Jr DevSecOps Engineer

QBA Worldwide

Washington (District of Columbia)

Hybrid

USD 90,000 - 130,000

Full time

40 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Hybrid work model

Job summary

QBA Worldwide seeks a Jr DevSecOps Engineer to design, build, and operate secure software delivery pipelines on a federal cloud platform built on AWS. You will implement CI/CD, infrastructure-as-code, and security automation while embedding DevSecOps and shift-left security across the SDLC.

Collaborate with developers, architects, and security teams to ensure compliant, highly automated releases. Hybrid work (2 onsite days, 3 remote) supporting a nationally impactful program.

Qualifications

  • 3+ years of DevOps or DevSecOps engineering experience.
  • Hands-on experience with AWS cloud services and infrastructure-as-code.
  • Experience implementing CI/CD pipelines and security automation.
  • Experience developing automation scripts using Python, Bash, or similar scripting languages.

Responsibilities

  • Design, build, and maintain secure CI/CD pipelines using AWS-native services, including AWS CodePipeline and AWS CodeBuild.
  • Implement and maintain infrastructure-as-code using AWS CDK and AWS CloudFormation.
  • Integrate security scanning capabilities, including SAST, DAST, SCA, and policy-as-code into CI/CD pipelines.
  • Automate compliance evidence collection to support FedRAMP and NIST security controls.
  • Support automated environment provisioning and deployment strategies, including blue/green and canary deployments.
  • Integrate AI-assisted development and DevSecOps tools for code scanning, testing, and pipeline automation.
  • Monitor CI/CD pipeline health, reliability, and performance while driving continuous improvements in delivery metrics.
  • Collaborate with development and security teams to implement secure software delivery best practices across the software development lifecycle.

Skills

DevSecOps
DevOps
AWS
AWS CodePipeline
AWS CodeBuild
AWS CDK
AWS CloudFormation
Infrastructure as Code
CI/CD
Security automation
SAST
DAST
SCA
Policy as Code
FedRAMP
NIST controls
Blue/green deployments
Canary deployments
Python
Bash
Public Trust clearance
US work authorization

Tools

AWS CodePipeline
AWS CodeBuild
AWS CDK
AWS CloudFormation

Job description

We are building a team for one of the U.S. Federal Government's largest technology modernization programs, underpinning the U.S. capital markets.

Built on AWS and leveraging an AI-powered software engineering platform, this program offers a unique opportunity to gain hands-on experience with next-generation AI, Agentic AI, cloud technologies, and AI-driven engineering.

If you are looking for technically challenging work, exceptional learning, and a résumé-defining opportunity with national impact, I would love to connect.

Job Title

Jr DevSecOps Engineer

Position Type

Full-Time

Location

Hybrid (2 days onsite)

Days Remote

3 days remote

Position Summary

The DevSecOps Engineer designs, builds, and operates secure software delivery pipelines for a large-scale federal cloud platform built on AWS. This role is responsible for implementing CI/CD pipelines, infrastructure-as-code, security automation, and deployment automation while embedding DevSecOps and shift-left security practices throughout the software development lifecycle. Working closely with developers, architects, and security teams, the DevSecOps Engineer helps deliver secure, compliant, and highly automated software releases that meet federal security and compliance requirements.

Key Responsibilities
  • Design, build, and maintain secure CI/CD pipelines using AWS-native services, including AWS CodePipeline and AWS CodeBuild.
  • Implement and maintain infrastructure-as-code using AWS CDK and AWS CloudFormation.
  • Integrate security scanning capabilities, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and policy-as-code into CI/CD pipelines.
  • Automate compliance evidence collection to support FedRAMP and NIST security controls.
  • Support automated environment provisioning and deployment strategies, including blue/green and canary deployments.
  • Integrate AI-assisted development and DevSecOps tools for code scanning, testing, and pipeline automation.
  • Monitor CI/CD pipeline health, reliability, and performance while driving continuous improvements in delivery metrics.
  • Collaborate with development and security teams to implement secure software delivery best practices across the software development lifecycle.
Minimum Experience
  • 3+ years of DevOps or DevSecOps engineering experience.
  • Hands-on experience with AWS cloud services and infrastructure-as-code.
  • Experience implementing CI/CD pipelines and security automation.
  • Experience developing automation scripts using Python, Bash, or similar scripting languages.
Mandatory Skills
  • DevSecOps.
  • DevOps.
  • AWS.
  • AWS CodePipeline.
  • AWS CodeBuild.
  • AWS CDK.
  • AWS CloudFormation.
  • Infrastructure as Code (IaC).
  • CI/CD.
  • Security automation.
  • Static Application Security Testing (SAST).
  • Dynamic Application Security Testing (DAST).
  • Software Composition Analysis (SCA).
  • Policy as Code.
  • FedRAMP compliance.
  • NIST security controls.
  • Blue/green deployments.
  • Canary deployments.
  • Python, Bash, or similar scripting languages.
  • AI-assisted DevSecOps tools.
  • Pipeline monitoring and optimization.
  • U.S. work authorization.
  • Ability to obtain a Public Trust clearance.
Nice-to-Have Skills
  • AWS DevOps Engineer or AWS Security certification.
  • FedRAMP implementation experience.
  • NIST compliance experience.
  • Experience using AI-assisted DevSecOps and software engineering tools.
Degrees and Certifications
Required
  • Degree requirements were not specified in the original job description.
Preferred
  • AWS DevOps Engineer certification.
  • AWS Security certification.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Junior DevSecOps Engineer
Junior DevSecOps Engineer

Inadev • Reston (VA)

On-site
USD 90,000 - 120,000
Jr DevSecOps
Jr DevSecOps

TekStream Solutions • Washington

On-site
USD 90,000 - 130,000
Junior DevSecOps Engineer
Junior DevSecOps Engineer

Inadev • Reston (VA)

On-site
USD 80,000 - 115,000
Junior DevSecOps Engineer
Junior DevSecOps Engineer

Inadev-Corporatio • Reston (VA)

Hybrid
USD 70,000 - 100,000
Security Engineer
Security Engineer

AmeriSOURCE Consulting, Inc. • Washington

Hybrid
USD 120,000 - 160,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Credence • Illinois

On-site
USD 150,000 - 180,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Credence • McLean (VA)

On-site
USD 150,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

STS Worldwide Inc. • Washington

On-site
USD 120,000 - 160,000
DevSecOps Engineer
DevSecOps Engineer

Phizenix Inc. • Reston (VA)

On-site
USD 120,000 - 180,000
Junior DevSecOps Engineer
Junior DevSecOps Engineer

Phizenix • Ruston (LA)

Hybrid
USD 70,000 - 100,000