Jr. DevSecOps Engineer

Code Red Partners

Arlington (VA)

On-site

USD 60,000 - 85,000

Full time

42 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Code Red Partners in Arlington, VA seeks an entry‑level technical professional to support Zero Trust, IaC automation, and FedRAMP compliance activities onsite. You will assist with Vault secret workflows, Terraform modules, and monitoring dashboards, while learning security and incident response alongside senior engineers.

The role emphasizes practical, hands‑on experience in cloud environments (AWS/Azure/GCP), container basics, and compliance workflows within a Govern­ment technology context.

Qualifications

  • 1–2 years of experience in an entry‑level technical role (IT/Cloud/Support)
  • Must be able to work fully onsite at Arlington, VA
  • Proficiency with Linux command line, file permissions, logs, and basic shell tasks
  • Foundational networking knowledge (DNS, TCP/IP, HTTP/HTTPS, SSH, subnets)
  • Exposure to public cloud concepts (AWS preferred) and basic Git workflows (cloning, branching, PRs)
  • Ability to read/write basic Python or Bash scripts for automation
  • Understanding of security principles (least privilege, MFA, IAM, encryption)
  • Strong documentation and willingness to learn on-site with senior engineers

Responsibilities

  • Assist monitoring of Zero Trust/Identity tools (Zscaler ZPA/PRA) and verify access pathways
  • Support Vault secrets workflows and automated rotations
  • Review basic IAM permissions and cloud role policies for least privilege
  • Run and troubleshoot Terraform modules across dev/stage in AWS/Azure/GCP
  • Log configuration drift and assist patching/remediation
  • Review security groups, public endpoints, and network routes for compliance
  • Monitor CI/CD failures and escalate systemic issues
  • Review automated security scans (SAST/SCA/container scans) in pipelines
  • Assist in building and running security base-image layers for containers on Kubernetes clusters

Skills

Linux fundamentals
Networking
Cloud concepts
Git workflows
Scripting (Python or Bash)
Security mindset
On-site collaboration

Tools

Terraform
CloudFormation
GitHub Actions / GitLab CI
Jira
ServiceNow
Grafana
CloudWatch
Docker
Kubernetes (EKS/AKS/GKE)

Job description

Series A GovTech Compliance Startup ONSITE in Arlington, VA

Role Focus & Technical Matrix

Zero Trust & Identity: Monitoring Zscaler connectors, HashiCorp & Vault basic secret updates.

Infrastructure as Code: Running pre-written Terraform plans, Git PR workflows, fundamental CloudFormation playbooks.

Security & Compliance: FedRAMP baselines, sorting Wiz/Qualys vulnerability alerts, basic CrowdStrike endpoint checks

Observability & Ops: Grafana dashboard upkeep, CloudWatch metrics, ServiceNow ticketing, shadow on-call protocols

Key Responsibilities
Zero Trust & Identity Operations
  • Assist in monitoring Zero Trust Network Access tools (Zscaler ZPA / PRA), verifying application connectors and remote access pathways remain operational.
  • Support secrets management workflows within HashiCorp Vault, including basic credential generation, entry updates, and confirming automated rotations execute without error.
  • Review basic IAM permissions and cloud role policies to ensure alignment with least-
Infrastructure & Automation Support
  • Run, test, and troubleshoot pre-defined Terraform modules across development and staging environments in AWS, Azure, or GCP.
  • Identify and log configuration drift or environment resource issues, assisting senior engineers with standard infrastructure patching and remediation tasks.
  • Review cloud security groups, public endpoint configurations, and basic network routes to cross-check them against compliance baselines.
  • Monitor and triage failing CI/CD pipeline runs within GitHub Actions, GitLab CI, or Azure DevOps, escalating systemic errors to the team.
  • Review automated security scan readouts (SAST, SCA, and container scans) embedded in the pipeline.
  • Assist in updating, building, and running security base-image layers for containers (Docker) destined for managed Kubernetes clusters (EKS, AKS, GKE).
Compliance Monitoring & Change Administration
  • Assist compliance with the programmatic gathering of audit evidence for ongoing FedRAMP Continuous Monitoring (ConMon) cycles, specifically targeting CM-2, CM-6, AU-2, and SC-12 controls.
  • Assist with Plan of Action and Milestones (POA&M) ticket creation, tracking remediation deadlines across the platform.
  • Draft and submit technical change requests within ServiceNow, ensuring correct structural documentation for review by the Change Advisory Board (CAB).
Observability & Incident Support
  • Maintain and adjust basic Grafana and CloudWatch dashboards, ensuring alert notifications are mapped accurately to operational notification streams.
  • Monitor standard system health indicators, performing low-severity alert triaging to
  • Maintain open telemetry operations for ongoing application monitoring
  • Participate in a shadow on-call rotation capacity (PagerDuty) alongside senior engineers to develop live diagnostic and real-time incident resolution skills.
Qualifications
Required Experience & Core Aptitude
  • Experience: 1–2 years of experience in an entry‑level technical role (e.g., IT Support, Junior Systems Administrator, Helpdesk/NOC, Cyber Operations, or relevant cloud
  • Location: Must be able to work fully on‑site at our Washington, DC office.
  • Linux Fundamentals: Comfortable navigating the Linux command line (Bash), managing file permissions, viewing system logs, and executing basic terminal commands.
  • Networking Core: Solid grasp of foundational networking concepts (DNS, TCP/IP, HTTP/HTTPS, SSH, Subnets, and basic firewall/security group rules).
  • Cloud & Version Control Exposure: Foundational exposure to public cloud concepts (AWS preferred) and basic Git workflows (cloning, branching, commits, Pull Requests).
  • Basic Scripting: Ability to read and write fundamental scripts in Python or Bash to automate repetitive tasks, parse logs, or and interact with simple APIs.
  • Security Mindset: Strong conceptual understanding of core security principles (Least Privilege, Multi‑Factor Authentication, IAM basics, Encryption).
  • Soft Skills & Growth Mindset: High technical curiosity, excellent written documentation habits, and a strong eagerness to learn directly from senior engineers on‑site
Nice to Have (Bonus Experience / Technologies You Will Learn)
  • Exposure to Infrastructure as Code concepts (Terraform or CloudFormation).
  • Familiarity with container basics (Docker) or CI/CD pipelines (GitHub Actions, GitLab CI)
  • Basic experience using ticketing or monitoring tools (Jira, ServiceNow, CloudWatch, Grafana)
  • Conceptual awareness of federal security or compliance frameworks (FedRAMP, NIST 800-53, or SOC 2).
Desirable Certifications
  • CompTIA Security+ or Linux+
  • AWS Certified Cloud Practitioner or Solutions Architect (Associate)
  • HashiCorp Certified: Terraform Associate (or actively pursuing)
  • Certified: Terraform Associate (or actively pursuing)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

The Phoenix Group • Arlington (VA)

On-site
USD 100,000 - 150,000
SecDevOps Engineer (Jr.)
SecDevOps Engineer (Jr.)

Knox Systems, Inc. • Virginia (MN)

On-site
USD 90,000 - 110,000
Medical, Dental, Vision, Life &Dis
Disability coverage
401k plan
Junior DevSecOps Engineer
Junior DevSecOps Engineer

Inadev-Corporatio • Reston (VA)

Hybrid
USD 70,000 - 100,000
Journeyman Cloud Security Engineer (Q Clearance)
Journeyman Cloud Security Engineer (Q Clearance)

ShorePoint • Washington, Northern (KY)

Hybrid
USD 150,000 - 210,000
PTO 144 hours
11 holidays
Insurance premium coverage 85%
+4
Jr DevSecOps
Jr DevSecOps

TekStream Solutions • Washington

Hybrid
USD 90,000 - 130,000
Journeyman Cloud Security Engineer (Q Clearance) with Security Clearance
Journeyman Cloud Security Engineer (Q Clearance) with Security Clearance

ShorePoint, LLC • North Las Vegas (NV)

On-site
USD 120,000 - 180,000
PTO 144 hours
11 holidays
Health insurance 85% covered
+3
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell • Virginia (MN)

On-site
USD 150,000 - 190,000
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Socket.dev • Virginia (MN)

On-site
USD 190,000 - 240,000
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell GmbH • Chantilly (VA), Northern (KY)

Hybrid
USD 150,000 - 200,000
Sr. Security Engineer - Federal Customer
Sr. Security Engineer - Federal Customer

Dell GmbH • Virginia (MN)

On-site
USD 150,000 - 210,000