DevSecOps Engineer

Occam Solutions

Arlington (VA)

On-site

USD 140,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Occam Solutions seeks a DevSecOps Engineer to lead design, implementation, and sustainment of secure cloud infrastructure for ONR Data & Analytics environment. Architect CI/CD pipelines, IaC using Terraform/Ansible, and container orchestration in regulated DoD contexts.

You will collaborate with software engineers, data scientists, cloud architects, cybersecurity personnel, and government stakeholders to deliver resilient, scalable cloud services that meet FedRAMP High and IL5 controls across

Qualifications

  • Seven (7) years of combined experience in DevSecOps, DevOps, SecOps, or MLOps engineering and development.
  • Five (5) years designing, securing, implementing, and maintaining cloud environments in regulated settings (AWS GovCloud / Azure Gov)
  • Experience in FedRAMP High, DoD IL5, or equivalent security requirements.
  • Two+ projects building CI/CD pipelines with Jenkins, GitLab CI/CD, Azure DevOps, GitHub Actions, or equivalents.
  • Hands-on with Terraform, Ansible, CloudFormation, or similar IaC tools.
  • Experience with cloud-native security (WAF, IDS/IPS, SIEM, vulnerability mgmt).
  • Experience with IAM, encryption, secrets management, and Zero Trust principles.
  • Experience with automated monitoring, logging, and performance optimization in enterprise clouds.

Responsibilities

  • Design, deploy, automate, and maintain secure cloud infrastructure supporting mission applications and analytics platforms.
  • Develop, implement, and manage automated CI/CD pipelines with Jenkins, GitLab CI/CD, or equivalents.
  • Build and maintain IaC solutions using Terraform, Ansible, or similar tools.
  • Manage containerized environments with Docker, Kubernetes, OpenShift, or equivalents.
  • Configure and monitor cloud-native security services including WAF/IDS/IPS, SIEM, vulnerability management.
  • Analyze logs and SIEM data to identify threats and support incident response.
  • Support DoD compliance through configuration management, patching, vulnerability remediation, and security documentation.
  • Collaborate with developers, data engineers, and cloud architects to embed security in SDLC.
  • Ensure DoD cybersecurity policies, FedRAMP High, IL5 controls are met.

Skills

DevSecOps
DevOps
SecOps
MLOps
Cloud security
SSDLC

Education

DoD 8140 certification
AWS GovCloud / Azure Government experience
Security+ / CISSP / CCSP

Tools

Terraform
Ansible
CloudFormation
Jenkins
GitLab CI/CD
Azure DevOps
GitHub Actions
Docker
Kubernetes
OpenShift
WAF
IDS/IPS
SIEM

Job description

Primary Responsibility

The DevSecOps Engineer shall serve as the lead technical engineer responsible for designing, implementing, securing, automating, and sustaining the cloud infrastructure supporting the Office of Naval Research (ONR) Data & Analytics environment. The DevSecOps Engineer shall lead the implementation and execution of the technical requirements identified in PWS Section 4.5 – Technical Infrastructure and Platform Support, including infrastructure automation, Continuous Integration/Continuous Deployment (CI/CD), cloud security, container orchestration, Infrastructure-as-Code (IaC), and operational sustainment of the FedRAMP High and DoD Impact Level 5 (IL5) cloud environment.

The DevSecOps Engineer shall architect and maintain secure cloud infrastructure, automate deployment pipelines, support AI/ML platform integration, implement cloud-native security controls, monitor system health and security events, and ensure compliance with DoD cybersecurity requirements. This position will work closely with software developers, data engineers, cloud architects, cybersecurity personnel, and Government stakeholders to deliver resilient, scalable, and secure cloud services.

Duties and Responsibilities

The DevSecOps Engineer shall:

  • Design, deploy, automate, and maintain secure cloud infrastructure supporting mission applications and analytics platforms.
  • Develop, implement, and manage automated CI/CD pipelines using tools such as Jenkins, GitLab CI/CD, or equivalent technologies.
  • Build and maintain Infrastructure-as-Code (IaC) solutions utilizing Terraform, Ansible, or similar automation frameworks.
  • Implement and manage containerized application environments using Docker, Kubernetes, or comparable orchestration platforms.
  • Configure, monitor, and optimize cloud-native security services including Web Application Firewalls (WAF), Intrusion Detection/Prevention Systems (IDS/IPS), endpoint protection, and Security Information and Event Management (SIEM) platforms.
  • Analyze security logs, audit events, vulnerability reports, and SIEM alerts to identify threats, recommend mitigation strategies, and support incident response activities.
  • Support continuous Authority to Operate (ATO) compliance through configuration management, security patching, vulnerability remediation, and security documentation.
  • Implement secure API management, identity and access management (IAM), secrets management, encryption, and least-privilege access controls.
  • Develop automated monitoring, logging, alerting, and operational dashboards to improve system reliability and performance.
  • Support deployment and operationalization of AI/ML platforms and services, including cloud-native machine learning environments.
  • Collaborate with software developers, data engineers, and cloud architects to integrate security throughout the software development lifecycle (SDLC).
  • Ensure cloud infrastructure complies with DoD cybersecurity policies, FedRAMP High requirements, DoD IL5 controls, and applicable security frameworks.
  • Support system scalability, resilience, disaster recovery, and operational continuity.
  • Document system architectures, deployment procedures, security configurations, and operational processes.
Minimum Qualifications

The DevSecOps Engineer shall meet the requirements for the "DevSecOps Engineer – Intermediate" labor category as defined in the CHESS ITES-3S contract vehicle and possess the following additional qualifications:

  • Seven (7) years of combined experience in DevSecOps, DevOps, SecOps, or MLOps engineering and development.
  • Five (5) years of hands-on experience designing, securing, implementing, and maintaining cloud environments, preferably within AWS GovCloud, Azure Government, or similarly regulated cloud environments.
  • Demonstrated experience supporting cloud environments operating under FedRAMP High, DoD Impact Level 5 (IL5), or comparable federal security requirements.
  • Verifiable experience on at least two (2) projects designing, implementing, and managing Continuous Integration/Continuous Deployment (CI/CD) pipelines using Jenkins, GitLab CI/CD, Azure DevOps, GitHub Actions, or equivalent technologies.
  • Demonstrated expertise implementing and managing containerization and orchestration technologies, including Docker, Kubernetes, OpenShift, or similar platforms.
  • Hands-on experience implementing Infrastructure-as-Code (IaC) using Terraform, Ansible, CloudFormation, or comparable automation tools.
  • Experience configuring and administering cloud-native security capabilities including Web Application Firewalls (WAF), Intrusion Detection/Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM), vulnerability management, and cloud security monitoring solutions.
  • Verifiable experience analyzing security logs, SIEM data, audit records, and threat intelligence to identify vulnerabilities, investigate security events, and implement corrective actions.
  • Experience implementing secure Identity and Access Management (IAM), encryption, secrets management, and Zero Trust security principles.
  • Experience supporting automated monitoring, logging, system performance optimization, and operational sustainment of enterprise cloud platforms.
  • Strong understanding of DevSecOps best practices, secure software development lifecycle (SSDLC), and cloud security architectures.
Qualifications
  • Active Secret security clearance (required).
  • Current DoD 8140 (or legacy DoD 8570) cybersecurity certification applicable to privileged access functions (e.g., Security+, CySA+, CASP+, CISSP, CCSP).
  • AWS Certified DevOps Engineer – Professional, AWS Security Specialty, Azure DevOps Engineer Expert, Certified Kubernetes Administrator (CKA), or comparable cloud certifications.
  • Experience supporting AI/ML environments, including AWS SageMaker, Azure Machine Learning, or similar platforms.
  • Experience with streaming data technologies such as Apache Kafka, AWS Kinesis, or equivalent event-driven architectures.
  • Familiarity with NIST RMF, DISA STIGs, FedRAMP, Zero Trust Architecture, and DoD cybersecurity compliance requirements.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

Occam Solutions, Inc • Arlington (VA)

On-site
USD 150,000 - 190,000
DevSecOps Engineer
DevSecOps Engineer

Integral • Washington

On-site
USD 120,000 - 150,000
DevSecOps Engineer
DevSecOps Engineer

Integral Federal, Inc. • McLean (VA)

On-site
USD 120,000 - 150,000
DevSecOps Engineer
DevSecOps Engineer

Integral Federal, Inc. • Washington

On-site
USD 110,000 - 150,000
Medical, Dental & Vision Insurance
Flexible Spending Accounts
Short-Term and Long-Term Disability Insurance
+5
DevSecOps Engineer
DevSecOps Engineer

The Phoenix Group • Arlington (VA)

On-site
USD 140,000 - 190,000
DevSecOps Engineer
DevSecOps Engineer

The Phoenix Group® • Arlington (VA)

On-site
USD 120,000 - 180,000
DevOps Engineer
DevOps Engineer

Meridian Systematics • Springfield (VA)

On-site
USD 95,000 - 160,000
Dental insurance
Health insurance
Paid time off
+2
DevSecOps Engineer (Mid)
DevSecOps Engineer (Mid)

United States Digital Space LLC • United States

Remote
USD 120,000 - 144,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Oteemo, Inc • College Park (MD)

On-site
USD 120,000 - 160,000
DevSecOps Engineer
DevSecOps Engineer

Socket.dev • Arlington (VA)

On-site
USD 120,000 - 150,000