DevSecOps Engineer, AWS

OpenTalent

Washington

On-site

USD 120,000 - 180,000

Full time

10 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Peregrine Advisors seeks a hands-on DevOps engineer to own secure CI/CD pipelines for federal systems, with security gates and automated evidence for RMF authorization.

You will work in AWS or client on-prem environments, building reproducible environments, containerization, vulnerability scanning, and progressive delivery with blue/green and canary strategies.

Qualifications

  • Hands-on CI/CD (AWS-native or comparable) with security gates and automated testing.
  • Experience with infrastructure-as-code and reproducible environments.
  • Proficiency in containerization, vulnerability scanning, and secure deployment practices.

Responsibilities

  • Own secure delivery path for federal systems and RMF authorization evidence.
  • Build and maintain CI/CD pipelines with integrated security checks and policy-as-code.
  • Manage infrastructure-as-code and containerized environments in AWS or client on-prem.
  • Develop automation scripts (Python/Bash) to augment tooling and pipelines.

Skills

CI/CD
Security testing
Infrastructure as code
Containerization
Cloud AWS
Scripting Python

Tools

Terraform
Docker
Kubernetes
SAST
DAST
SCA
Python
Bash

Job description

Peregrine Advisors is a firm founded on a simple conviction: the best solutions come from the people closest to the problem, given real ownership and the tools to deliver. We are a data and technology innovation hub and a Benefit Corporation working at the center of the federal government's mission to deliver for client stakeholders and the US public, looking for highly motivated contributors who thrive when trusted to own a hard problem and equipped to deliver the solution.

Your first assignment is to own a secure delivery path for federal systems: continuous integration and delivery (CI/CD) pipelines with security gates built in, infrastructure-as-code that makes environments reproducible, and the automation, monitoring, and evidence that support Risk Management Framework (RMF) authorization and continuous monitoring. You will work in Amazon Web Services (AWS) or in a client-managed, on-premises environment, and what you build will carry real systems into production. The work is real, hard, and it matters. It is also where you start, not the shape of your career here: we hire people, not seats, and we move our best to where the hardest problems are.

  • CI/CD pipelines with security built into the path: automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion, so a release passes review because the pipeline enforced the required controls and produced evidence for review.
  • The infrastructure under them, as code: reproducible environments with containerization and container-image scanning, least-privilege access, secrets management, and encryption as defaults rather than add-ons.
  • The operational fabric: monitoring, logging, and vulnerability scanning; progressive delivery and low-downtime deployment strategies, including blue/green and canary deployments, with automated health checks and rollback; incident response; pipeline reliability and software-delivery performance metrics; and the evidence that supports an Authority to Operate (ATO) and continuous monitoring.
  • In time, the firm itself: new capabilities, tools, and lines of business you help spin up.

You treat security and reliability as part of the build, not a gate at the end, because in a federal environment they cannot be an afterthought. You automate what others do by hand and you leave an audit trail behind you. You experiment, fail, learn, and repeat quickly. You would rather own an outcome than be handed a task.

  • Hands-on CI/CD (AWS-native or comparable), infrastructure-as-code, and containerization for deploying real systems in AWS or in a client-managed, on-premises environment.
  • The security craft around the pipeline: automated security testing (SAST, DAST, SCA), vulnerability scanning, secrets management, and least-privilege design.
  • The scripting to automate what the tools do not: Python or Bash beyond pipeline configuration.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer AWS, CI/CD
DevSecOps Engineer AWS, CI/CD

OpenTalent • Washington

On-site
USD 140,000 - 170,000
DevSecOps Engineer CI/CD, Terraform
DevSecOps Engineer CI/CD, Terraform

OpenTalent • Washington

On-site
USD 130,000 - 170,000
DevSecOps Engineer, AWS Secure Delivery
DevSecOps Engineer, AWS Secure Delivery

OpenTalent • Washington

On-site
USD 120,000 - 170,000
DevSecOps Engineer, AWS Secure Delivery
DevSecOps Engineer, AWS Secure Delivery

Peregrine Advisors • Washington

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision fully paid
401(k) matching up to 4%
Unlimited paid time off
+2
Junior DevSecOps Engineer (AWS, Automation)
Junior DevSecOps Engineer (AWS, Automation)

Peregrine Advisors • Washington

Hybrid
USD 110,000 - 170,000
Health, dental and vision insurance (p
Life insurance
401(k) with employer match
+2
AWS DevSecOps Engineer: CI/CD & Security Automation
AWS DevSecOps Engineer: CI/CD & Security Automation

Peregrine Advisors • Washington

Hybrid
USD 110,000 - 170,000
Health, dental and vision insurance (p
Life insurance
401(k) with employer match
+2
AWS DevSecOps Engineer: Build Secure CI/CD Pipelines
AWS DevSecOps Engineer: Build Secure CI/CD Pipelines

OpenTalent • Washington

On-site
USD 120,000 - 170,000
AWS DevSecOps Engineer - CI/CD, Security & IaC
AWS DevSecOps Engineer - CI/CD, Security & IaC

Peregrine Advisors • Washington

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision fully paid
401(k) matching up to 4%
Unlimited paid time off
+2
AWS DevSecOps Engineer: Build Secure, Reproducible Pipelines
AWS DevSecOps Engineer: Build Secure, Reproducible Pipelines

OpenTalent • Washington

On-site
USD 140,000 - 170,000
DevSecOps Engineer: Secure CI/CD with Terraform & AWS
DevSecOps Engineer: Secure CI/CD with Terraform & AWS

OpenTalent • Washington

On-site
USD 130,000 - 170,000