IT Senior Architect - DevSecOps

Maximus, Inc.

United States

À distance

USD 160 000 - 239 000

Plein temps

Il y a 3 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Transformez ce poste en entretien — un CV et une lettre de motivation conçus selon ce que cet employeur recherche.

Passez les filtres ATS

Avantages offerts par ce poste

Remote work

Résumé du poste

Maximus, Inc. seeks an I&T Senior Architect - DevSecOps to lead enterprise DevSecOps platform strategy, reference architectures, and security guardrails across AWS, Azure, and GovCloud.

The role drives automation, CI/CD, and secure software delivery for 1,000+ government programs. The position provides technical ownership, cross-functional influence, and a path to shape enterprise standards within the HO ET Architecture & Automation org.

Qualifications

  • Bachelor's degree in a related field required.
  • 7+ years of IT experience with 5+ years in a senior DevSecOps/architecture role.
  • Ability to obtain/maintain U.S. Government Public Trust or Secret clearance.

Responsabilités

  • Define reference architectures and security guardrails across deployment targets.
  • Lead enterprise DevSecOps platform strategy and platform governance.
  • Embed automated security controls and vulnerability management into CI/CD pipelines.

Connaissances

DevSecOps
CI/CD design
security tooling
cloud strategy

Formation

Bachelor's degree in CS/Engineering/IS

Outils

Jenkins Shared Libraries
Groovy
Terraform
Crossplane
GitLab CI/CD
GitHub Actions

Description du poste

Description & Requirements

Maximus is currently seeking an IT Senior Architect - DevSecOps . The IT Senior Architect - DevSecOps / Tools Engineering serves as the senior-most individual contributor technical authority for DevSecOps engineering, pipeline strategy, and secure software delivery across Maximus Enterprise Technology. Operating within the HO ET Architecture & Automation organization, this role provides principal-level guidance for the enterprise CI/CD platform (Jenkins Shared Libraries / Groovy), embedded security tooling, and end-to-end application delivery practices supporting 1,000+ government programs under FedRAMP, HIPAA, SOC 2, and PCI compliance requirements.

This is a high-visibility, enterprise-wide role requiring deep technical ownership, cross-functional influence with VP/Sr Director-level peers, and direct contribution to Maximus's $5B+ government services delivery mission.

Maximus is a remote position.

Essential Duties and Responsibilities:

  • Oversee the automation processes for daily activities, build activities and new feature and functionality with public and private cloud
  • Interact with other team members and groups within the IT organization
  • Help enforce the standards for server builds and services deployed in AWS and the private cloud by the cloud solutions teams
  • Perform other duties assigned by leadership.

Job-Specific Essential Duties and Responsibilities:

DevSecOps Architecture & Platform Leadership

  • Serve as the principal architect for the Maximus enterprise DevSecOps platform, defining reference architectures, pipeline standards, and security guardrails across commercial, federal, and GovCloud deployment targets, with primary delivery via Jenkins Shared Libraries (Groovy), Terraform and Crossplane-based infrastructure provisioning.
  • Establish and maintain the canonical CI/CD pipeline model, from source control through cloud deployment, inclusive of static code analysis, SAST/DAST security scans, artifact management, and policy-gated release gates.
  • Provide authoritative architecture decisions for multi-environment deployment strategies (dev, staging, production) on AWS, Azure, and Google Cloud Platform.

Security Integration & Compliance

  • Embed automated security controls and vulnerability management into CI/CD pipelines, including integration with Dependency Track, Splunk, RapidFort (container hardening and CVE remediation), and Axway Managed File Transfer (MFT) solutions.
  • Ensure all pipeline architectures align with NIST SSDF, FedRAMP, HIPAA, SOC 2, and PCI compliance requirements.
  • Collaborate with the Information Security Office (ISO) on security architecture reviews, risk acceptance decisions, and continuous compliance monitoring.
  • Champion \"security left\" practices across the Maximus developer community (300+ DevSecOps practitioners).

Technical Leadership & Governance

  • Participate in and provide technical authority within enterprise governance bodies, including SCM/Change Management governance groups alongside VP-level and Sr Director-level peers.
  • Author and maintain enterprise-level architecture documents, white papers, and technical standards for OCDIO-wide consumption.
  • Serve as a named technical reviewer and subject-matter authority for DevSecOps capability sections in business development and proposal content at the capture/pre-award stage.
  • Provide technical mentorship and upskilling guidance to T3/T4 architects and engineers across the tools and automation practice.

Platform Adoption & Community Enablement

  • Lead the internal DevSecOps community of practice, driving platform adoption, knowledge sharing, and standardized delivery patterns across business lines.
  • Define and maintain golden-path pipeline templates and launchpad configurations enabling 65-75% portfolio reuse.
  • Partner with project teams on onboarding, consulting engagements, escalated platform support, and day-to-day developer support across the Tools Engineering practice.
  • Represent the Tools Engineering practice in cross-organizational forums, OCDIO steering committees, and customer-facing briefings.

Minimum Requirements

  • Bachelor's degree in relevant field of study and 7+ years of relevant professional experience required, or equivalent combination of education and experience.

Job-Specific Minimum Requirements:

  • Bachelor's degree in Computer Science, Information Systems, Engineering, or a related field. Additional years of relevant experience will be considered in lieu of degree.
  • 7+ years of progressive IT experience, with 5+ years in a senior DevSecOps, platform engineering, or software delivery architecture role.
  • Must be eligible to obtain and maintain a U.S. Government Public Trust clearance or Secret clearance; active clearance preferred.
  • Deep expertise in CI/CD pipeline design and implementation using GitLab CI/CD, GitHub Actions, and Jenkins, including authoring and maintaining enterprise Jenkins Shared Libraries in Groovy; hands-on experience with GitLab and GitHub as enterprise source control and pipeline platforms is required.
  • Experience managing enterprise artifact repositories (JFrog Artifactory, Nexus, or equivalent) for versioned container images, compiled binaries, and deployment packages; familiarity with image tagging, environment promotion workflows, and registry mirroring for cross-account or air-gapped deployments.
  • Proficiency with Crossplane for infrastructure composition and platform engineering, defining, provisioning, and managing cloud resources via Kubernetes-native control planes.
  • Demonstrated hands-on experience with Infrastructure as Code (IaC): Terraform, AWS CloudFormation, or comparable tooling.
  • Strong working knowledge of cloud-native architecture principles and Kubernetes platform strategy, including container orchestration (EKS, AKS, GKE, or equivalent), service mesh, and platform engineering patterns.
  • Experience designing and implementing secure pipelines in regulated environments (FedRAMP, HIPAA, SOC 2, PCI, or NIST 800-53/SSDF), including support for GovCloud/FedRAMP Impact Level classes (Low, Moderate, High, and DoD IL2/IL4/IL5 as applicable).
  • Technical leadership experience across AWS, Microsoft Azure, and Google Cloud Platform (Google Cloud Platform), including multi-account/multi-environment architectures and cross-cloud strategy.
  • Hands-on experience designing and implementing cross-account AWS deployment architectures, including IAM cross-account role assumption (STS AssumeRole), permissions boundaries, Service Control Policies (SCPs), and deployment of infrastructure into client-owned or non-organization AWS accounts via automated CI/CD pipelines.
  • Working knowledge of AWS Transit Gateway (TGW) and Aviatrix overlay networking for multi-VPC and cross-account connectivity; experience with TGW attachment configuration, RAM resource sharing, VPC CIDR planning, and route table management in enterprise multi-account AWS environments.
  • Hands-on experience with pipeline-integrated security scanning tools including SonarQube (SAST/code quality), Trivy (container vulnerability scanning), TruffleHog (secret detection), OWASP Dependency Check, Hadolint (Dockerfile linting), and CryptoScan; ability to configure quality gates that block promotion on policy violations.
  • Demonstrated experience in solution design and engineering governance, including architecture review boards, design authority participation, and enforcement of enterprise standards across delivery teams.
  • Proven track record leading or contributing to cloud automation adoption initiatives, including platform onboarding programs, self-service infrastructure enablement, and automation maturity assessments.
  • Experience supporting modernization, automation, and security-focused engineering initiatives across large-scale government or enterprise IT environments.
  • Ability to collaborate effectively across Infrastructure, Security, Applications, and Platform Engineering teams to align delivery pipelines with enterprise architecture and compliance requirements.
  • Experience with Agile project tracking and collaboration tooling, including Jira, for backlog management, sprint planning, and DevSecOps workflow configuration.
  • Demonstrated ability to operate as a senior technical authority in an enterprise-scale organization, influencing architecture decisions across multiple teams and programs.

Preferred Skills and Qualifications:

  • Experience leading or contributing to an enterprise-wide DevSecOps platform or Center of Excellence (CCOE).
  • Experience supporting federal government IT programs, including FedRAMP authorization boundaries and GovCloud environments.
  • Preferred Certifications: Possession of industry-recognized certifications such as Certified Kubernetes Administrator (CKA), HashiCorp Certified: Terraform Associate, AWS Certified Solutions Architect, or Microsoft Certified: Azure Administrator is highly desirable.
  • Experience with Agile/SAFe delivery frameworks and tooling (Confluence, SAFe).
  • Familiarity with node-based or low-code workflow automation platforms (e.g., n8n, Temporal, or equivalent) for building event-driven automation workflows, including CI/CD pipeline failure response, CVE alerting via vulnerability management tools, and automated compliance remediation against cloud configuration standards.
  • Familiarity with Spec-Driven Development practices, including authoring and consuming machine-readable specifications (e.g., OpenAPI, AsyncAPI) to drive pipeline automation, contract testing, and API-first design workflows.
  • Familiarity with AI coding assistants (e.g., GitHub Copilot, Amazon CodeWhisperer, Claude Code, or equivalent) and AI-assisted development best practices, including prompt engineering, code review augmentation, and responsible AI use in regulated environments.
  • Familiarity with security tooling: dependency vulnerability management (Dependency Track or equivalent), container hardening (RapidFort or equivalent), - Managed File Transfer (Axway MFT or equivalent), and SIEM integration (Splunk or equivalent).
  • Familiarity with GitOps delivery patterns and tooling, including ArgoCD for declarative, Kubernetes-native continuous delivery; experience managing application portfolio entries, approval conditions, and update cadence for GitOps-managed services.
  • Working knowledge of build and dependency management tools: Maven and Gradle.

#techjobs

#LI-PN1

EEO Statement

Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

Pay Transparency

Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at .

Minimum Salary

$ 159,520.00

Maximum Salary

$ 239,280.00

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

IT Senior Architect - DevSecOps
IT Senior Architect - DevSecOps

Maximus • Indianapolis (IN)

À distance
USD 160 000 - 180 000
IT Senior Architect - DevSecOps
IT Senior Architect - DevSecOps

Maximus • Northern (KY)

À distance
USD 180 000 - 250 000
IT Senior Architect - DevSecOps
IT Senior Architect - DevSecOps

Maximus • Oklahoma City (OK)

À distance
USD 160 000 - 180 000
IT Senior Architect - DevSecOps
IT Senior Architect - DevSecOps

Maximus • Hagåtña (GU)

À distance
USD 160 000 - 239 000
Senior Director, Secure DevOps
Senior Director, Secure DevOps

Maximus • Northern (KY)

Hybride
USD 180 000 - 240 000
Lead Security Engineer - Remote
Lead Security Engineer - Remote

Maximus • États-Unis

Sur place
USD 141 000 - 180 000
Health insurance
Life and disability insurance
Retirement savings plan
+1
IT Prin Arch - DevOps
IT Prin Arch - DevOps

Maximus • Northern (KY)

Hybride
USD 170 000 - 210 000
Competitive compensation
Comprehensive insurance coverage
401K retirement savings plan
+2
IT Prin Arch - DevOps
IT Prin Arch - DevOps

Maximus • Springfield (IL)

À distance
USD 165 000 - 175 000
Competitive bonus
Comprehensive insurance
401K with company match
+2
IT Prin Arch - DevOps
IT Prin Arch - DevOps

Maximus • Raleigh (NC)

À distance
USD 165 000 - 175 000
Competitive compensation
Comprehensive insurance
401K retirement plan
+4
IT Prin Arch - DevOps
IT Prin Arch - DevOps

Maximus • Indianapolis (IN)

À distance
USD 165 000 - 175 000
Bonus opportunities
Health insurance
401K Retirement Savings plan
+3