD 140,000 - 190,000
Senior Software Engineer - Build Scalable, Secure Solutions
Senior Software Engineer - Build Scalable, Secure Solutions

Navy Federal Credit Union • Pensacola (FL)

On-site
USD 90,000 - 130,000
Senior DevSecOps Engineer - Secure SDLC & Cloud
Senior DevSecOps Engineer - Secure SDLC & Cloud

DANASTAR Professional Services, LLC • Washington

On-site
USD 140,000 - 185,000
Senior Software Engineer: Build Scalable, Secure Apps
Senior Software Engineer: Build Scalable, Secure Apps

Navy Federal Credit Union • Winchester (VA)

On-site
USD 110,000 - 170,000
Lead DevSecOps Engineer
Lead DevSecOps Engineer

Electrosoft • Arlington (VA)

On-site
USD 130,000 - 190,000
Cybersecurity Engineering Manager
Cybersecurity Engineering Manager

Navy Federal Credit Union • Pensacola (FL)

On-site
USD 150,000 - 200,000
Product Security Director: Secure SDLC & DevSecOps
Product Security Director: Secure SDLC & DevSecOps

United States Digital Space LLC • Boston (MA)

On-site
USD 190,000 - 260,000
Senior Cloud Security Engineer — Secure DevOps & Apps
Senior Cloud Security Engineer — Secure DevOps & Apps

Jobtailor • Town of Florida (NY)

On-site
USD 140,000 - 210,000