
Lead Cybersecurity Software Engineer
- Alpharetta, GA
- $135,000-199,000 per year
- Permanent
- Full-time
- Lead the design, development, and deployment of secure development tools used across engineering teams
- Translate feature requests and technical requirements into actionable solutions for the team
- Provide mentorship to junior developers in secure coding standards and engineering best practices
- Collaborate with vulnerability management and threat detection teams to improve tool integrations and automate control monitoring
- Work closely with architects and infrastructure teams to assess current systems and recommend enhancements
- Analyze security artifacts and ensure appropriate remediation based on risk and environmental applicability
- Contribute to incident response and post-incident analysis to identify and close architectural gaps
- Stay current with emerging threats, trends, and technologies to recommend forward-looking improvements
- Bachelor's degree in Computer Science, Cybersecurity, or related field and 6+ years of experience (or equivalent: Master's + 4 years, PhD + 1 year, or 10+ years without a degree)
- 4+ years of hands-on cybersecurity experience
- Experience evaluating business risks and making informed decisions
- Experience with front-end technologies such as TypeScript, JavaScript, and Node.js
- Experience with AWS and at least one other cloud platform (e.g., GCP, Azure)
- Experience leading enterprise-level security solutions in large-scale environments
- Background in Agile and DevSecOps
- Understanding of modern architectures including cloud-native patterns, containers, serverless, and zero trust
- Familiarity with AWS Well-Architected Framework
- Knowledge of .NET, Mono, Spring, authentication frameworks, and scalable cloud design
- Knowledge of security standards (e.g., NIST, ISO 27000, FFIEC) and regulatory frameworks (e.g., GDPR, GLBA, SOX)
- Proficiency in Python and application development experience in C#, Java, or Go
- Strong communication, collaboration, and consultative skills
- Ability to explain security policies and decisions to technical and non-technical stakeholders
- Experience with tools like Veracode, Fortify, BurpSuite, and Wiz
- Experience with monitoring tools (CloudWatch, Splunk, New Relic)
- Experience managing artifact repositories and secure pipelines
- Experience in regulated industries (finance, defense, telecom, government)
- Understanding of IAM, secrets management, encryption, and protocols (SAML, OAuth2, OIDC)
- Network security knowledge including edge services, firewalls, and DMZ design
- Familiarity with Infrastructure as Code (e.g., Terraform)
- Understanding of Blue/Green, Canary, and similar deployment strategies
- Comfortable with CI/CD tools like GitHub Actions and trunk-based development
- Certifications such as CISSP, CISM, OSCP, CEH, AWS, Azure, etc. are a plus