Cybersecurity Engineer

LeidosAtlanta, GA
$107,900 - $195,050

About The Position

The CDC National Healthcare Safety Network (NHSN) is seeking a Cybersecurity Engineer to support the modernization of one of the nation's largest public health surveillance platforms. This role will serve as the program's primary cybersecurity engineering resource, embedding security throughout the software development lifecycle while supporting NHSN's migration to modern cloud-native technologies, including Microsoft Azure, Databricks, and AI-assisted software engineering. Working closely with software engineers, cloud engineers, data engineers, solution architects, and technical leadership, the Cybersecurity Engineer will implement secure engineering practices across applications, APIs, cloud infrastructure, data platforms, and DevSecOps pipelines. This position focuses on hands-on engineering, application security, cloud implementation, and data protection while working closely with CDC's Office of the Chief Information Officer (OCIO), Cybersecurity Program Office (CSPO), Office of Managed Hosting Services (OMHS), and Microsoft Azure enterprise security services to ensure the NHSN modernization effort aligns with CDC's enterprise cybersecurity strategy, architecture, policies, standards, and operational processes. The ideal candidate combines strong software engineering skills with practical cybersecurity expertise and enjoys building secure, scalable, cloud-native solutions that support CDC's public health mission.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, Information Technology, or a related discipline.
  • Eight (8) or more years of experience in cybersecurity engineering, application security, cloud security, DevSecOps, or secure software engineering.
  • Experience implementing security controls within Microsoft Azure cloud environments.
  • Experience supporting secure software development using Java, C#, Python, or other modern programming languages.
  • Experience with Azure DevOps, Git, CI/CD pipelines, and modern software engineering practices.
  • Experience securing cloud-native applications, REST APIs, containers, or distributed systems.
  • Experience performing vulnerability assessments, application security testing, and remediation activities.
  • Working knowledge of authentication, authorization, encryption, identity management, and API security.
  • Strong communication and collaboration skills with cross-functional engineering teams.

Nice To Haves

  • Experience with Azure Kubernetes Service (AKS), Azure Container Apps, Azure SQL, Azure Storage, Azure Key Vault, Microsoft Defender, and Azure Monitor.
  • Experience securing Azure Databricks, Delta Lake, Azure Data Factory, or enterprise data platforms.
  • Experience implementing DevSecOps practices and automated security testing.
  • Experience supporting healthcare, public health, or other regulated data environments.
  • Experience with FHIR, HL7, healthcare APIs, or secure healthcare data exchange.
  • Familiarity with NIST Cybersecurity Framework (CSF), NIST SP 800-53, FISMA, FedRAMP, Zero Trust, and secure cloud engineering principles.
  • Security certifications such as Security+, CISSP, CCSP, Microsoft Certified: Azure Security Engineer Associate, GIAC, or equivalent.

Responsibilities

  • Integrate cybersecurity throughout the Software Development Lifecycle (SDLC).
  • Implement secure coding practices, application hardening, and secure design principles across NHSN applications.
  • Perform application security reviews, vulnerability analysis, and remediation activities.
  • Support secure implementation of authentication, authorization, API security, encryption, and secrets management.
  • Partner with software engineers to resolve security findings and improve application resiliency.
  • Implement security controls within NHSN's Microsoft Azure environment.
  • Support secure deployment and configuration of Azure App Services, Azure Container Apps, Azure Kubernetes Service (AKS), Azure SQL, Azure Storage, and related Azure services.
  • Assist with cloud resource hardening, identity integration, logging, monitoring, and secure configuration management.
  • Collaborate with cloud engineering teams to implement Zero Trust principles and secure Infrastructure-as-Code (IaC) practices.
  • Implement security controls supporting NHSN's migration from SAS to Databricks.
  • Secure Azure Databricks workspaces, Delta Lake storage, Azure SQL, and enterprise data pipelines.
  • Support secure ingestion, transformation, storage, and processing of sensitive public health data.
  • Implement encryption, access controls, auditing, and monitoring to protect NHSN data assets.
  • Integrate automated security testing into Azure DevOps CI/CD pipelines.
  • Implement source code scanning, dependency analysis, container image scanning, Infrastructure-as-Code validation, and security automation.
  • Support continuous vulnerability management and remediation throughout the software delivery lifecycle.
  • Promote secure engineering practices across development teams.
  • Support secure integration with CDC enterprise services, including Secure Access Management Services (SAMS).
  • Implement secure authentication and authorization for NHSN applications, APIs, and cloud services.
  • Support secure transmission and ingestion of healthcare data through NHSNLink, FHIR-based interfaces, and other enterprise integration services.
  • Coordinate and execute penetration testing, security validation, and remediation of application and infrastructure vulnerabilities.
  • Work closely with CDC's enterprise cybersecurity organizations to ensure NHSN solutions comply with enterprise security policies, standards, and compliance requirements.
  • Support implementation of security controls required for CDC cloud environments and application deployments.
  • Participate in architecture reviews, security assessments, and technical planning activities as needed.
  • Assist engineering teams in evaluating and securely implementing emerging technologies, including AI-assisted software development and automation.

Benefits

  • The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service