Lead Security Engineer
$120k - $190kDev Technology
Lead Security Engineer, #1073 Security Requirement: U.S. Citizenship required
Work Location: Suitland, MD
We are seeking a Subject Matter Expert (SME)-level Lead Security Engineer to lead application security across a large-scale, cloud-native federal modernization program. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a DevSecOps methodology. The ideal candidate will architect and enforce Zero Trust principles, drive Authorization to Operate (ATO) activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others.
What You'll be Doing:
Who We Are Dev Technology is a growing IT company with an employee-centric culture that works on mission-critical projects for the federal government. We partner with our federal customers to deliver technology services and solutions, and to drive our client's missions forward through innovation. We use Agile and DevSecOps principles to provide services including application development, biometrics and identity management, cloud and infrastructure optimization, IT and legacy modernization, and data management.
As a Washington Post Top Workplace award winner for the past THIRTEEN years in a row, the Top Workplaces USA for the past five years, and a recipient of the Companies As Responsive Employers (CARE) Award for the past six years, Dev Technology employees enjoy:
Work Location: Suitland, MD
We are seeking a Subject Matter Expert (SME)-level Lead Security Engineer to lead application security across a large-scale, cloud-native federal modernization program. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a DevSecOps methodology. The ideal candidate will architect and enforce Zero Trust principles, drive Authorization to Operate (ATO) activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others.
What You'll be Doing:
- Lead the design and implementation of a pplication security solutions, frameworks, and processes across all phases of the SDLC
- Implement Zero Trust (ZT) principles for applications, workloads, and data, aligned with EO 14028, OMB M-22-09, and NIST SP 800-207 (Zero Trust Architecture)
- Integrate security into DevSecOps CI/CD pipelines, establishing security gates, automated code inspection, and supply-chain controls, including Software Bill of Materials (SBOM) generation
- Direct Static and Dynamic Application Security Testing (SAST/DAST), vulnerability assessments, and penetration testing to identify, triage, and remediate security weaknesses
- Lead threat modeling exercises to analyze application architecture, identify attack vectors, and document mitigation strategies throughout design, development, testing, and deployment
- Support the Authorization to Operate (ATO) process, including security control assessment, artifact and evidence collection, Privacy Threshold Analysis/Privacy Impact Assessment support, and Plan of Action and Milestones (POA&M) management
- Implement security controls in accordance with the NIST Cybersecurity Framework and NIST SP 800-53, and remediate identified vulnerabilities and compliance findings
- Design and implement secure architecture patterns - secure API design, authentication/authorization, input validation, encryption, secure logging and monitoring (SIEM), and secure error/session/configuration management
- Develop and maintain metrics, dashboards, and reporting to track application security posture, threat trends, and remediation progress over time
- Support the development and management of Interagency Security Agreements (ISA), security playbooks, and incident response in accordance with current cybersecurity policies
- Collaborate with application developers, data engineers, systems engineers, and OIS to identify and mitigate vulnerabilities, and provide expert security consultation to development teams
- Assist in FedRAMP certification activities and the assessment/remediation of independent penetration testing results, as applicable
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field
- 15+ years of relevant IT/cybersecurity experience, providing technical and management leadership on major tasks or technology assignments (SME level)
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- Demonstrated expertise in integrating security into a DevSecOps SDLC, including CI/CD security gates and automated security testing
- Hands-on experience implementing Zero Trust Architecture and applying NIST SP 800-53 controls and the NIST Cybersecurity Framework
- Proven experience leading vulnerability assessments, penetration testing, and threat modeling for enterprise applications
- Experience supporting the ATO lifecycle and managing POA&Ms, security artifacts, and evidence collection
- U.S. Citizenship required
- Certified Information Security Manager (CISM)
- Certified Information Systems Auditor (CISA)
- Experience generating Software Bill of Materials (SBOMs) and implementing software supply-chain security controls
- Familiarity with SIEM deployment, container/image hardening, and secure baseline configuration
- Experience in large-scale, multi-cloud federal environments and FedRAMP processes
- Strong analytical, problem-solving, written, and verbal communication skills, including the ability to brief senior Government stakeholders
Who We Are Dev Technology is a growing IT company with an employee-centric culture that works on mission-critical projects for the federal government. We partner with our federal customers to deliver technology services and solutions, and to drive our client's missions forward through innovation. We use Agile and DevSecOps principles to provide services including application development, biometrics and identity management, cloud and infrastructure optimization, IT and legacy modernization, and data management.
As a Washington Post Top Workplace award winner for the past THIRTEEN years in a row, the Top Workplaces USA for the past five years, and a recipient of the Companies As Responsive Employers (CARE) Award for the past six years, Dev Technology employees enjoy:
- Generous and flexible time-off policy
- Flexible work schedules and telework options, including remote work availability for eligible projects
- Career development opportunities including a mentorship program, technical and management training through Dev University, hands-on learning through DevLab, tuition reimbursement, and paid training opportunities
- Industry-leading benefits including a choice of two health plans that include dental and vision, flexible spending account, commuter benefits, life insurance, and more
- 401K matching with a 5% matching contribution
- Regular team and company social events including our annual party, happy hours, fitness challenges, and more
- A focus on community engagement including company wide support activities, employer match for donations, and time off for volunteer efforts
- To learn more about working at Dev Technology, visit Working At Dev Technology Group
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Lead Security Engineer in Suitland, MD vacancy
- ...Lead Security Engineer This position supports Revolutional's federal customer as part of an application transformation and modernization initiative. This program is driving a large-scale transformation of systems into a data-centric, cloud-native ecosystem capable...SuggestedFor contractors
- ...Lead Security Engineer At B&A, we foster and embrace a distinct set of values that we live by and instill in all aspects of our organization: dedication, commitment, partnership, trust, and recognition. We have incorporated these values into successful delivery...SuggestedFull timeWork at officeLocal area
$120k - $190k
# Lead Security Engineer## Dev TechnologyPublished 16 Jul 2026### Share this jobSuitland, MD120K - 190K USD AnnualFull Time## Role Highlights### Languages used### Key skillsData EngineerComputer ScienceCICDInformation SystemsSMEData ManagementInformation TechnologySecurity...Suggested$120k - $190k
Dev Technology Group is looking for a Lead Security Engineer to provide application security leadership for a large-scale federal modernization program in Suitland, MD. This role involves integrating security into the Software Development Life Cycle using a DevSecOps approach...Suggested- Bna Inc is seeking a Lead Security Engineer in Suitland, MD to drive application security for a federal modernization program supporting the U.S. Census Bureau. This role entails embedding security in every phase of the SDLC using DevSecOps methodologies and leading application...SuggestedWork at office
- Dev Technology is seeking a Lead Security Engineer to oversee application security in a cloud-native federal modernization program. This role requires a deep understanding of security principles, including Zero Trust and DevSecOps, ensuring that security is integrated...Remote jobFlexible hours
- Onyx Government Services, LLC., is seeking a SME-level Lead Security Engineer to guide application security for a large cloud-native federal modernization program tied to the DTAM effort. You will embed security into every SDLC phase using DevSecOps, drive Zero Trust,...
- Harmonia Holdings Group, LLC in Suitland, MD, is looking for a Lead Security Engineer to drive enterprise security strategy across a large-scale federal modernization program. This role includes integrating security into ecosystems spanning applications, cloud infrastructure...
$127.5k - $276.2k
...Lead Security Engineer Category: Software Development/ Engineering Main location: United States, District of Columbia, Washington Position ID: J0626-1754 Employment Type: Full Time Position Description: The Lead Security Engineer is the enterprise...Full timeWork at officeLocal area- ...Lead Security Engineer Job Description CoStar Group is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index, CoStar Group is on a mission to digitize the world's real estate...Hourly payFull timeWork at officeWork from homeMonday to Thursday
- A high-tech company is looking for a Lead Security Engineer to support security operations in the Washington Metro Area. The role requires managing vulnerability scanning, incident response, and ensuring compliance with federal regulations. Candidates should have a Bachelor...Full time
- Toll Brothers is seeking a Lead Security Engineer to join our Cyber & Information Security team at our Fort Washington, PA corporate office. You will lead security engineering initiatives, define standards, and drive incident response across identity, endpoints, networks...Work at office
- ...instilled in us, creating an exceptional place to work that is inclusive to all. Toll Brothers , America's leading luxury home builder, seeks a Lead Security Engineer to join our team at our Corporate office in Fort Washington, Pennsylvania. What is the opportunity? The...Full timeWork at officeLocal area
- A leading provider of real estate information is seeking a Lead Security Engineer in Arlington, VA. The ideal candidate will have over 10 years of experience in Information Security and a strong background in incident response and technical assessments. The role requires...
- ...solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the... ...JOB OVERVIEW: MartinFed is seeking a highly experienced Lead Cyber Security Engineer to provide technical leadership in the design,...Contract workWork at officeLocal area
- ...Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily...Remote workFlexible hoursNight shift
$178.4k - $226.7k
Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global... ...work, we provide opportunities for our engineers to pursue projects they are passionate about... ...technical acumen with an ability to lead by influence and communicate clearly. Technically...InternshipFlexible hours$159.3k - $202.4k
Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats...InternshipFlexible hours$107.93k - $188.9k
...’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across... ...to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize...Remote work$136k - $184k
Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively...InternshipFlexible hoursShift work- ...business development efforts for upcoming opportunities with the U.S. Department of State’s Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining our understanding of the client landscape, validating...Contract workWork at office
$178.4k - $226.7k
...production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the... ...a common programming language- Experience as a mentor, tech lead or leading an engineering teamPreferred qualification - Experience...InternshipRemote workFlexible hours$127.5k - $276.2k
Security Engineer III Position Description The Security Engineer III is the enterprise technical authority for advanced cybersecurity... ...efforts across Treasury's hybrid cloud ecosystem. This role leads transformative engineering initiatives to implement secure architectures...Work at officeLocal area$107.9k - $195.05k
Computer Network Defense (CND) Security EngineerSuitland, MDLeidos is hiring a Computer Network Defense (CND) Security Engineer to join our team in Suitland, MD. In this role, you will help protect critical Department of Defense networks by monitoring and analyzing security...Full time- ...Reporting to the Program Manager, the Web Developer Embeds security across the SDLC for mission-critical web apps, APIs, and sensitive... ...~ Log analysis, FIM, WAF management ~3+ Web AppSec / AppSec Engineering / SSDLC ~ Modern web tech incl. .NET (C# MVC, WCF), HTML5,...Full time
- ...teams support the federal government’s most critical national security and defense priorities, helping protect the nation, strengthen... ...mission begins. Ardent is seeking a Web Developer Security Engineer to join our team. This position is based in Washington, DC...Full timeLocal areaRemote workFlexible hours
$107.93k - $188.9k
...'s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across... ...build and sustain professional relationships Ability to lead projects or workstreams Ability to manage and prioritize...Remote work$87.1k - $157.45k
...Description Leidos has a career opportunity for a Information Systems Security Engineer to support the Air Force National Capital Region IT Services program. The AFNCR IT Services program provides support services for information systems for Headquarters Air Force...Work at officeLocal areaImmediate startWorldwide- ...Systems Solutions (ISS) is looking for a mid-level ISSE supporting the Office of Naval Intelligence. The Information Systems Security Engineer (ISSE) is responsible for engineering, implementing, and maintaining security solutions across information systems and networks...Work at office
$221.2k - $387.1k
...It all started when engineer Fred Luddy wrote code that automated a tedious task for his... ...Description About SSO The ServiceNow Security Organization (SSO) delivers world-class,... ...individual-contributor role: you will lead through technical authority, architecture...Permanent employmentFull timeWork at officeImmediate startRemote workFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Security Engineer. Be the first to apply!



