DevSecOps / Cloud Hosting Engineer

Socket.dev

Arlington (VA)

On-site

USD 128,000 - 173,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Socket.dev seeks a DevSecOps / Cloud Hosting Engineer to own and operate the cloud environment hosting an operator application used in a national cyber defense command center. You will stand up the environment, manage its pipeline, and maintain security controls and evidence for authorization.

Responsibilities include cloud architecture ownership, container orchestration, content delivery, streaming services, and secure, IaC-driven deployments. On-site in the Washington, D.C.

Qualifications

  • Hands-on cloud infra ownership in regulated/government environments.
  • Container orchestration with cluster config, autoscaling, and troubleshooting.
  • Experience with long-lived client connections or streaming services.
  • CI/CD pipelines with automated security scanning.
  • Infrastructure as code (IaC) definitions.
  • Identity, access control, secrets management, and encryption experience.
  • RMF or equivalent frameworks with continuous monitoring/evidence collection.
  • One current cloud platform or container‑orchestration certification.
  • Bachelor’s degree or equivalent experience.
  • Active Top Secret clearance.
  • U.S. citizenship.
  • On-site work at a Washington, D.C.-area facility; not remote or hybrid.

Responsibilities

  • Own cloud hosting architecture including network segmentation and private endpoints.
  • Operate the container orchestration platform, including autoscaling and storage.
  • Manage content delivery, object storage origin, and load-balanced routing.
  • Maintain high-capacity gateway and streaming services for many client connections.
  • Ensure development, test, and production are isolated; manage capacity, cost, and performance.
  • Build and maintain CI/CD pipelines with security scanning.
  • Define infrastructure as code for reproducible environments.
  • Implement encryption, IAM, and access control; security governance.

Skills

Autoscaling
Cloud Computing
Cloud Infrastructure
Container Orchestration
DevSecOps

Education

Bachelor's degree in a technical field

Job description

Type of Requisition

Regular

Clearance Level Must Currently Possess

Interim Top Secret

Clearance Level Must Be Able to Obtain

Top Secret/SCI

Public Trust/Other Required

None

Job Family

Cyber and IT Risk Management

Job Qualifications

Skills: Autoscaling, Cloud Computing, Cloud Infrastructure, Container Orchestration, DevSecOps

Certifications: None

Experience: 5 + years of related experience

US Citizenship Required: Yes

DevSecOps / Cloud Hosting Engineer
Position Summary

The DevSecOps / Cloud Hosting Engineer owns and operates the cloud environment hosting an operator application used in a national cyber defense command center. The environment supports independently deployed services, gateway and streaming infrastructure, and the static delivery path for the application. The engineer stands up the environment, manages its pipeline, and maintains the security controls and evidence required for authorization.

Key Responsibilities
Cloud Environment Ownership
  • Own the cloud hosting architecture, including network segmentation, routing, and private endpoints.
  • Operate the container orchestration platform, including node configuration, autoscaling, and persistent storage.
  • Manage content delivery, object storage origin, and load‑balanced routing.
  • Operate high‑capacity gateway and streaming services supporting many long‑lived client connections.
  • Maintain separation across development, test, and production; manage capacity, cost, and performance.
Pipeline & Infrastructure as Code
  • Build and maintain CI/CD pipelines enabling frequent, low‑risk releases.
  • Define infrastructure as code for reproducible, reviewable environments.
  • Integrate automated security, dependency, image, and configuration scanning.
  • Maintain release, promotion, and rollback procedures, including service‑level isolation under pressure.
Security Engineering & Authorization
  • Own the environment’s security configuration and alignment to the required control baseline.
  • Implement identity and access control, policy guardrails, identity federation, and managed secrets.
  • Implement encryption in transit and at rest using managed key services.
  • Own the authorization boundary and support the authorization process through boundary definition, control implementation, and evidence collection.
  • Maintain continuous monitoring through configuration compliance, posture management, audit trails, and flow logging; remediate findings.
Availability, Monitoring & Response
  • Implement monitoring and alerting capable of detecting degradation early, including streaming‑layer health.
  • Maintain backup, recovery, and availability capabilities for continuous operations.
  • Respond to environment incidents, including after hours, and lead root‑cause resolution.
  • Document environment behavior, dependencies, and recovery procedures.
Collaboration & Professional Currency
  • Work with application engineers to design deployment, scaling, configuration, and secrets handling.
  • Provide developer support without weakening security posture.
  • Contribute to hosting, deployment, and authorization‑boundary architectural decisions.
  • Obtain and maintain required training and certificates; certification currency is reported monthly.
Required Qualifications
  • Hands‑on experience owning and operating cloud infrastructure in regulated or government environments.
  • Production experience with container orchestration, including cluster configuration, autoscaling, and troubleshooting.
  • Experience operating services with many long‑lived client connections or comparable streaming systems.
  • Experience maintaining CI/CD pipelines with automated security scanning.
  • Experience defining infrastructure as code.
  • Experience implementing identity, access control, secrets management, and encryption.
  • Working knowledge of RMF or equivalent frameworks, including continuous monitoring and evidence collection.
  • One current cloud platform or container‑orchestration certification.
  • Bachelor’s degree in a technical field and 5 years of relevant experience (or equivalent experience).
  • Active Top Secret clearance.
  • U.S. citizenship.
  • On‑site work at a Washington, D.C.‑area government facility; not remote or hybrid.
Preferred Qualifications
  • Experience with AWS GovCloud, Azure Government, or similar government cloud regions; experience with FedRAMP or DoD accreditation.
  • Experience with Kubernetes distributions such as Amazon EKS or Azure Kubernetes Service.
  • Experience with Terraform, CDK, or Bicep.
  • Experience supporting an initial authorization to operate (ATO).
  • Platform certifications such as AWS DevOps Engineer, AWS Solutions Architect, Azure Solutions Architect, or CKA.
  • Security certifications such as AWS Security Specialty, Azure Security Engineer, Security+, or CISSP.
  • Experience with zero‑trust patterns, workload identity, and service mesh.
  • Experience operating environments subject to independent security assessment.
Salary

The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours

40

Travel Required

Less than 10%

Telecommuting Options

Onsite

Work Location

USA VA Arlington

Total Rewards at GDIT

Our benefits package for all US‑based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post‑tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long‑term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Identity Verification Process

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission‑ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps / Cloud Hosting Engineer
DevSecOps / Cloud Hosting Engineer

General Dynamics Information Technology • Arlington (VA)

On-site
USD 128,000 - 173,000
DevOps Engineer
DevOps Engineer

Praxis Engineering • Maryland

Hybrid
USD 164,382 - 212,750
DevOps Engineer - TS/SCI with Polygraph
DevOps Engineer - TS/SCI with Polygraph

General Dynamics Information Technology • McLean (VA)

On-site
USD 183,000 - 247,000
401K with company match
Health and wellness packages
Internal mobility team
+3
DevOps Engineer - TS/SCI w/ Poly
DevOps Engineer - TS/SCI w/ Poly

General Dynamics Information Technology • McLean (VA)

On-site
USD 153,000 - 207,000
401K with company match
Health and wellness packages
Paid education and certifications
+1
Solutions Architect/Lead
Solutions Architect/Lead

PreSales Collective • Virginia (MN)

Hybrid
USD 153,000 - 207,000
Medical plans
Dental plan
401(k)
Technical DevSecOps Manager - TS/SCI with Polygraph
Technical DevSecOps Manager - TS/SCI with Polygraph

General Dynamics Corporation • McLean (VA)

On-site
USD 147,000 - 200,000
Medical plan options
Dental plan options
Vision plan
+3
Operations DevOps, Team Lead - TS/SCI - Sign-on Bonus! - Relocation assistance
Operations DevOps, Team Lead - TS/SCI - Sign-on Bonus! - Relocation assistance

General Dynamics Information Technology • Springfield (VA)

On-site
USD 145,000 - 196,000
Senior DevOps Engineer
Senior DevOps Engineer

General Dynamics Information Technology • Springfield (VA)

On-site
USD 144,000 - 194,000
Cloud Developer Principal
Cloud Developer Principal

General Dynamics Information Technology • Mary Esther (FL)

On-site
USD 106,250 - 143,750
Backend API Developer
Backend API Developer

Socket.dev • Arlington (VA)

On-site
USD 119,000 - 161,000
401K with company match
Paid time off
Competitive pay