Team Lead, Software Assurance
Veterans Engineering is seeking a highly skilled and experienced Team Lead – Software Assurance to oversee a team of Software Assurance Analysts responsible for analyzing custom-developed software for security and quality flaws. The ideal candidate will bring a strong software development background, hands-on experience with code scanning tools (Fortify and CodeQL), and proven leadership in managing technical backlogs and guiding secure development practices. This role plays a critical part in maintaining high standards of software security, compliance, and documentation across the development lifecycle. You will work closely with cross-functional customer teams including developers, program managers, security engineers, project managers, and stakeholders.
Key Responsibilities
Team Leadership & Oversight
• Lead, mentor, and support a team of Software Assurance Analysts.
• Set priorities, manage ServiceNOW and GitHub Ticket queue, and manage task backlogs for the team using Agile methodologies. This includes developing all required reporting and associated contractual deliverables.
• Ensure timely review of static code analysis and open-source dependency scans.
• Guide team members in secure coding principles and vulnerability mitigation.
Security Assurance & Technical Review
• Oversee and review SAST and SCA scans using Fortify and CodeQL tools.
• Validate scan results and support the resolution of findings across multiple projects.
• Provide oversight and technical input on validation reports for ATO and cATO processes.
• Track emerging security threats and ensure analysis practices remain current.
Process Management & Documentation
• Ensure consistent documentation of scan analyses, audit comment reviews, and validation findings.
• Maintain and improve internal procedures and knowledgebases for secure code analysis.
• Support the development of clear, actionable technical notes for developers.
Collaboration & Developer Support
• Partner with development teams to integrate secure development practices.
• Participate in and guide secure code reviews and architectural assessments.
• Deliver training and mentoring to developers on secure coding practices.
Required Qualifications
• U.S. Citizen (due to government clearance requirements)
· Bachelor or Masters of Computer Science
• Must be able to pass a government background investigation
• 5+ years of experience as a software developer with hands-on coding expertise
• 3+ years in a team leadership or technical lead role
• Experience managing or prioritizing a technical backlog in Agile environments
• Strong experience with code scanning tools, especially:
- Fortify Static Code Analyzer
- GitHub CodeQL
• Deep understanding of secure software development practices
• Experience reviewing SAST/SCA scan results and writing technical validation reports
• Familiarity with Authority to Operate (ATO) and Continuous ATO (cATO) processes
• Excellent communication and collaboration skills
• Ability to translate technical findings into actionable developer guidance
Preferred Qualifications
• Experience working with federal government or regulated industries