Haystack
← Back to Jobs
Administrative
CO

Application Security Remediation lead (Java / Spring Boot / Angular)

ConfigUSAMcLean, VA🇺🇸United StatesPosted 2 Sept 2026

Quick Overview

Seniority
Mid Senior
Work mode
On Site
Location
McLean, VA, United States
Posted
Yesterday
Stakeholder Management

Job Description

Location: McLean, VA- 100% ONSITE - Only Local Candidates Requested

Duration: 6 months

Skills: MSS - Vulnerability Management~Healthcare Security And Governance~Change Management~Software Security Experience Required: 8-10 Years

Senior Technical Lead - Application Security Remediation (Java / Spring Boot / Angular)

We are seeking a hands-on Senior Technical Lead to lead enterprise-wide application security remediation initiatives across engineering teams. The individual will work closely with development teams to analyze vulnerabilities, define remediation strategies, implement security fixes in code repositories, and drive security improvements across Java/Spring Boot and Angular applications. This role combines technical leadership, hands-on development, and security governance responsibilities.

 

Key Responsibilities

• Lead security remediation efforts across multiple VTS engineering teams.

• Analyze findings from ArmorCode, Contrast, Snyk, SonarQube, and related security tools.

• Prioritize, track, and drive closure of security vulnerabilities.

• Perform hands-on coding and implement security fixes in Java/Spring Boot and Angular applications.

• Conduct code reviews and recommend secure coding practices.

• Develop reusable remediation patterns to reduce vulnerabilities across multiple applications.

• Collaborate with engineering, architecture, and security teams.

• Lead and mentor a 3-5 member security remediation team.

• Provide status updates, dashboards, and executive-level reporting.

Required Qualifications

• 10+ years of software engineering experience.

• Strong hands-on expertise in Java, Spring Boot, Angular, JavaScript/TypeScript, REST APIs, and Microservices.

• Experience working with GitHub, CI/CD pipelines, and modern software delivery practices.

• Deep understanding of OWASP Top 10, Secure SDLC, DevSecOps, SAST, DAST, and vulnerability management.

• Experience with security tools such as ArmorCode, Contrast Security, Snyk, Veracode, Checkmarx, or SonarQube.

• Strong leadership, communication, and stakeholder management skills.

Similar jobs