DevSecOps Engineer CI/CD, Terraform

OpenTalent

Washington

On-site

USD 130,000 - 170,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Peregrine Advisors is seeking a security-focused DevSecOps professional to own secure CI/CD pipelines for federal systems. You will implement code-driven infrastructure in AWS or client-managed on-prem environments, embed automated security testing, and ensure evidence supports RMF authorization and continuous monitoring.

Responsibilities include building containerized deployments, enforcing least-privilege access, and maintaining automation scripts in Python or Bash to strengthen the security

Qualifications

  • Hands-on CI/CD with security built into the path (SAST/DAST/SCA) and policy-as-code checks.
  • Infrastructure under them is code: reproducible environments, container-image scanning, least-privilege, secrets management.
  • Monitoring, logging, vulnerability scanning, and reliable deployment strategies are required, with audit trails for ATO.

Skills

CI/CD pipelines
Infrastructure as code
Containerization
AWS or on-prem
Python or Bash scripting
Security testing
Monitoring and logging
Evidence and RMF authorization

Job description

Peregrine Advisors is a firm founded on a simple conviction: the best solutions come from the people closest to the problem, given real ownership and the tools to deliver. We are a data and technology innovation hub and a Benefit Corporation working at the center of the federal government's mission to deliver for client stakeholders and the US public, looking for highly motivated contributors who thrive when trusted to own a hard problem and equipped to deliver the solution.

Your first assignment is to own a secure delivery path for federal systems: continuous integration and delivery (CI/CD) pipelines with security gates built in, infrastructure-as-code that makes environments reproducible, and the automation, monitoring, and evidence that support Risk Management Framework (RMF) authorization and continuous monitoring. You will work in Amazon Web Services (AWS) or in a client-managed, on-premises environment, and what you build will carry real systems into production. The work is real, hard, and it matters. It is also where you start, not the shape of your career here: we hire people, not seats, and we move our best to where the hardest problems are.

  • CI/CD pipelines with security built into the path: automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion, so a release passes review because the pipeline enforced the required controls and produced evidence for review.
  • The infrastructure under them, as code: reproducible environments with containerization and container-image scanning, least-privilege access, secrets management, and encryption as defaults rather than add-ons.
  • The operational fabric: monitoring, logging, and vulnerability scanning; progressive delivery and low-downtime deployment strategies, including blue/green and canary deployments, with automated health checks and rollback; incident response; pipeline reliability and software-delivery performance metrics; and the evidence that supports an Authority to Operate (ATO) and continuous monitoring.
  • In time, the firm itself: new capabilities, tools, and lines of business you help spin up.

You treat security and reliability as part of the build, not a gate at the end, because in a federal environment they cannot be an afterthought. You automate what others do by hand and you leave an audit trail behind you. You experiment, fail, learn, and repeat quickly. You would rather own an outcome than be handed a task.

  • Hands-on CI/CD (AWS-native or comparable), infrastructure-as-code, and containerization for deploying real systems in AWS or in a client-managed, on-premises environment.
  • The security craft around the pipeline: automated security testing (SAST, DAST, SCA), vulnerability scanning, secrets management, and least-privilege design.
  • The scripting to automate what the tools do not: Python or Bash beyond pipeline configuration.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer AWS, CI/CD
DevSecOps Engineer AWS, CI/CD

OpenTalent • Washington

On-site
USD 140,000 - 170,000
DevSecOps Engineer, AWS
DevSecOps Engineer, AWS

OpenTalent • Washington

On-site
USD 120,000 - 180,000
DevSecOps Engineer, AWS Secure Delivery
DevSecOps Engineer, AWS Secure Delivery

OpenTalent • Washington

On-site
USD 120,000 - 170,000
DevSecOps Engineer: Secure CI/CD with Terraform & AWS
DevSecOps Engineer: Secure CI/CD with Terraform & AWS

OpenTalent • Washington

On-site
USD 130,000 - 170,000
DevSecOps Engineer, AWS Secure Delivery
DevSecOps Engineer, AWS Secure Delivery

Peregrine Advisors • Washington

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision fully paid
401(k) matching up to 4%
Unlimited paid time off
+2
Junior DevSecOps Engineer (AWS, Automation)
Junior DevSecOps Engineer (AWS, Automation)

Peregrine Advisors • Washington

Hybrid
USD 110,000 - 170,000
Health, dental and vision insurance (p
Life insurance
401(k) with employer match
+2
AWS DevSecOps Engineer: Build Secure CI/CD Pipelines
AWS DevSecOps Engineer: Build Secure CI/CD Pipelines

OpenTalent • Washington

On-site
USD 120,000 - 170,000
AWS DevSecOps Engineer: CI/CD & Security Automation
AWS DevSecOps Engineer: CI/CD & Security Automation

Peregrine Advisors • Washington

Hybrid
USD 110,000 - 170,000
Health, dental and vision insurance (p
Life insurance
401(k) with employer match
+2
AWS DevSecOps Engineer: Build Secure, Reproducible Pipelines
AWS DevSecOps Engineer: Build Secure, Reproducible Pipelines

OpenTalent • Washington

On-site
USD 140,000 - 170,000
AWS DevSecOps Engineer - CI/CD, Security & IaC
AWS DevSecOps Engineer - CI/CD, Security & IaC

Peregrine Advisors • Washington

Hybrid
USD 150,000 - 190,000
Medical, dental, and vision fully paid
401(k) matching up to 4%
Unlimited paid time off
+2