DevSecOps Engineer

Cwsc

Morrisville (NC)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cwsc is looking for a highly skilled DevSecOps Engineer to join the team in Morrisville, North Carolina. This role involves the design, implementation, and automation of security and deployment processes for enterprise applications. You will work with various stakeholders to ensure compliance and support modernization initiatives.

The ideal candidate will have strong experience in CI/CD automation, Infrastructure as Code, and collaboration across development and security teams. A Bachelor’s degree in a relevant field and relevant certifications are preferred.

Qualifications

  • 3-7 years of experience in DevOps, DevSecOps, or related technical discipline.
  • Experience with CI/CD pipelines and Git-based source control.
  • Ability to support both Windows and Linux environments.

Responsibilities

  • Design and optimize CI/CD pipelines for software deployment.
  • Develop Infrastructure as Code solutions using Terraform.
  • Integrate security into the Software Development Lifecycle.

Skills

Jenkins
Terraform
Docker
Python
Ansible
Kubernetes
OpenText Fortify
GitLab CI/CD
JavaScript

Education

Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field

Tools

Windows Server
Red Hat Enterprise Linux (RHEL)
Microsoft SQL Server
Oracle Database

Job description

Computer World Services Corp. (CWS) is seeking a highly motivated and technically skilled DevSecOps Engineer responsible for the analysis, design, implementation, automation, security, testing, deployment, and lifecycle management of enterprise applications and supporting infrastructure within the NIEHS environment.

The DevSecOps Engineer combines business systems analysis expertise with modern software engineering, infrastructure automation, cybersecurity, and platform operations capabilities to support secure, scalable, and highly available enterprise applications. This position serves as a key contributor in integrating development, security, and operations practices throughout the Software Development Lifecycle (SDLC), ensuring compliance with Federal security requirements and supporting enterprise modernization initiatives.

The DevSecOps Engineer works closely with software developers, database administrators, systems engineers, cybersecurity personnel, project managers, and business stakeholders to deliver secure, reliable, and automated application solutions supporting NIEHS mission requirements.

Engineering and CI/CD Automation
  • Design, implement, maintain, and optimize enterprise CI/CD pipelines supporting software development and deployment activities.
  • Develop automated workflows for code integration, testing, security validation, packaging, release management, and deployment.
  • Administer and support CI/CD platforms including Jenkins, GitLab CI/CD, GitHub Actions.
  • Support source code management platforms and branching strategies.
  • Implement deployment automation across development, integration, testing, staging, and production environments.
  • Monitor pipeline performance and continuously improve delivery efficiency and reliability.
  • Migrate software builds through development, testing, integration, and production environments.
  • Monitor deployment activities and remediate deployment failures within established service level agreements.
Infrastructure as Code and Automation
  • Develop and maintain Infrastructure as Code (IaC) solutions using Terraform.
  • Implement automated configuration management using Ansible.
  • Develop reusable infrastructure modules, templates, and automation frameworks.
  • Automate operational, administrative, and deployment processes.
  • Support environment standardization and infrastructure modernization initiatives.
  • Implement automated provisioning and configuration management capabilities across enterprise environments.
Container Platform Engineering
  • Support containerized application deployments using Docker and Kubernetes platforms.
  • Administer Rancher-managed Kubernetes environments.
  • Manage container image lifecycle processes and private container registries.
  • Implement container security best practices and vulnerability remediation procedures.
  • Support runtime security monitoring and compliance initiatives.
  • Assist application teams with container adoption, deployment patterns, and troubleshooting.
Application Security and Integration
  • Integrate security controls and automated testing throughout the Software Development Lifecycle.
  • Configure and maintain application security tools including OpenText Fortify (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Secrets Management and Scanning Tools.
  • Review vulnerability findings and collaborate with development teams to remediate issues.
  • Implement automated security gates and quality control processes.
  • Support secure software development initiatives aligned with Federal security requirements.
  • Promote DevSecOps best practices across development and operations teams.
Vulnerability Management and Compliance
  • Support vulnerability management activities using Tenable and related security platforms.
  • Conduct vulnerability assessments, remediation tracking, and risk analysis.
  • Develop mitigation strategies when vulnerabilities cannot be remediated within required service levels.
  • Coordinate mitigation approvals with Information System Security Officers (ISSOs).
  • Implement approved mitigation plans following established change management procedures.
  • Maintain compliance with FISMA, NIST 800-53, NIST Secure Software Development Framework (SSDF), NIH and HHS security policies, Zero Trust Architecture principles.
  • Support audit readiness and compliance reporting activities.
Required Technical Skills
CI/CD and Automation
  • Jenkins
  • GitLab CI/CD
  • GitHub Actions
  • Git-based Source Control
  • Release Management
Infrastructure Automation
  • Terraform
  • Ansible
  • Infrastructure as Code (IaC)
  • Configuration Management
Container Technologies
  • Docker
  • Kubernetes
  • Rancher
Security
  • OpenText Fortify
  • SAST
  • DAST
  • Software Composition Analysis (SCA)
  • Secrets Management
  • Tenable Vulnerability Management
Programming and Scripting
  • Python
  • JavaScript / TypeScript
  • Java
  • C#
  • PHP
  • REST APIs
Enterprise Platforms
  • Windows Server
  • Red Hat Enterprise Linux (RHEL)
  • Microsoft SQL Server
  • Oracle Database
Education
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field (or equivalent experience)
Experience
  • Three (3) to seven (7) years of experience in DevOps, DevSecOps, Systems Engineering, Platform Engineering, Infrastructure Automation, or a related technical discipline.
  • Experience building or supporting CI/CD pipelines in enterprise environments.
  • Experience working with Git-based source control systems.
  • Experience supporting Windows and Linux environments.
  • Experience developing automation scripts and tools.
Certifications (Preferred)
  • Security+
  • Terraform Associate
  • Certified Kubernetes Application Developer (CKAD)
  • Certified Kubernetes Administrator (CKA)
  • GitLab CI/CD Certification
  • Azure Fundamentals or equivalent cloud certification
  • Certified DevSecOps Professional
  • ITIL Foundation

Applicants must be able to obtain a Public Trust clearance.

Computer World Services is an affirmative action and equal employment opportunity employer. Current employees and/or qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, disability, protected veteran status, genetic information or any other characteristic protected by local, state, or federal laws, rules, or regulations.

Computer World Services is committed to the full inclusion of all qualified individuals. As part of this commitment, Computer World Services will ensure that individuals with disabilities (IWD) are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources at hr@cwsc.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Analyst
DevSecOps Analyst

Cwsc • Morrisville (NC)

On-site
USD 90,000 - 130,000
DevSecOps Analyst
DevSecOps Analyst

Computer World Services • Morrisville (NC)

On-site
USD 110,000 - 150,000
DevOps Engineer
DevOps Engineer

By Light Professional IT Services • Orlando (FL)

On-site
USD 80,000 - 110,000
Medical, Dental & Vision Coverage
401(k) Matching
Generous Leave Policy
DevSecOps Engineer
DevSecOps Engineer

electro soft • Arlington (VA)

On-site
USD 140,000 - 190,000
Application Services Lead
Application Services Lead

Cwsc • Morrisville (NC)

On-site
USD 90,000 - 120,000
DevSecOps Engineer Senior
DevSecOps Engineer Senior

Scientific Research Corporation • Orlando (FL)

On-site
USD 110,000 - 140,000
DevOps Engineer
DevOps Engineer

By Light Professional IT Services LLC • Hanover (MD)

On-site
USD 115,000 - 135,000
Medical, Dental & Vision Coverage
401(k) Matching
Generous Leave Policy
DevSecOps Engineer
DevSecOps Engineer

Socket.dev • Arlington (VA)

On-site
USD 120,000 - 150,000
DevOps Engineer
DevOps Engineer

By Light Professional IT Services LLC • Shipley Corner (MD)

On-site
USD 115,000 - 135,000
Medical, Dental & Vision Coverage
Wellness Program
401(k) Matching
+5
DevSecOps Automation Engineer - Clearance Required
DevSecOps Automation Engineer - Clearance Required

Cydecor, Inc. • Arlington (VA)

Hybrid
USD 90,000 - 120,000
Health and Dental Insurance
401(K) + company match
Paid Time Off (PTO)
+1