Position Summary
Software Engineer Principal at GDIT responsible for leading DevSecOps practices for Air Force mission‑critical projects.
Responsibilities
- Leading implementation and management of DevSecOps practices across multiple projects and teams, ensuring seamless integration of development, security, and operations processes.
- Designing, implementing, and maintaining highly automated and secure CI/CD pipelines with advanced security testing and validation techniques.
- Providing technical leadership and guidance to cross‑functional teams (developers, security engineers, operations staff) on secure system design, deployment, and operation.
- Mentoring junior engineers and fostering a culture of security awareness.
- Architecting, implementing, and managing secure and highly available infrastructure (cloud‑based and on‑premises) focused on automation and scalability.
- Designing infrastructure‑as‑code solutions and implementing robust monitoring and alerting systems.
- Leading security assessments, penetration testing, and vulnerability remediation, and developing and implementing security policies and procedures.
- Conducting threat modeling and risk assessments.
- Developing and maintaining comprehensive documentation for systems, processes, and procedures, including architectural diagrams, security documentation, and operational runbooks.
- Conducting proof‑of‑concept evaluations of new DevSecOps tools and technologies and making recommendations for adoption.
- Leading incident response and root‑cause analysis efforts, focusing on identifying and mitigating security vulnerabilities.
- Developing and delivering DevSecOps training programs.
Qualifications
- Bachelor of Arts or Science in Computer Science or related field (Master’s degree preferred).
- 10+ years of related experience in software engineering and DevSecOps.
- Active TS/SCI clearance (or ability to obtain).
- Expert‑level proficiency in CI/CD tools and pipelines (Jenkins, GitLabCI, CircleCI, AzureDevOps).
- Proficiency in configuration management and automation tools (Ansible, Puppet, Chef, Terraform).
- Extensive experience with containerization and orchestration technologies (Docker, Kubernetes, DockerSwarm).
- Senior‑level knowledge of cloud platforms and services (AWS, Azure, GCP) and secure cloud architecture design.
- Mastery of scripting and programming languages (Python, Bash, Go, Java) for custom tool development.
- In‑depth knowledge of security best practices and tools (OWASP, Nessus, BurpSuite, Splunk, SIEM solutions).
- Understanding of networking concepts and protocols (TCP/IP, DNS, HTTP, TLS).
- Experience with security compliance frameworks and standards (NIST, CIS, ISO27001, SOC2).
- Experience with static and dynamic code analysis tools.
- Preferred: reverse engineering and malware analysis experience; active participation in the security community.
- Strong communication skills and ability to mentor and lead cross‑functional teams.
Location & Compensation
San Antonio, TX, USA – hybrid work (office & remote). Salary range: $119,000–$161,000 per year, commensurate with experience and location.
Benefits
Comprehensive medical, dental, vision, and 401(k) plan with company match, along with paid time off and flexible work options.
Equal Opportunity Statement
Equal Opportunity Employer. We welcome applicants with disabilities and protected veterans.