DevSecOps Security Engineer

Leidos Holding • $87K — $157K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, IT, or related field with 4+ years of relevant experience, or equivalent education and training.
  • Hands-on experience integrating SAST, DAST, software composition analysis, and container scanning into CI/CD pipelines.
  • Experience securing Kubernetes and container environments, including pod security and network policies.
  • Proficient in vulnerability scanning and remediation using tools such as Nessus or Trivy.
  • Experience with secrets management and security automation using Python, Bash, or Go.
  • Familiarity with Git-based workflows and CI/CD tooling, such as GitLab CI or Jenkins.
  • Must be a U.S. citizen able to obtain Public Trust and meet FAA access requirements.

Responsibilities

  • Implement and maintain automated security controls in CI/CD pipelines.
  • Enforce security gates, artifact signing, and provenance verification to prevent vulnerable deployments.
  • Drive container vulnerability remediation and hardening efforts.
  • Implement Kubernetes security controls such as RBAC and pod security.
  • Secure workloads through secrets management and Linux/container hardening.
  • Build and maintain policy-as-code and infrastructure guardrails.
  • Produce security evidence for authorization and continuous monitoring.

Benefits

  • Hybrid work schedule: 3 days onsite, 2 days remote for commutable candidates.
  • Opportunity to work on a mission-critical automation platform impacting air traffic management.
  • Collaborative environment with Agile Release Train (ART) teams.
  • Focus on innovation through AI-assisted development and modern engineering practices.
Full Job Description

Leidos is seeking a DevSecOps Security Engineer to join the Air Traffic Business Area within the Homeland Sector, supporting the development of the Leidos Common Automation Platform (L-CAP). L-CAP is a mission-critical, future-ready automation platform built on a hybrid cloud data mesh architecture, enabling next-generation air traffic management capabilities. We are building with an AI-first engineering mindset, embracing emerging AI capabilities and modern development practices to accelerate delivery, improve software quality, and continuously evolve how we design and build mission-critical systems. This role operates within a SAFe/Agile framework as part of an Agile Release Train (ART) delivering iterative value across the program. This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.


This is a hybrid position requiring 3 days onsite and 2 days working from home, if you are located within a commutable distance (Less than 1 hour's drive one-way during normal traffic) from Gaithersburg, MD; Eagan, MN; or Egg Harbor Township, NJ. However, if you do not reside within a commutable distance, you may be considered for a 100% remote role.


In this role, you will build and operate the automated security controls embedded in L-CAPs delivery pipeline  the scanning, gating, signing, and hardening that make security continuous rather than periodic. You will work alongside platform and application teams to raise the security posture of every build and every container image without stalling delivery, and you will produce the pipeline evidence that supports platform security authorization.


What Youll Do
  • Implement and maintain automated security controls in CI/CD pipelines, including SAST, DAST, software composition analysis, container scanning, and infrastructure-as-code scanning.
  • Enforce security gates, artifact signing, provenance verification, and SBOMs (CycloneDX/SPDX) to prevent vulnerable or unverified deployments.
  • Drive container vulnerability remediation and hardening, including hardened minimal base images and elimination of critical/high findings.
  • Implement Kubernetes security controls, including pod security, network policies, RBAC, admission controls, and security context constraints.
  • Secure workloads through secrets management, mutual TLS (mTLS), service mesh policies, and Linux/container hardening.
  • Build and maintain policy-as-code and infrastructure guardrails using OPA/Rego, Kyverno, or equivalent tools.
  • Produce security evidence supporting authorization and continuous monitoring requirements.
  • Partner with platform and application teams to triage vulnerabilities, remediate findings, and support security incident response and root cause analysis.
  • Leverage AI-assisted development, automation, and modern engineering practices to improve security, code quality, productivity, and delivery speed.

Core Technical Qualifications
  • Bachelors degree in Cybersecurity, Computer Science, Information Technology, or related field with 4+ years of relevant experience. (additional experience, education and training may be considered in lieu of degree)
  • Hands-on experience integrating SAST, DAST, software composition analysis, and container scanning into CI/CD pipelines.
  • Experience securing Kubernetes and container environments, including pod security, network policies, RBAC, admission controls, and hardened/minimal base images.
  • Experience with vulnerability scanning and remediation, using tools such as Nessus, Trivy, Grype, or Qualys, including CVE triage and tracking.
  • Experience with secrets management (HashiCorp Vault or equivalent) and security automation using Python, Bash, or Go.
  • Experience with Git-based workflows and CI/CD tooling, such as GitLab CI, GitHub Actions, or Jenkins.
  • Working knowledge of NIST 800-53, automated security evidence, and AWS or Azure cloud security.
  • Understanding of network security, including segmentation and default-deny policies.
  • U.S. citizenship required, with the ability to obtain and maintain a Public Trust and meet government background investigation requirements.
  • Must meet FAA facility and information system access requirements, including continuous U.S. residency for at least 3 of the prior 5 years.


Preferred / Desired Qualifications

  • Security+ CE, CySA+, or equivalent DoD 8570 IAT Level II certification.
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS)
  • Knowledge of software supply chain security, including SLSA, Sigstore/cosign, in-toto, and FIPS 140-3.
  • Experience with policy-as-code (OPA/Rego, Kyverno) and infrastructure-as-code security scanning (Terraform, CloudFormation).
  • Experience securing Kubernetes/OpenShift environments, including service mesh security (Istio, Linkerd) and security context constraints.
  • Experience with GitOps deployment using ArgoCD, Flux, or equivalent.
  • Experience in aviation, FAA, or other safety-critical environments.
  • Experience with SAFe or large-scale Agile delivery.

Original Posting:September 22, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

More Information Technology Jobs

Find similar DevSecOps Security Engineer jobs: