Key Responsibilities
· Lead architecture, design, and implementation of enhancements to security scanning and compliance reporting.
· Drive improvements in source code management, build, packaging, and distribution processes across Millennium platforms to ensure SCQC compliance .
· Align Millennium scanning and reporting processes with Oracle (OSSA) security standards and enterprise compliance requirements.
· Improve SCQC reporting accuracy and consistency for DoD/VA releases, ensuring traceability between scan results, releases, and component versions.
· Analyze and enhance pipeline data models to better represent scanning results and release artifacts.
· Partner with Pipeline, Security, Compliance, and Federal stakeholders to ensure solutions meet regulatory and audit requirements.
· Mentor engineers through design guidance, code reviews, and technical leadership in platform domains.
· Collaborate across teams to deliver cross-functional improvements supporting VA and Federal client initiatives.
AI-First Engineering Expectations
· Apply AI-assisted engineering techniques to accelerate development, testing, and troubleshooting of pipeline and reporting systems.
· Establish best practices for AI-assisted development, including validation of generated code and secure usage patterns.
· Ensure AI usage aligns with enterprise security, privacy, and compliance policies.
· Leverage AI to improve operational workflows such as scan analysis, reporting automation, and issue triage.
Minimum Qualifications
· BS in Computer Science or related field (or equivalent practical experience)
· 7+ years of professional software development experience
· Strong expertise in Millennium architecture and delivery pipelines
· Deep experience with:
o Source code management systems
o Build and packaging processes
o Artifact distribution pipelines
· Proficiency in C#, VC++, and SQL/CCL
· Strong understanding of software security scanning processes and how results map to releases and components
· Experience working with complex data models and reporting systems
· Proven ability to drive technical solutions across teams in complex, regulated environments
Preferred Qualifications
· Experience enhancing or operating security scanning and compliance reporting systems in large-scale enterprise environments
· Familiarity with SCQC reporting and Federal (DoD/VA) compliance expectations
· Deep understanding of Millennium delivery pipeline data models and release structures
· Experience aligning engineering systems with enterprise security frameworks (e.g., OSSA)
· Strong troubleshooting and performance optimization skills within build and pipeline systems
· Experience working in regulated environments supporting Federal clients
· Cloud experience (OCI preferred; AWS/Azure/GCP acceptable), including containerization and orchestration