DevSecOps Engineer

careers-i2xisys

Boulder (CO)

On-site

USD 140,000 - 170,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

I2X Technologies seeks a Senior DevSecOps Engineer for an on‑site role in Boulder, CO. You will lead secure software and infrastructure delivery, architect secure environments, and drive CI/CD pipelines with strong security controls in a classified setting.

The role requires hands‑on leadership across engineering, cybersecurity, and operations, with a focus on automation, observability, and RMF/DoD guidance to maintain mission readiness.

Qualifications

  • Active DoD Secret clearance with ability to obtain TS/SCI.
  • 10+ years of professional experience; defense/space environments preferred.
  • Bachelor’s degree or equivalent experience.

Responsibilities

  • Lead DevSecOps initiatives across enclaves and projects.
  • Architect secure cloud/on‑prem environments using IaC.
  • Design and operate automated CI/CD pipelines with integrated security controls.
  • Manage container workloads with Docker and Kubernetes.
  • Ensure secure SDLC practices and secure coding training.

Skills

DevSecOps
CI/CD
Cloud security
Linux admin
Terraform

Education

Bachelor’s degree

Tools

Terraform
Ansible
CloudFormation
Pulumi
Kubernetes

Job description

Minimum Clearance Required

Secret

Responsibilities

I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting‑edge engineering applications, I2X is ready to offer you the chance to make a real‑world impact in your field and for your country. We provide long‑term growth and development. Headquartered in Colorado, I2X is engaged in programs across the country and in more than 20 states. Our programs support multiple Federal agencies, the Department of Defense and often focused on the space initiatives of our government customers.

I2X Technologies is seeking a DevSecOps Engineerto support ongoing activities for a customer in Boulder, CO. This position will be on‑site and will require an active *Secret with the ability to obtain a TS/SCI.

Job Description:

I2X Technologies is looking for a sharpSenior DevSecOps Engineer to join our growing team in Boulder, CO.

In this fully onsite role, you will be a hands‑on technical leader for a small, fast‑moving program team supporting a classified space portfolio. You will drive DevSecOps practices across multiple projects, architect secure‑by‑design solutions, and build and maintain robust CI/CD pipelines and infrastructure that meet stringent mission and security requirements. This role is ideal for a self‑starter who is comfortable leading, coding, automating, and collaborating across engineering, cybersecurity, and operations teams.

Responsibilities:

  • Lead DevSecOps initiatives across multiple enclaves and projects, serving as a primary technical point of contact for secure software and infrastructure delivery
  • Architect, implement, and maintain secure cloud and on‑prem environments using Infrastructure as Code toolsets such as Terraform, Ansible, CloudFormation, or Pulumi
  • Design, build, and operate automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Azure DevOps, Jenkins) with integrated security controls including SAST, DAST, SCA, container image scanning, and secret management
  • Implement, harden, and manage containerized workloads using Docker and Kubernetes (including RKE2, OpenShift, or Rancher), leveraging Helm, Kustomize, and umbrella charts to deploy and manage complex, multi‑service systems
  • Provide expert Linux systems administration on Red Hat Enterprise Linux, including troubleshooting issues across storage, operating systems, applications, and networks in classified or mission‑critical environments
  • Integrate security into the SDLC by enforcing secure coding practices, performing code and pipeline reviews, and mentoring developers on DevSecOps and application security principles (including OWASP Top 10)
  • Establish and maintain observability capabilities (logging, metrics, tracing, alerting) to support reliability, incident response, and performance monitoring for mission systems
  • Identify, prioritize, and drive remediation of vulnerabilities across applications, containers, hosts, and infrastructure, in alignment with NIST controls and DoD DevSecOps guidance
  • Implement and maintain DAST and SAST tools in coordination with ISSOs, system security engineers, and development teams to support RMF Assessment and Authorization (A&A) efforts and continuous monitoring
  • Utilize and manage binary registries (e.g., Artifactory, Harbor, Docker Registry, Nexus) and package repositories in secure environments, ensuring compliance with program policies and security baselines
  • Support and enhance compliance‑and‑policy‑as‑code solutions (e.g., OPA, Conftest, Checkov) to enforce security baselines, configuration standards, and deployment guardrails across Kubernetes, cloud, and IaC artifacts
  • Collaborate with systems engineering, cybersecurity, operations, and vendor teams to ensure software and infrastructure designs meet security, performance, availability, and accreditation requirements
  • Support and contribute to program documentation and security artifacts, including architecture and deployment documentation, security plans, DevSecOps process documentation, and material for technical reviews and readiness events
  • Work with Product Owners and Scrum Masters to translate security and DevSecOps requirements into actionable user stories and tasks; support Agile ceremonies and iterative delivery of secure capabilities
  • Drive continuous improvement in automation, tooling, and processes to increase deployment frequency, reduce change failure rates, and strengthen the overall security posture of the program
Qualifications
  • Active DoD Secret clearance, with eligibility and willingness to obtainTS/SCI
  • 10+ years of professional experience, with additional education able to count towards total years of experience. Potential flexibility pending Customer approval.
  • Bachelor’s degree, or additional years of experience in lieu of a degree
  • Professional software/DevSecOps experience in mission‑critical defense, space, or aerospace environments; familiarity with DoD DevSecOps, Agile, NIST controls, and OWASP Top 10
  • Strong Linux (RHEL) administration and scripting skills(Bash,Python)(Bash,Python), including system hardening, automation, and troubleshooting across storage, OS, application, and network layers
  • Proficiency in at least one major programming language (e.g., Java, C#, Python, Go, JavaScript/TypeScript) and associated frameworks, plus Git-based workflows and collaboration tools
  • Hands‑on experience with containers and orchestration (Kubernetes with RKE2, OpenShift, or Rancher) and managing binary/container registries (Artifactory, Docker Registry, Harbor, Nexus)
  • Expertise in DevOps/DevSecOps practices: CI/CD pipeline design and operation, integrating security controls (SAST, DAST, SCA, container scanning, secret management), and secure SDLC implementation
  • Advanced Infrastructure as Code and cloud skills: Terraform, Ansible, CloudFormation, Pulumi; building and managing AWS/Azure/GCP environments with monitoring/observability
  • Experience with policy‑as‑code and compliance‑as‑code solutions (e.g., OPA, Conftest, Checkov)

Desired:

  • Prior experience supportingclassified spaceor defense programs
  • A BS Degree in a STEM related field
  • Familiarity with Model-Based Systems Engineering (MBSE) tools and methods
  • Experience with systems engineering processes, including requirements analysis, design, integration, verification, and validation
  • Experience with configuration management and maintaining traceability between software baselines, infrastructure code, and DevSecOps artifacts
  • Experience with test automation and GitLab CI/CD or similar CI/CD platforms
  • Experience supporting AI/ML application infrastructure and associated data pipelines in secure environments
  • Experience with virtualized hosts and platforms (e.g., VMware)
  • Basic network understanding and diagnostics, including TCP/IP, routing, firewalls, and VPNs
  • Experience writing or contributing to acquisition and program documents such as architecture/design volumes, IMP/IMS, RFP responses, and technical proposals
  • Relevant certifications, such as: Cloud: AWS/Azure/GCP Architect or DevOps Engineer, DevOps/DevSecOps: Kubernetes (CKA/CKS), CI/CD tooling certifications, Security: CISSP, CCSP, CSSLP, Security+, or equivalent

Essential Requirements:

US Citizenship is required.

In compliance with Colorado’s Equal Pay for Equal Work Act, the annual base salary range for this position is listed . Please note that the salary information is a general guideline only. I2X Technologies considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.

Physical Demands:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job with or without reasonable accommodation.

While performing the duties of this job, the employee will regularly sit, walk, stand and climb stairs and steps. May require walking long distance from parking to work station. Occasionally, movement that requires twisting at the neck and/or trunk more than the average person, squatting/ stooping/kneeling, reaching above the head, and forward motion will be required. The employee will continuously be required to repeat the same hand, arm, or finger motion many times. Manual and finger dexterity are essential to this position. Specific vision abilities required by this job include close, distance, depth perception and telling differences among colors. The employee must be able to communicate through speech with clients and public. Hearing requirements include conversation in both quiet and noisy environments. Lifting may require floor to waist, waist to shoulder, or shoulder to overhead movement of up to 20 pounds. This position demands tolerance for various levels of mental stress.

I2X Technologies is an Engineering and Information Technology Company focused on providing Services to the Federal and State Government. I2X offers a competitive compensation program and comprehensive benefits package to our employees.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

careers-isystechnologies • Boulder (CO)

On-site
USD 110,000 - 170,000
DevSecOps Engineer
DevSecOps Engineer

Isys Technologies • Boulder (CO)

On-site
USD 140,000 - 190,000
Data Engineer Software Developer
Data Engineer Software Developer

Isys Technologies • Illinois

On-site
USD 90,000 - 130,000
Software Developer
Software Developer

Isys Technologies • Huntsville (AL)

On-site
USD 120,000 - 150,000
Advanced Trainer
Advanced Trainer

Isys Technologies • United States

On-site
USD 110,000 - 140,000
Software Test Engineer
Software Test Engineer

ISYS Technologies • Huntsville (AL)

On-site
USD 75,000 - 95,000
Senior Product Manager
Senior Product Manager

Isys Technologies • Washington

On-site
USD 140,000 - 200,000
Senior Network Solutions Engineer
Senior Network Solutions Engineer

Isys Technologies • Fort Meade (MD)

On-site
USD 120,000 - 170,000
Test Engineer
Test Engineer

Isys Technologies • Huntsville (AL)

On-site
USD 110,000 - 150,000
Defensive Cyber Operations (DCO) Engineer
Defensive Cyber Operations (DCO) Engineer

Isys Technologies • Colorado Springs (CO)

On-site
USD 120,000 - 170,000