{"id":1139807,"url":"https://alion.io/job/ifs-lead-agentic-security-engineer","title":"Lead Agentic Security Engineer","company":{"id":4263,"name":"IFS","domain":"ifs.com","url":"https://alion.io/company/ifs","size_band":"5000+","is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"SmartRecruiters","truth_index":{"grade":"B","score":75,"open_postings":27,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":41,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"lead","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Colombo, Sri Lanka"],"countries":["LK"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":43000,"max_usd":111000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":330},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AI Agents","optional":false},{"name":"CI/CD","optional":false},{"name":"FedRAMP","optional":false},{"name":"ISO 27001","optional":false},{"name":"LLM","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"Platform Engineering","optional":false},{"name":"SOC 2","optional":false},{"name":"Bitbucket","optional":true},{"name":"Docker","optional":true},{"name":"GitHub Actions","optional":true},{"name":"GitLab","optional":true},{"name":"Jenkins","optional":true},{"name":"Kubernetes","optional":true},{"name":"OWASP Top 10","optional":true},{"name":"Python","optional":true},{"name":"Threat Modeling","optional":true}],"status":"live","first_seen_at":"2026-09-23T08:13:38Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-24T11:43:00Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"IFS is a billion-dollar revenue company with 7000+ employees on all continents. Our leading AI technology is the backbone of our award-winning enterprise software solutions, enabling our customers to be their best when it really matters-at the Moment of Service™. Our commitment to internal AI adoption has allowed us to stay at the forefront of technological advancements, ensuring our colleagues can unlock their creativity and productivity, and our solutions are always cutting-edge.\nAt IFS, we’re flexible, we’re innovative, and we’re focused not only on how we can engage with our customers but on how we can make a real change and have a worldwide impact. We help solve some of society’s greatest challenges, fostering a better future through our agility, collaboration, and trust.\nWe celebrate diversity and understand our responsibility to reflect the diverse world we work in. We are committed to promoting an inclusive workforce that fully represents the many different cultures, backgrounds, and viewpoints of our customers, our partners, and our communities. As a truly international company serving people from around the globe, we realize that our success is tantamount to the respect we have for those different points of view.\nBy joining our team, you will have the opportunity to be part of a global, diverse environment; you will be joining a winning team with a commitment to sustainability; and a company where we get things done so that you can make a positive impact on the world.\nWe’re looking for innovative and original thinkers to work in an environment where you can #MakeYourMoment so that we can help others make theirs. With the power of our AI-driven solutions, we empower our team to change the status quo and make a real difference.\nIf you want to change the status quo, we’ll help you make your moment. Join Team Purple. Join IFS\n As a Lead Agentic Security Engineer, you will provide technical leadership for security engineering across the organization. You will set technical direction, own critical security capabilities, drive cross-team security initiatives, and mentor engineers at all levels. You are accountable for the maturity and effectiveness of security engineering, balancing risk, delivery, and engineering realities.\nThis is a technical leadership role, not a people-management role - though it carries significant influence and mentorship responsibility.\nDuties and accountabilities\nTechnical strategy and ownership\nDefine and drive the technical direction for security engineering.\nOwn critical security domains and capabilities end to end (AppSec, CloudSec, CI/CD security, vulnerability management).\nSet standards, patterns, and guardrails that scale across teams.\nMake and own high-impact, risk-based security decisions.\nCross-team leadership\nLead security initiatives spanning multiple engineering teams.\nAct as the senior security point of contact for engineering leadership.\nInfluence architecture and design across the organization.\nAlign security efforts with business and delivery priorities.\nEngineering and automation\nDrive security automation and tooling strategy (SAST, SCA, DAST, IaC, container security), including AI-assisted and AI-augmented tooling for triage, correlation, and remediation guidance.\nEvaluate and apply AI and generative AI tools - for example AI-assisted code review, AI-powered vulnerability triage, and LLM-based threat and log analysis - to improve signal quality, coverage, and developer experience, while validating their output rather than trusting it blindly.\nEnsure security platforms are reliable, scalable, and maintainable.\nBuild the team's fluency with AI-assisted engineering tools (e.g., AI coding assistants, AI-enabled security scanners) and set guardrails for their safe, effective use, including awareness of AI/LLM-specific risks such as prompt injection, model and data supply-chain exposure, and sensitive-data leakage.\nRisk, incident, and compliance\nLead response and root-cause analysis for significant security incidents.\nIdentify systemic risks and drive long-term remediation.\nOwn security engineering input into compliance efforts (ISO 27001, SOC 2, FedRAMP).\nCoordinate external engagements (e.g., penetration testing vendors).\nMentorship and capability building\nMentor engineers and emerging leads (including Associate Security Leads).\nRaise the overall security capability of engineering teams, including fluent, responsible use of AI-assisted tools.\nChampion a strong, pragmatic security culture.\nWhat success looks like\nSecurity engineering direction is clear, pragmatic, and adopted.\nCritical risks are proactively identified and addressed.\nEngineering teams trust and act on security guidance.\nSecurity maturity improves measurably across the organization, including effective adoption of AI-assisted security tooling.\nEngineers grow under your mentorship.\nTypically 5+ years in security engineering, software engineering, or platform engineering.\nProven track record owning security capabilities or programs at scale.\nDeep expertise across multiple domains (AppSec, CloudSec, CI/CD security, architecture).\nStrong hands-on engineering and automation background.\nDemonstrated technical leadership and cross-team influence.\nPractical fluency with AI tools in an engineering context - for example AI coding assistants, AI-assisted security scanning and triage, or LLM-based analysis - and the judgment to validate their output rather than trust it blindly.\nScope and expectations\nTechnical leadership role, accountable for security engineering outcomes.\nOwns strategy and direction, not just delivery.\nExpected to influence without formal authority.\nExpected to challenge unsafe designs and decisions.\nNot a people-manager role (unless explicitly combined).\nNice to have\nExperience leading security in an enterprise product environment.\nTrack record influencing engineering-wide standards.\nExperience mentoring senior engineers and leads.\nExperience applying AI/LLM tools to security engineering (e.g., AI-assisted threat modeling, AI-powered vulnerability correlation) and awareness of securing AI-enabled applications and pipelines.\nRelevant advanced certifications (not mandatory).\nQualifications\nCore required qualifications\nDemonstrated experience in security engineering with hands-on involvement in automated security solutions.\nWorking knowledge of DevSecOps principles and practices.\nPractical experience with CI/CD tools (e.g., Bitbucket, Jenkins, GitLab, GitHub Actions, or equivalent).\nProficiency in security platforms, vulnerability management tools, and at least one scripting language (e.g., Python, Bash).\nComfort working with AI-assisted development and security tools (e.g., AI coding assistants, AI-driven SAST/DAST/SCA triage) as part of the day-to-day toolkit, with the judgment to review and validate AI-generated output.\nSolid understanding of common vulnerabilities (e.g., OWASP Top 10) and remediation approaches.\nStrong communication and collaboration skills with the ability to engage cross-functional teams.\nFamiliarity with containerization tools (e.g., Docker, Kubernetes).\nKnowledge of security standards (e.g., NIST, ISO 27001, CIS).\nPreferred qualifications\n5+ years of experience in security engineering, software engineering, or platform engineering.\nProven track record owning security capabilities or programs at scale.\nDeep expertise across multiple security domains (AppSec, CloudSec, CI/CD security, architecture).\nAdvanced proficiency in security automation, tooling strategy, and infrastructure-as-code security, including experience integrating AI-based tools into automated pipelines.\nDemonstrated technical leadership and ability to influence cross-team decisions without formal authority.\nExperience leading security incident response and root-cause analysis.\nTrack record mentoring engineers and emerging security leads.\nExperience influencing engineering-wide security standards and practices, including guidance on the responsible use of AI tools (e.g., secure use of AI coding assistants, AI/LLM application security).\nRelevant advanced certifications (e.g., CISSP, CCSK, or equivalent).\nWe embrace flexibility and hybrid work opportunities to support diverse needs and lifestyles, while also valuing inclusive workplace experiences. By fostering a sense of community, we drive innovation, strengthen connections, and nurture belonging. Our commitment ensures you can work in a way that suits you best, while also engaging with colleagues to share ideas and build meaningful relationships.","description_format":"text","description_chars":8560,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[{"language":"English","level":"All levels","optional":false}]},"benefits":["Hybrid work"],"hiring_locations":[{"name":"Sri Lanka","iso":"LK","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Artificial Intelligence","Predictive Analytics","Electronic Warfare"],"lifecycle":[{"event":"open","at":"2026-09-23T10:21:57Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":0,"expected_fill_days":41,"reasons":["conf:7","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/ifs-lead-agentic-security-engineer","json_url":"https://alion.io/job/ifs-lead-agentic-security-engineer.json","meta":{"generated_at":"2026-09-24T16:05:23Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}