DevSecOps Engineer - Government

Telemetry Today LLC

Washington, Northern (District of Columbia, KY)

Hybrid

USD 140,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Applied Intuition, Inc. is seeking a DevSecOps Engineer to own secure code integration across the software delivery lifecycle, including government and customer environments. You will define gates, enforce severity thresholds, and collaborate with ISSM and Cyber Security Engineers to translate standards into automated controls.

You will build and maintain secure CI/CD pipelines, integrate SAST/DAST/SCAs, and automate evidence collection for assessments and ATO activity. U.S.

Qualifications

  • Bachelor's degree or equivalent hands‑on experience.
  • 5+ years in software engineering, DevOps, platform or security engineering.
  • Security+ or DoD 8140/8570 IAT level II
  • Hands‑on scripting in Python, Bash, Go, or similar languages.
  • Experience with CI/CD platforms and container tooling (Docker/Kubernetes).
  • AWS experience including Config, Security Hub, IAM, KMS, CloudTrail, CloudWatch.

Responsibilities

  • Own secure code integration across the software delivery lifecycle.
  • Support developers deploying software onto Government and customer systems.
  • Build and maintain secure CI/CD pipelines and hardened build environments.
  • Define and enforce promotion gates and remediation timelines.
  • Troubleshoot findings and unblock delivery with developers.
  • Map controls to NIST 800-53/171, DISA STIGs, and CMMC 2 obligations.

Skills

Security engineering
Python scripting
CI/CD pipelines
AWS
Docker/Kubernetes
DoD security frameworks

Education

Bachelor's degree in Computer Science / Software Engineering or equivalent

Tools

GitLab CI
GitHub Actions
Jenkins
Terraform / Ansible / AWS CDK

Job description

Applied Intuition, Inc. is powering the future of physical AI. Founded in 2017 and now valued at $15 billion, the Silicon Valley company is creating the digital infrastructure needed to bring intelligence to every moving machine on the planet. Applied Intuition services the automotive, defense, trucking, construction, mining and agriculture industries in three core areas: tools and infrastructure, operating systems, and autonomy. Eighteen of the top 20 global automakers, as well as the United States military and its allies, trust the company’s solutions to deliver physical intelligence. Applied Intuition is headquartered in Sunnyvale, California, with offices in Washington, D.C.; San Diego; Ft. Walton Beach, Florida; Ann Arbor, Michigan; London; Stuttgart; Munich; Stockholm; Bangalore; Seoul; and Tokyo. Learn more at applied.co .

We are an in-office company, and our expectation is that full-time employees primarily work from their Applied Intuition office 5 days a week. However, we also recognize the importance of flexibility and trust our employees to manage their schedules responsibly. This may include occasional remote work, starting the day with morning meetings from home before heading to the office, or leaving earlier when needed to accommodate family commitments. This in-office expectation does not apply to contractor positions.

About the role

We are seeking a highly skilled DevSecOps Engineer to own secure code integration across our software delivery lifecycle. The DevSecOps Engineer will require a Security Clearance and will work directly with developers to ensure software is securely built, tested, packaged, and deployed into Government and customer environments, including classified and air-gapped systems. This engineer moves our pipeline from scanning to enforcement: defining promotion gates, severity thresholds, and a documented exception path, and doing it without stalling delivery. Partners with the ISSM and Cyber Security Engineer to translate NIST, DISA, and DoD security requirements into automated engineering controls and repeatable deployment workflows.

At Applied Intuition, you will:

Own secure code integration from source through build, test, release, and deployment

Directly support developers integrating and deploying software onto Government and customer systems

Build and maintain secure CI/CD pipelines, reusable pipeline templates, and hardened build environments

Integrate and tune SAST, DAST, SCA, secrets scanning, container scanning, and infrastructure-as-code scanning, and consolidate overlapping toolchains into a single supported stack

Define and enforce promotion gates: which findings block, which are advisory, and the severity thresholds applied. Where a finding cannot be remediated before release, record the exception with a justification, an accountable owner, and a remediation date

Serve as the primary technical resource for developers by troubleshooting findings, pairing on remediation, and removing delivery blockers

Automate system hardening, security validation, and compliance evidence collection using infrastructure-as-code and policy-as-code (OPA/Rego, cfn-guard, Cedar, or equivalent), producing machine-readable evidence that holds up in front of a third-party assessor

Build preventive and detective controls in AWS GovCloud, including Service Control Policies and Resource Control Policies across multi-account Organizations, Config, Security Hub, IAM, KMS, CloudTrail, and EventBridge, with automated remediation workflows

Implement software supply chain protections including SBOM generation, artifact signing, and secure dependency management, and admission control that rejects unsigned or unscanned images at deploy time

Support software promotion into classified and air-gapped environments, including offline dependencies and controlled transfer workflows, and offline package mirrors for language and native dependency managers

Lead threat modeling and security design reviews for new services and pipeline changes, and propose compensating controls where direct remediation is not possible

Partner with the ISSM and Cyber Security Engineer to map technical controls to NIST 800-53, NIST 800-171, DISA STIGs, and CMMC Level 2, and support evidence production during assessments and ATO activity

Establish secure development guidance, technical documentation, and repeatable engineering patterns for product teams

Serve as a documented backup on build, artifact, and pipeline systems, and participate in the security on-call rotation

We're looking for someone who has:

A Bachelor’s degree in Computer Science, Software Engineering, Cyber Security, or a related field, or equivalent hands‑on experience

A minimum of 5 years of experience across software engineering, DevOps, platform engineering, or security engineering

DoD 8140/8570 IAT level II (Security+ Certification, condition of employment)

Hands‑on scripting or software development experience using Python, Bash, Go, or similar languages

Experience with CI/CD platforms such as GitLab CI, GitHub Actions, Jenkins, or equivalent tooling

Production experience with containers and orchestration technologies such as Docker and Kubernetes

Experience with infrastructure-as-code or configuration management technologies such as Terraform or Ansible, AWS CDK, or CloudFormation

Hands‑on AWS experience, including working knowledge of Config, Security Hub, IAM, KMS, CloudTrail, and CloudWatch/EventBridge

Experience writing and deploying policy-as-code (OPA Rego, cfn-guard, Cedar, or equivalent)

Working knowledge of NIST 800-53, NIST 800-171, DISA STIGs, and RMF, and of DFARS 252.204-7012 and CMMC Level 2 obligations

Experience producing audit-ready evidence and working directly with third‑party assessors

Experience introducing blocking security gates into a delivery pipeline that did not previously have them, and sustaining them under delivery pressure

Demonstrated ability to integrate security tooling into developer workflows and make findings actionable

Proven ability to work directly with developers to troubleshoot issues, teach secure practices, and unblock delivery

Travel Requirements:

Willing to travel for company business as company/customer requires. (~10%)

Security Requirements:

Must be a U.S. Citizen

Must have or be able to obtain an active DoD security clearance (minimum Secret, prefer Top Secret)

Nice to have:

CISSP, CSSLP, or CKS certification, or AWS Security Specialty

Experience with DoD software factories such as Platform One, Iron Bank, or Big Bang

Experience with hardware-isolated container runtimes such as Kata Containers or gVisor

Experience delivering software into classified or air-gapped environments

Familiarity with software supply chain frameworks such as SLSA, SSDF, CycloneDX, or SPDX, and with machine-readable compliance formats such as OSCAL

Experience supporting a FedRAMP or DoD Impact Level 4/5 authorization

Experience securing AI/ML workloads or machine-generated code and container artifacts

Prior software development experience on a product engineering team

Compensation at Applied Intuition for eligible roles includes base salary, equity, and benefits. Base salary is a single component of the total compensation package, which may also include equity in the form of options and/or restricted stock units, comprehensive health, dental, vision, life and disability insurance coverage, 401k retirement benefits with employer match, learning and wellness stipends, and paid time off. Note that benefits are subject to change and may vary based on jurisdiction of employment.

Applied Intuition pay ranges reflect the minimum and maximum intended target base salary for new hire salaries for the position. The actual base salary offered to a successful candidate will additionally be influenced by a variety of factors including experience, credentials & certifications, educational attainment, skill level requirements, interview performance, and the level and scope of the position.

Don’t meet every single requirement? If you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles.

Applied Intuition is an equal opportunity employer and federal contractor or subcontractor. Consequently, the parties agree that, as applicable, they will abide by the requirements of 41 CFR 60-1.4(a), 41 CFR 60-300.5(a) and 41 CFR 60-741.5(a) and that these laws are incorporated herein by reference. These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity or national origin. These regulations require that covered prime contractors and subcontractors take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disability. The parties also agree that, as applicable, they will abide by the requirements of Executive Order 13496 (29 CFR Part 471, Appendix A to Subpart A), relating to the notice of employee rights under federal labor laws.

Applied Intuition is committed to providing an accessible and inclusive application and interview experience to applicants who are disabled veterans and other applicants with disabilities or medical conditions. Reasonable accommodations are available, requesting an accommodation will not affect your candidacy in any way, and you are not required to disclose the nature of your disability or medical condition in order to make a request. If you require an accommodation please contact careers@applied.co. We will work with you!

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

DevSecOps Engineer - Government
DevSecOps Engineer - Government

Applied Intuition • Washington, Northern (KY)

Hybrid
USD 140,000 - 190,000
DevSecOps Engineer - Government
DevSecOps Engineer - Government

applied • Washington

On-site
USD 150,000 - 210,000
DevSecOps Engineer - Government
DevSecOps Engineer - Government

Decisive Point • Washington

On-site
USD 190,000 - 240,000
Health insurance
401(k) retirement
Paid time off
Engineering Manager - Defense Systems
Engineering Manager - Defense Systems

Applied Intuition • Washington

On-site
USD 250,000 - 300,000
Health insurance
Dental insurance
Vision insurance
+5
Product Security Engineer Sunnyvale Sunnyvale
Product Security Engineer Sunnyvale Sunnyvale

Applied Intuition Inc. • Sunnyvale (CA)

Hybrid
USD 133,000 - 190,000
Engineering Manager - Forward Deployment (Defense)
Engineering Manager - Forward Deployment (Defense)

Decisive Point • Washington

On-site
USD 250,000 - 300,000
Head of Risk and Compliance
Head of Risk and Compliance

Decisive Point • Sunnyvale (CA)

Hybrid
USD 170,000 - 230,000
Head of Risk and Compliance
Head of Risk and Compliance

Applied Intuition • Sunnyvale (CA)

On-site
USD 180,000 - 260,000
Solutions Architect - Maritime Defense
Solutions Architect - Maritime Defense

Applied Intuition Inc. • Sunnyvale (CA)

Hybrid
USD 200,000 - 250,000
Engineering Manager - Defense Physical AI
Engineering Manager - Defense Physical AI

Applied Intuition • Washington, Northern (KY)

Hybrid
USD 250,000 - 300,000
Equity
Health insurance
Dental insurance
+6