DevSecOps Engineer, AWS Secure Delivery

Jobtailor

Washington (District of Columbia)

On-site

USD 120,000 - 160,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Jobtailor in the United States seeks an experienced DevSecOps/platform engineer to own delivery pipelines, environments, and security gates for federal systems. You will implement CI/CD with security gates, automate SAST/DAST/SCA, and enforce policy-as-code checks.

Responsibilities include defining infrastructure as code, containerization, and secrets management, with a focus on zero-trust principles and compliance such as NIST and FISMA. On-site work in the DC area is expected.

Qualifications

  • Bachelor's degree in computer science or related field.
  • 4+ years in DevSecOps/platform engineering or equivalent.
  • Hands-on CI/CD automation with security gates (AWS native tools or GitHub/GitLab).
  • Infrastructure as code via CloudFormation or Terraform.
  • Containerization expertise and automated security testing (SAST/DAST/SCA).
  • Scripting in Python or Bash; Git-based version control; monitoring and logging.

Responsibilities

  • Own deployment pipelines, environments, and automation for federal systems.
  • Implement and operate CI/CD pipelines with security gates.
  • Automate security testing and vulnerability scanning.
  • Apply policy-as-code checks and controlled promotion.
  • Define infrastructure as code and reproducible environments.
  • Build and manage containerization, secret management, encryption.
  • Maintain monitoring, logging, and incident-response practices.
  • Support progressive delivery, blue/green and canary deployments.
  • Configure health checks and rollback mechanisms.
  • Track delivery reliability and software-delivery metrics.
  • Produce evidence for ATO and continuous monitoring.
  • Work in AWS or client-managed, on-prem environments.

Skills

CI/CD Automation
Infrastructure as Code
Automated Security Testing
Python Scripting
Containerization
Git Version Control
Monitoring & Logging
Vulnerability Scanning
Policy-as-Code
Zero Trust Principles

Education

Bachelor's degree in CS or related field

Tools

AWS
CloudFormation
Terraform
GitHub Actions
GitLab CI
HashiCorp Vault
AWS Secrets Manager
Kubernetes

Job description

  • Own assigned delivery pipelines, automation, and environments carrying federal systems into production
  • Implement and operate CI/CD pipelines with built-in security gates
  • Automate security testing, including SAST, DAST, and SCA
  • Implement policy-as-code checks and controlled promotion
  • Define infrastructure as code and create reproducible environments
  • Build in containerization, container-image scanning, least-privilege access, secrets management, and encryption
  • Maintain monitoring, logging, vulnerability scanning, and incident-response practices
  • Implement progressive delivery and low-downtime deployment strategies, including blue/green and canary deployments
  • Configure automated health checks and rollback
  • Track pipeline reliability and software-delivery performance metrics
  • Produce evidence supporting ATO and continuous monitoring
  • Work in AWS or a client-managed, on-premises environment
  • Help launch new capabilities, tools, and lines of business
Requirements
  • At least four years of DevSecOps or platform engineering experience
  • Bachelor's degree in computer science or a related field
  • Hands-on CI/CD pipeline automation with security gates, using AWS-native tools (CodePipeline, CodeBuild) or comparable tools (GitHub Actions, GitLab CI)
  • Infrastructure as code using CloudFormation or Terraform
  • Containerization
  • Automated security testing (SAST, DAST, SCA) and vulnerability scanning
  • Scripting in Python or Bash
  • Git-based version control
  • Monitoring and logging
  • Basic proficiency in writing, PowerPoint, and Excel
  • Sole United States citizenship
  • Ability to obtain a Public Trust determination
  • Willingness and ability to commute into DC regularly
  • Preferred: Federal security experience supporting FISMA compliance, implementing NIST SP 800-53 controls, and providing ATO support
  • Preferred: An Amazon Web Services certification
  • Preferred: Kubernetes
  • Preferred: Secrets management with HashiCorp Vault, AWS Secrets Manager, or a comparable tool
  • Preferred: Experience applying zero trust principles, including identity-centered access, least privilege, and continuous verification
  • Preferred: Software supply-chain integrity practice, including SBOMs and artifact signing
  • Preferred: Federal information technology experience
  • Preferred: Familiarity with AI-assisted developer tooling
Core Competencies

Demonstrates expertise in DevSecOps practices, including CI/CD pipeline automation, infrastructure as code, and automated security testing. Proficient in managing federal systems and ensuring compliance with security standards and policies.

Highest-signal resume keywords
  • DevSecOps Experience
  • CI/CD Pipeline Automation
  • Infrastructure As Code
  • Automated Security Testing
  • AWS Native Tools
Hard Skills
  • CI/CD Pipeline Automation
  • Infrastructure As Code
  • Automated Security Testing
  • Scripting In Python
  • Containerization
  • Git-Based Version Control
  • Monitoring And Logging
  • Vulnerability Scanning
  • Policy-As-Code Checks
  • Progressive Delivery Strategies
Soft Skills
  • Basic Proficiency In Writing
  • Basic Proficiency In PowerPoint
  • Basic Proficiency In Excel
Certifications & Qualifications
  • Amazon Web Services Certification
Industry Keywords
  • FISMA Compliance
  • NIST SP 800-53 Controls
  • ATO Support
  • Zero Trust Principles
  • Federal Information Technology
Tools & Technologies
  • AWS
  • CloudFormation
  • Terraform
  • GitHub Actions
  • GitLab CI
  • HashiCorp Vault
  • AWS Secrets Manager
  • Kubernetes
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer, Python, CI/CD
DevSecOps Engineer, Python, CI/CD

Jobtailor • Washington

On-site
USD 140,000 - 190,000
DevSecOps Engineer, AWS
DevSecOps Engineer, AWS

Jobtailor • Washington

On-site
USD 140,000 - 180,000
AWS Certification
Junior DevSecOps Engineer – AWS, Automation
Junior DevSecOps Engineer – AWS, Automation

Jobtailor • Washington

On-site
USD 110,000 - 150,000
Junior DevSecOps Engineer, CI/CD Pipelines
Junior DevSecOps Engineer, CI/CD Pipelines

Jobtailor • Washington

On-site
USD 90,000 - 130,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Colorado

On-site
USD 90,000 - 140,000
Site Reliability Engineer / DevSecOps Engineer
Site Reliability Engineer / DevSecOps Engineer

Jobtailor • Denver (CO)

On-site
USD 140,000 - 190,000
Senior AWS Tech Lead
Senior AWS Tech Lead

Jobtailor • Washington

On-site
USD 150,000 - 190,000
Senior DevSecOps Engineer II
Senior DevSecOps Engineer II

Jobtailor • Reston (VA)

On-site
USD 150,000 - 210,000
DevOps Engineer II
DevOps Engineer II

RiskForce • Northern (KY)

Hybrid
USD 110,000 - 160,000
DevSecOps Engineer
DevSecOps Engineer

Blue Signal Search • Los Angeles (CA)

On-site
USD 130,000 - 170,000
Comprehensive benefits
High-impact ownership
Collaborative engineering environment