SAIC

Application Vulnerability Engineer

SAIC$160K — $200K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, IT, or a related field with relevant experience; advanced degrees acceptable with lesser experience.
  • 3+ years in system administration and DevOps engineering for containerized platforms/Kubernetes.
  • Expertise in Azure preferred; familiarity with AWS and GCP is a plus.
  • Hands-on experience with Azure, Kubernetes admin (AKS), Helm, Infrastructure-as-Code, CI/CD pipelines.
  • Experience with SQL servers, backup/restore, and system administration tasks.
  • Background in regulated environments with formal change processes and compliance requirements.
  • Strong skills in Terraform, Bicep, or ARM for automation; troubleshooting across various layers.

Responsibilities

  • Design and maintain secure, scalable cloud infrastructure in Azure (e.g., AKS, SQL Server).
  • Administer Kubernetes clusters, managing node pools and access controls.
  • Manage container image lifecycle, ensuring hardened images and vulnerability scans.
  • Perform regular system administration tasks such as patching and monitoring.
  • Automate infrastructure and application deployments using CI/CD tools like Azure DevOps.
  • Enforce security and compliance controls aligned to NIST and Zero Trust frameworks.
  • Develop operational documentation for system processes and architecture.

Benefits

  • Hybrid work model with up to 2 days remote work per week.
  • Opportunities for continuous learning and professional development.
  • Access to cutting-edge application security technologies.
  • Collaborative work environment focused on innovation and resilience.
Full Job Description
Job Description

Description

The Application Vulnerability Assessment Program (AVAP) Engineer/System Administrator is responsible for operating and securing the program's application security platforms, including OpenText Fortify, OWASP Dependency-Track, and any future application security tools, deployed in containerized and virtualized environments within Azure Kubernetes Service (AKS). This role manages Kubernetes-based infrastructure (AKS), container image pipelines, and automation through Infrastructure-as-Code and CI/CD (Azure DevOps) to ensure resilient, scalable, and compliant deployments. The engineer will perform system administration for both Windows and Linux environments, enforce security and compliance requirements aligned to federal standards, and maintain runbooks, SOPs, and metrics to support operational excellence. In addition, the role supports AVAP customers by troubleshooting platform issues to minimize downtime and ensure mission-critical vulnerability assessment services remain highly available.

This role is hybrid and may allow 2 days of remote work weekly.

Key Responsibilities
  • Design, deploy, and maintain secure, scalable, and resilient cloud infrastructure in Azure such as Azure Key Vault, Azure SQL Server, Azure SQL DB, Azure Kubernetes Service (AKS), etc.
  • Operate and administer Kubernetes clusters (AKS) including node pools, networking, persistent volumes, ingress controllers, secrets management, access control, namespaces, etc.
  • Manage container image lifecycle and updates by pull hardened images (i.e., Iron Bank), scan for vulnerabilities, enforce least-privilege configurations, and publish to ACR.
  • Perform regular server administration tasks including patching, user provisioning, system monitoring, and backup/restoration.
  • Automate deployments of infrastructure and applications using Azure DevOps or equivalent CI/CD pipelines with ARM/Bicep/Terraform and Helm.
  • Implement and enforce security/compliance controls aligned to NIST SP 800-53 and Zero Trust (i.e., key vault integration, secret management, TLS cert rotation).
  • Develop and maintain operational runbooks, playbooks, SOPs, and system/network architecture diagrams to ensure repeatability and continuous system documentation.
  • Troubleshoot platform and pipeline issues across application, network, and infrastructure layers to minimize downtime for AVAP customers.
  • Contribute to monitoring and metrics collection (availability, scan throughput, failure rates, license utilization) to support program-level reporting.
  • Plan and manage assigned work with minimal supervision, including creating backlog items, tracking follow-up actions, and advising management on priorities, risks, and dependencies.
  • Lead and coordinate platform upgrades, image updates, maintenance activities, and rollback testing for application security tools and supporting infrastructure.
  • Prepare required change documentation and coordinate network, DNS, firewall, certificate, and other infrastructure updates with partner teams.
  • Develop and maintain monitoring, alerting, availability checks, and disaster recovery procedures to support reliable platform operations.

Qualifications

Required Education & Experience:
  • Bachelor's degree in Computer Science, Information Technology, or related field and 9 years of relevant experience; masters and 7 years; may accept equivalent hands-on experience in lieu of degree.
  • 3+ years of hands-on experience in system administration and DevOps engineering supporting containerized platforms/Kubernetes.
  • Demonstrated expertise with Azure (preferred) and familiarity with AWS and GCP cloud services.
  • Hands-on experience with Azure, Kubernetes administration (AKS), Helm, IaC, CI/CD pipelines, and scripting for platform operations.
  • Experience with system administration pertaining to SQL servers/databases, backup/restore, patching, etc.
  • Experience working in controlled or regulated environments with formal change processes and security/compliance requirements.
  • Demonstrated experience with Terraform, Bicep, and/or ARM for infrastructure automation and immutability.
  • Strong troubleshooting skills across infrastructure, networking, identify, database, and application layers.
  • Familiarity with application security tools is a plus (OpenText Fortify Software Security Center, License and Infrastructure Management, OWASP Dependency Track, etc.)
  • Understanding of single sign-on implementations using SAML/OIDC (management of users/groups in Okta) as well as SCIM for automatic user provisioning.
  • Excellent technical writing and documentation skills.
  • Ability to work within government compliance frameworks (FedRAMP, NIST, FISMA, Zero Trust).
Required Clearance:
  • US Citizenship.
  • Active secret clearance with the ability to obtain a top secret clearance.

Target salary range: $160,001 - $200,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Overview

SAIC accepts applications on an ongoing basis and there is no deadline.

About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

  • SAIC
    Senior IT Specialist
    $110K — $130K *
    Coronado, CA 92118 (San Diego County)
    Technical Services
    In-Person
  • SAIC
    Cybersecurity Analyst
    $95K — $115K *
    Austin, TX 78745 (Travis County)
    Information Technology
    In-Person
  • SAIC
    Senior IT Specialist
    $110K — $130K *
    San Diego, CA 92154 (San Diego County)
    Information Technology
    In-Person
  • SAIC
    Cybersecurity Analyst
    $95K — $115K *
    San Antonio, TX 78228 (Bexar County)
    Information Technology
    In-Person
  • SAIC
    Systems Engineer
    $80K — $95K *
    Crane, IN 47522 (Martin County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Application Vulnerability Engineer jobs: