Senior Java Technical Lead – Application Security Remediation
McLean, MD - USA
Job Summary
Senior Technical Lead - Application Security Remediation (Java / Spring Boot / Angular)
10 years of software engineering experience
Required range: 8-10 years
We are seeking a hands-on Senior Technical Lead to lead enterprise-wide application security remediation initiatives across multiple engineering teams. The role combines software development application security vulnerability management and technical leadership.
The candidate will analyze security vulnerabilities define remediation strategies implement security fixes across Java/Spring Boot and Angular applications and drive secure development practices across engineering teams.
- Lead application security remediation initiatives across multiple engineering teams.
- Analyze vulnerabilities and security findings from ArmorCode Contrast Security Snyk SonarQube and similar tools.
- Prioritize vulnerabilities based on severity risk and business impact.
- Track remediation activities and drive vulnerabilities to closure.
- Perform hands-on coding to implement security fixes in Java/Spring Boot and Angular applications.
- Conduct code reviews and recommend secure coding practices.
- Develop reusable security remediation patterns to reduce recurring vulnerabilities.
- Collaborate with Engineering Architecture Security and DevOps teams.
- Lead and mentor a 3-5 member security remediation team.
- Monitor remediation progress and provide dashboards status reports and executive-level updates.
- Support security governance change management and continuous improvement initiatives.
| Skill | Requirement |
|---|---|
| Java | Strong hands-on experience |
| Spring Boot | Strong hands-on experience |
| Angular | Strong hands-on experience |
| JavaScript / TypeScript | Strong hands-on experience |
| REST APIs | Required |
| Microservices | Required |
| GitHub | Required |
| CI/CD | Required |
| OWASP Top 10 | Strong understanding |
| Secure SDLC | Required |
| DevSecOps | Required |
| SAST / DAST | Required |
| Vulnerability Management | Required |
| Security Tools | ArmorCode Contrast Snyk Veracode Checkmarx SonarQube or similar |
- Strong understanding of application security principles and secure software development.
- Experience identifying and remediating vulnerabilities throughout the SDLC.
- Understanding of SAST DAST code scanning dependency vulnerabilities and security findings.
- Experience with security governance and vulnerability tracking.
- Ability to work with development teams to implement sustainable security improvements.
- Strong technical leadership and mentoring capabilities.
- Experience leading a small technical/security remediation team.
- Excellent communication and stakeholder management skills.
- Ability to work with engineering architecture security and business stakeholders.
- Strong problem-solving and analytical skills.
- Ability to provide clear technical and executive-level status reporting.
- Experience in enterprise application security remediation.
- Experience working with Java/Spring Boot and Angular applications.
- Experience managing vulnerabilities across multiple applications or engineering teams.
- Healthcare/security governance experience is beneficial if applicable.