Lead Agentic Security Engineer at IFS | Job-Scouts.com

Lead Agentic Security Engineer

IFS
full-time lead Colombo, Western Province, Sri Lanka · More jobs in Colombo, Western Province, Sri Lanka
This position is sourced from IFS's career page . Apply through Job-Scouts to track your application status.

Job Description

As a Lead Agentic Security Engineer, you will provide technical leadership for security engineering across the organization. You will set technical direction, own critical security capabilities, drive cross-team security initiatives, and mentor engineers at all levels. You are accountable for the maturity and effectiveness of security engineering, balancing risk, delivery, and engineering realities. 

This is a technical leadership role, not a people-management role — though it carries significant influence and mentorship responsibility. 

Duties and accountabilities 

Technical strategy and ownership 

• Define and drive the technical direction for security engineering. 

• Own critical security domains and capabilities end to end (AppSec, CloudSec, CI/CD security, vulnerability management). 

• Set standards, patterns, and guardrails that scale across teams. 

• Make and own high-impact, risk-based security decisions. 

Cross-team leadership 

• Lead security initiatives spanning multiple engineering teams. 

• Act as the senior security point of contact for engineering leadership. 

• Influence architecture and design across the organization. 

• Align security efforts with business and delivery priorities. 

Engineering and automation 

• Drive security automation and tooling strategy (SAST, SCA, DAST, IaC, container security), including AI-assisted and AI-augmented tooling for triage, correlation, and remediation guidance. 

• Evaluate and apply AI and generative AI tools — for example AI-assisted code review, AI-powered vulnerability triage, and LLM-based threat and log analysis — to improve signal quality, coverage, and developer experience, while validating their output rather than trusting it blindly. 

• Ensure security platforms are reliable, scalable, and maintainable. 

• Build the team's fluency with AI-assisted engineering tools (e.g., AI coding assistants, AI-enabled security scanners) and set guardrails for their safe, effective use, including awareness of AI/LLM-specific risks such as prompt injection, model and data supply-chain exposure, and sensitive-data leakage. 

Risk, incident, and compliance 

• Lead response and root-cause analysis for significant security incidents. 

• Identify systemic risks and drive long-term remediation. 

• Own security engineering input into compliance efforts (ISO 27001, SOC 2, FedRAMP). 

• Coordinate external engagements (e.g., penetration testing vendors). 

Mentorship and capability building 

• Mentor engineers and emerging leads (including Associate Security Leads). 

• Raise the overall security capability of engineering teams, including fluent, responsible use of AI-assisted tools. 

• Champion a strong, pragmatic security culture. 

What success looks like 

• Security engineering direction is clear, pragmatic, and adopted. 

• Critical risks are proactively identified and addressed. 

• Engineering teams trust and act on security guidance. 

• Security maturity improves measurably across the organization, including effective adoption of AI-assisted security tooling. 

• Engineers grow under your mentorship.

Requirements

Department: Research and Development
Function: Engineering
Experience Level: Mid-Senior Level

Location

Colombo, Western Province, Sri Lanka
View on Google Maps

Similar open positions