Leidos is seeking an Application Security Engineer as part of our DevOps team in support of a large-scale, complex Software program within the Department of Justice.
This role focuses on securing the application including identifying vulnerabilities in code, designing security controls, conducting code reviews and perform penetration tests, with the goal of proactively preventing security breaches by inserting security measures throughout the software development lifecycle.
Identify vulnerabilities in code and work with developers to remediate them.
Automate security testing in CI/CD pipelines.
Conduct advanced threat modeling and oversee secure architectural choices.
Manage security incident response and remediation efforts.
Mentor developers on secure coding practices and conduct training sessions.
Track and report progress on security vulnerabilities in formal reviews.
Establish container security standards.
Collect compliance evidence in support of reviews and audits.
Experience with scripting languages, Javascript, Angular and CI/CD tools.
Experience with application development.
Strong leadership and communication.