Cyber Technical Engineer

Technomics, Inc.

Arlington (VA)

On-site

USD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A growing decision analytics company in Arlington, VA is seeking a Senior Associate to implement secure CI/CD pipelines and support RMF compliance. The ideal candidate has hands-on experience in DevSecOps and knowledge of containerization and security engineering. Responsibilities include automating workflows, maintaining security standards, and collaborating with development teams. This position offers an opportunity to grow in a fast-paced environment while applying analytical rigor to client challenges.

Qualifications

  • 1–3 years of hands-on experience in DevSecOps, Cybersecurity, or Cloud Engineering.
  • Basic understanding of the NIST RMF and ATO process.
  • Experience applying STIGs and other hardening guidelines to systems.

Responsibilities

  • Implement and maintain secure CI/CD pipelines using GitLab CI/CD.
  • Support RMF process including SSP development and control implementation.
  • Assist in design and deployment of secure containerized applications.

Skills

DevSecOps experience
Basic understanding of NIST RMF
Working knowledge of Docker
Experience with GitLab CI/CD
Scripting proficiency in Python and Bash
Strong communication skills

Education

Bachelor’s degree in computer science, Cybersecurity, or related field

Tools

Docker
GitLab CI/CD
Jira
Linux

Job description

Current job opportunities are posted here as they become available.

Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster. We enable a wide range of clients across the Federal government, from senior level policy makers to program managers, to choose smartly, buy effectively and operate efficiently. We deliver practical, credible and defensible results offering actionable insights by applying data-driven and analytics-based approaches in combination with multidisciplinary talent, subject matter experts, and tangible and repeatable assets in the form of databases, models, approaches and techniques.

Senior Associates use problem-solving principles, processes and methods and complementary software applications to support client engagements and have a direct and significant impact on deliverables to clients. Your work will be guided by more experienced team members, but you will work with autonomy.

Our employee-owners pride themselves on their ability to apply deep analytical rigor and innovative thought that assist clients in understanding and solving a myriad of challenging resource planning and management problems.

This position is located in Arlington, VA.

Overview

This position plays a critical role in implementing secure CI/CD pipelines, container security, and Risk Management Framework (RMF) compliance activities. The ideal candidate has foundational experience across DevSecOps, containerization, and security engineering and is eager to grow in a fast-paced, mission-critical environment.

Roles and Responsibilities
  • Implement and maintain secure CI/CD pipelines using GitLab CI/CD and automation tools.
  • Support the RMF process, including System Security Plan (SSP) development, control implementation, Plan of Action and Milestones (POA&M), and preparation for ATO (Authority to Operate).
  • Support the development and maintenance of a DevSecOps automation framework for RMF compliance.
  • Assist in the design, development, and deployment of secure containerized applications using Docker, Podman and Kubernetes.
  • Apply DoD STIGs, CIS Benchmarks, and other hardening guides.
  • Perform and integrate automated security scanning tools (e.g., SAST, SCA, DAST) and compliance checks into the CI/CD process.
  • Write and maintain scripts in Python, Bash, and other languages to automate system tasks, scans, and reports.
  • Collaborate with security, development, and operations teams to design secure, scalable infrastructure and workflows.
  • Collaborate with development and security teams to remediate vulnerabilities and implement security best practices.
  • Create and manage tickets in Jira, participate in Agile ceremonies, and support backlog grooming with technical input.
  • Perform basic Linux system administration, configuration, and troubleshooting.
  • Document system designs, security controls, and standard operating procedures.
  • Map security controls to NIST 800-53 and other relevant DoD security standards.
  • Stay up-to-date on the latest RMF guidance, security threats, and DevSecOps technologies.
Qualifications
  • Bachelor’s degree in computer science, Cybersecurity, Information Systems, or a related technical field (or equivalent work experience).
  • 1–3 years of hands-on experience in DevSecOps, Cybersecurity, or Cloud Engineering.
  • Basic understanding of the NIST RMF and experience assisting in the ATO process.
  • Working knowledge of Docker, Podman, Kubernetes, and container orchestration platforms.
  • Experience with GitLab CI/CD pipelines and security automation tools.
  • Familiarity with Linux commands and system administration.
  • Scripting proficiency in Python and Bash.
  • Exposure to vulnerability scanning tools like Nessus, and integration of SAST, SCA, DAST into DevOps pipelines.
  • Experience applying STIGs, DISA SRGs, or hardening guidelines to systems.
  • Strong communication skills, with the ability to document and present findings effectively.
  • Knowledge of NIST SP 800-53, DoDI 8500.01, and DoDI 8510.01
Desired Qualifications
  • Experience with eMASS or other GRC (Governance, Risk, and Compliance) Tools.
  • Familiarity with DoW security policies and procedures.
  • Experience with container security and Kubernetes security.
  • Familiarity with cloud platforms (AWS, Azure).
  • Exposure to infrastructure as code (IaC) using Terraform, Ansible, or similar tools.
  • Experience with tools like SCAP, OpenSCAP, or ACAS.
  • Familiarity with Agile/Scrum processes and tools (Jira, Confluence)
  • Certifications such as IAT Level II/IAM Level I (e.,g CompTIA Security+), Certified Kubernetes Administrator (CKA), others as applicable.
  • Familiarity with combat systems such as SSDS and AEGIS).
  • A working knowledge of cyber regulations.

We are an Equal Opportunity Employer. As an Equal Opportunity Employer, we do not discriminate on the basis of race, color, religion, national origin, sex, age, marital status, disability or veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

Socket.dev • Arlington (VA)

On-site
USD 120,000 - 150,000
DevSecOps Engineer (Mid)
DevSecOps Engineer (Mid)

United States Digital Space LLC • United States

Remote
USD 120,000 - 144,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Fall River (MA)

On-site
USD 120,000 - 180,000
Principal Information Security Engineer
Principal Information Security Engineer

Clarityinnovates • Fort Meade (MD)

On-site
USD 117,000 - 292,000
SecDevOps Engineer
SecDevOps Engineer

Jobtailor • Colorado

On-site
USD 150,000 - 190,000
DevOps Integration Engineer
DevOps Integration Engineer

Frey Consulting Group • United States

On-site
USD 105,000 - 130,000
Senior Cybersecurity Analyst/Engineer
Senior Cybersecurity Analyst/Engineer

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
DevSecOps Engineer
DevSecOps Engineer

electro soft • Arlington (VA)

On-site
USD 140,000 - 190,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Washington

On-site
USD 140,000 - 210,000