DevSecOps Security Engineer

General Dynamics Information Technology

Fairfax (VA)

On-site

USD 191,000 - 259,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

General Dynamics Information Technology seeks a DevSecOps Security Engineer to automate secure compliance workflows and vulnerability-management in a modern cloud stack. You will work with AWS GovCloud, Terraform, and CI/CD tooling to advance the security posture from reactive to proactive, while mentoring junior engineers and contributing to security documentation and standards.

Strong background in continuous ATO, NIST controls, and IaC security is required in a fast-paced federal contracting

Qualifications

  • Direct, hands-on experience managing the security portion of a DevSecOps pipeline in a continuous ATO (cATO) environment.
  • BA/BS Degree and 8+ years of relevant experience (or equivalent).
  • Hands-on automation of compliance workflows: scan ingestion, evidence generation, and continuous monitoring reporting.
  • Experience with AWS GovCloud security services (Security Hub, Inspector, GuardDuty, Config) and centralizing findings; IaC scanning tools also preferred.
  • Background in NIST 800-53/800-171 control implementation and evidence mapping; familiarity with FedRAMP and IAM.
  • Proficiency in automation scripting (Python, Bash) and Linux administration; active Security+ certification.

Responsibilities

  • Architect and automate security workflows across CI/CD pipelines and compliance operations.
  • Partner with development and platform teams to integrate, automate, and monitor security tool components.
  • Build automation for compliance and ATO artifacts, including continuous monitoring reports and control evidence mapping.
  • Perform automated inventory delta analysis and drift detection across cloud accounts to maintain auditable security posture.
  • Mentor junior/mid-level engineers and drive adoption of modern security tooling and best practices.
  • Define guidelines for securing AWS Cloud and container environments; contribute to technical documentation.

Skills

AWS Cloud Computing
CI/CD
DevSecOps

Education

BA/BS Degree

Job description

Req ID: RQ226409

Type of Requisition: Regular

Clearance Level Must Be Able to Obtain: None

Public Trust/Other Required: BI Full 6C (T4)

Job Family: Cyber and IT Risk Management

Skills:

AWS Cloud Computing,CI/CD,DevSecOps

Experience:

8 + years of related experience

US Citizenship Required:

Yes

DevSecOps Security Engineer

Help us simplify the complex as a DevSecOps Security Engineer at GDIT, where we tailor advanced cloud security solutions to critical client missions. In this role, your priority will be engineering automated, secure compliance and vulnerability-management workflows for our program, while we focus on supporting your professional growth.

Our work on the AED program depends on a senior security engineer who has managed the security portion of a DevSecOps pipeline operating under a continuous ATO (cATO). You'll leverage a modern stack, including AWS GovCloud security services, Terraform, and CI/CD pipeline tooling, to shift our security posture from reactive to proactive across a highly secure, automated environment.

HOW A DEVSECOPS SECURITY ENGINEER WILL MAKE AN IMPACT:
  • Architect and automate security workflows across our CI/CD pipeline and compliance operations, reducing manual effort in vulnerability scan analysis, security inventory auditing, and continuous monitoring reporting.
  • Partner with development and platform teams to integrate, automate, and monitor security tool components (scan ingestion, finding triage, evidence generation) within automated pipelines.
  • Build automation for compliance and ATO artifacts, including continuous monitoring reports, SPIAs, and control evidence mapping against NIST 800-53 / 800-171.
  • Perform automated inventory delta analysis and drift detection across cloud accounts to maintain an accurate, auditable security posture.
  • Champion DevSecOps culture by mentoring junior/mid-level engineers, educating teams on modern security tooling, and resolving complex configuration or performance issues.
  • Leverage Generative AI engineering tools (such as Claude, Gemini, Copilot) to accelerate the development of security automation, compliance reporting, and Infrastructure as Code (IaC) scanning workflows.
  • Define guidelines and standards for securing AWS Cloud and container environments, implementing advanced solutions for system security, logging, and audit correlation.
  • Drive engineering excellence by guiding the preparation of comprehensive technical documentation, processes, and procedures.
WHAT YOU'LL NEED TO SUCCEED:
Technical Expertise:
  • Continuous ATO Pipeline Security (Required): Direct, hands-on experience managing the security portion of a DevSecOps pipeline in a continuous ATO (cATO) environment. Candidates must have owned automated security gates, control evidence, and compliance posture within a live continuous-authorization pipeline, not point-in-time ATO or general DevOps exposure.
  • Education & Experience: BA/BS Degree and 8+ years of relevant experience (or an equivalent combination of education and experience).
  • Compliance Automation: Hands-on automation of compliance workflows: scan ingestion, finding triage, evidence generation, and continuous monitoring reporting.
  • Cloud Security Tooling: Familiarity with AWS GovCloud security services (Security Hub, Inspector, GuardDuty, Config) and centralizing/correlating their findings, along with scanning and monitoring tooling such as Qualys, CrowdStrike, Nexus/Sonatype, SonarQube, and Datadog.
  • Infrastructure as Code Security: Experience building and scanning IaC (Terraform, CloudFormation) for security and compliance.
  • Standards & Frameworks: Background in NIST 800-53 or 800-171 control implementation and evidence mapping; familiarity with FedRAMP and IAM.
  • Scripting/Development: Strong proficiency in automation scripting (Python, Bash, or similar) for building internal security tooling; Linux/Unix administration (RHEL or CentOS preferred).
  • Compliance: Active Security+ Certification (or equivalent DoD 8570/8140 baseline).
Leadership & Professional Skills:
  • Team Leadership Potential: Demonstrated capability or strong desire to mentor junior/mid-level engineers, drive technical consensus, and serve as a technical anchor for the team.
  • Problem Solving: Exceptional critical thinking skills with a proven track record of delivering simple, elegant solutions to highly complex security and compliance problems.
  • Communication: Highly effective communication and collaboration skills, with the ability to bridge technical concepts between development teams and program stakeholders.
  • Growth Mindset: A strong commitment to continuous learning, engineering best practices, and driving process improvements.
Preferred Background:
  • Prior experience at a company that builds security products or DevSecOps tooling for software development, with a focus on cyber automation.
  • Experience with continuous monitoring automation and proactive compliance posture management.
  • Experience supporting a security audit cadence and evidence collection at scale.
  • Exposure to security analytics platforms (e.g., Databricks) for correlating and analyzing security telemetry at scale.
GDIT IS YOUR PLACE:
  • True Work-Life Autonomy: Enjoy a full-flex work week designed to give you ownership over your personal and professional priorities.
  • Total Well-being: Comprehensive health, dental, vision, and wellness packages to support you and your family.
  • Invested in Your Wealth: A robust 401(k) program with a competitive company match.
  • Continuous Technical Evolution: Access to paid advanced certifications, higher education, and dedicated professional growth opportunities to keep your skills sharp.
  • Internal Career Mobility: A dedicated internal talent team focused entirely on helping you navigate and advance your career path within GDIT.
  • Scale & Innovation: Work with complex, mission-critical technologies and modern infrastructure frameworks that make a tangible impact.
  • Rest & Recharge: Generous paid vacation, floating holidays, and time off to ensure you maintain peak performance.

#EDopportunities

The likely salary range for this position is $191,250 - $258,750. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior DevOps CI/CD Engineer – AWS (DevSecOps Champion)
Senior DevOps CI/CD Engineer – AWS (DevSecOps Champion)

General Dynamics Information Technology • Fairfax (VA)

On-site
USD 145,000 - 196,000
Total Rewards package
Hybrid work location
Flexible work options
DevOps Engineer with TS/SCI w/Polygraph
DevOps Engineer with TS/SCI w/Polygraph

General Dynamics Information Technology • Herndon (VA)

On-site
USD 157,000 - 213,000
401K with company match
Competitive pay and paid time off
Award-winning culture of innovation
+1
Senior DevOps Engineer
Senior DevOps Engineer

General Dynamics Information Technology • Springfield (VA)

On-site
USD 144,000 - 194,000
Medical plan options
401(k) with company match
Paid time off
+3
DevSecOps / Cloud Hosting Engineer
DevSecOps / Cloud Hosting Engineer

General Dynamics Information Technology • Arlington (VA)

On-site
USD 128,000 - 173,000
Cybersecurity Engineer Principal
Cybersecurity Engineer Principal

General Dynamics Corporation • Bossier City (LA)

Hybrid
USD 146,000 - 198,000
Growth opportunities
Internal mobility team
Competitive benefits
DevOps Engineer - TS/SCI with Polygraph
DevOps Engineer - TS/SCI with Polygraph

General Dynamics Information Technology • McLean (VA)

On-site
USD 183,000 - 247,000
401K with company match
Health and wellness packages
Internal mobility team
+3
DevOps Engineer
DevOps Engineer

Praxis Engineering • Maryland

Hybrid
USD 164,382 - 212,750
Cyber Systems Integration Engineer Sr Principal
Cyber Systems Integration Engineer Sr Principal

Socket.dev • Virginia (IL)

Hybrid
USD 149,000 - 201,000
Remote work options
Competitive benefits
DevOps Engineer - TS/SCI w/Poly
DevOps Engineer - TS/SCI w/Poly

General Dynamics Information Technology • McLean (VA)

On-site
USD 153,000 - 207,000
401K with company match
Health and wellness packages
Paid education and certifications
+1
Cloud Software Developer (Node.js/React.js required)
Cloud Software Developer (Node.js/React.js required)

General Dynamics Information Technology • United States

Remote
USD 128,000 - 173,000
Health benefits
401K with company match
Paid time off
+1