Requirements
Must have:
- We require a bachelors degree with 12 years of infrastructure or cloud engineering experience, or equivalent professional experience.
- We require 5–8 years of DevSecOps or engineering experience.
- We require hands‑on experience with Terraform and Ansible automation.
- We require experience working with Docker and Kubernetes.
- We require proficiency with static and dynamic application security scanning tools.
- We require experience with secrets management solutions.
- We require scripting skills in Python, Bash, or PowerShell.
- We require experience working in Agile SDLC environments.
- We require familiarity with cloud security frameworks.
- We prefer AWS or Azure DevOps certifications.
- We prefer CISSP certification.
- We prefer Certified Kubernetes Administrator (CKA) certification.
- We require an active Secret clearance and the ability to obtain DEA suitability.
Responsibilities:
- We build, maintain, and secure CI/CD pipelines using Jenkins, GitHub Actions, GitLab, and Azure DevOps.
- We automate application build, test, security scanning, and deployment workflows.
- We integrate security testing throughout the full development lifecycle.
- We implement container and cloud security best practices.
- We manage source code repositories and branching strategies.
- We automate compliance checks and configuration validation.
- We support vulnerability remediation and overall risk reduction efforts.
- We collaborate closely with developers, cybersecurity specialists, and operations teams.
Company:
We are GovCIO and are hiring a DevSecOps Engineer for a hybrid/remote role based in Arlington, VA. In this position, we focus on embedding security into software development and infrastructure operations by automating secure delivery pipelines, compliance controls, vulnerability management, and deployment processes. The posted salary range is USD $220,000 to $230,000 per year.