> Markdown version of [/jobs/ext/1738811-java-security-integration-engineer](https://www.wearedevelopers.com/jobs/ext/1738811-java-security-integration-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Java Security Integration Engineer - **Company:** LEDGENT - **Location:** Loveland, CO, United States - **Experience:** Expert - **Salary:** $145,600.0 - $187,200.0 - **Contract:** Temporary to permanent - **Skills:** Java (Programming Language), Spring Security, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Application Firewall, Software Applications, Microsoft Azure, Cloud Computing, Cloud Engineering, Communications Protocols, Data Migration, Database Schema, DevOps, Dicom, Multi-Factor Authentication, Identity and Access Management, Java Security, Java Web Services, Spring Framework, OAuth, OpenID, Open Web Application Security, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Secure Coding, Web Application Security, Security Information and Event Management, Single Sign-On, Systems Integration, Web Application Frameworks, Datadog, Data Logging, Transport Layer Security, Enterprise Software Applications, Okta, Large Language Models, Spring-boot, Software Security, Software Troubleshooting, Generative AI, Backend, Rate Limiting, Customer Identity Access Management, Containerization, AI Platforms, Kubernetes, Microsoft Sentinel, Oracle Cloud Infrastructure, Splunk, Code Restructuring, Docker - **Published:** July 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=8c45ed272b545b06 ## About the Role * Core Java Mastery: 5+ years of professional experience developing enterprise-grade software applications using Java (Spring Framework / Spring Boot). * Identity Protocols: Strong hands-on experience designing and troubleshooting complex identity federation flows using SAML 2.0, OpenID Connect (OIDC), OAuth 2.0, and JWT. * CIAM/IAM Expertise: Deep familiarity with integrating apps with Customer Identity systems and major IdPs (e.g., Okta, Auth0, Keycloak). * Application Security (AppSec): Thorough understanding of cryptography, transport security (TLS/SSL), API security, and secure coding fundamentals. * Perimeter Security: Experience coordinating and troubleshooting Web Application Firewall (WAF) rule sets, traffic filtering, and rate limiting. * SIEM & Logging Infrastructure: Practical experience setting up application logging frameworks (Logback, Log4j2) to output security event formats consumable by SIEM monitoring tools. * Contractor Mindset: Proven ability to work independently in a fast-paced environment with minimal supervision; highly organized and milestone-driven., * Familiarity with containerization technologies (Docker, Kubernetes) and secure cloud deployment architectures (AWS, Azure, or OCI). * Experience working with Picture Archiving and Communication Systems (PACS) for medical devices using DICOM (DICOM (Digital Imaging and Communications in Medicine) protocol. * Understanding of modern regulatory frameworks (e.g., GDPR, NIS2, or HIPAA/HITRUST) as they relate to application security and data privacy. * Relevant industry certifications are a plus. ## Description The ideal candidate is a hands-on developer with 5+ years of experience who bridges the gap between core Java development and modern web application security practices. You will be responsible for developing secure integrations, implementing robust Customer Identity & Access Management (CIAM) systems, establishing secure Single Sign-On (SSO) pathways, work on legacy system refactoring, troubleshooting application behaviors behind Web Application Firewalls (WAF), and ensuring that security logging seamlessly integrates with our enterprise SIEM platforms., Secure Coding: Design, develop, and maintain high-performance, secure Java-based backend services and APIs using modern frameworks (e.g., Spring Boot, Spring Security). * AppSec Best Practices: Conduct threat modeling, perform secure code reviews, and remediate application vulnerabilities based on OWASP Top 10 standards., SSO Integrations: Design and configure secure Single Sign-On (SSO) workflows utilizing industry-standard protocols including SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC). * IdP Management: Integrate enterprise application suites with primary Identity Providers (IdPs) such as Okta, Auth0, Microsoft Entra ID (Azure AD), or Keycloak. * CIAM Implementation: Lead the implementation of Customer Identity & Access Management (CIAM) systems * Experience with B2C authentication architecture. * A strong understanding of modern authentication and authorization protocols to secure client-facing portals, including multi-factor authentication (MFA) and registration workflows. * Perimeter Protection & Incident Monitoring * WAF Integration: Partner with infrastructure and cloud engineering teams to Develop custom WAF rules to safeguard against OWASP vulnerabilities. * Analyze WAF logs and fine-tune security policies to minimize false positives. * SIEM Logging & Integration: Architect and implement structured, standardized logging patterns within our Java services to enable seamless event ingestion, correlation, and alerting in Security Information and Event Management (SIEM) systems (e.g., Splunk, Datadog, Microsoft Sentinel). * Secure AI & API Integration * AI & LLM Integration: Design and implement backend integrations with Large Language Models (LLMs) and AI platform endpoints (e.g., OpenAI, Azure OpenAI, AWS Bedrock). * RAG Architectures: Build and maintain Retrieval-Augmented Generation (RAG) pipelines, ensuring that corporate data sources are safely queried, contextually injected, and filtered. * Collaboration & Compliance * Deliver clear documentation including technical integration guides, identity flow architecture diagrams, and run books. * Work collaboratively with DevOps, Cloud Infrastructure, and Compliance teams to align development practices with internal security policies and external compliance requirements. * Data Sovereignty: Assist in the architectural planning, database schema split, and data migration strategies required to establish an isolated EU-specific instance to comply with GDPR ## Related Videos - [ZEISS & Microsoft - Building the Next Generation Medical Ecosystem in the Cloud](https://www.wearedevelopers.com/videos/424-zeiss-microsoft-building-the-next-generation-medical-ecosystem-in-the-cloud) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Top 10 Java Libraries](https://www.wearedevelopers.com/magazine/364-top-10-java-libraries) - [93 Java Interview Questions You Should Prepare For](https://www.wearedevelopers.com/magazine/14-93-java-interview-questions-you-should-prepare-for) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)