SecDevOps Engineer

Jobtailor

Colorado

On-site

USD 150,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking an experienced security-focused DevOps engineer to design, implement, and maintain secure CI/CD pipelines and infrastructure in a federal-contracting environment.

You will integrate security testing, vulnerability scanning, and compliance checks across development workflows while supporting COMSEC operations and government standards. Collaboration with SREs, cybersecurity teams, and developers is essential.

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 8+ years of experience in DevOps, SecDevOps, or a related engineering discipline.
  • Proven experience integrating security practices into CI/CD pipelines and development workflows.
  • Hands-on experience with SAST, DAST, vulnerability scanners, and SIEM platforms.
  • Experience with AWS, Azure, or GCP.
  • Experience with Docker and Kubernetes.
  • Strong understanding of networking, encryption, and secure communications.
  • Familiarity with NIST SP 800-series, RMF, or CMMC security frameworks.
  • Active U.S. Security Clearance or ability to obtain one (COMSEC exposure).
  • Experience with COMSEC equipment, policies, and key management.
  • Relevant certifications such as CISSP, CEH, Security+, or Certified DevSecOps Professional.
  • Experience applying NIST SP 800-53 security and privacy controls for federal information systems and organizations.
  • Experience in an aerospace, defense, or government contracting environment.
  • Familiarity with Terraform or Ansible.

Responsibilities

  • Design, implement, and maintain secure DevOps pipelines and infrastructure.
  • Integrate automated security testing, vulnerability scanning, and compliance checks into CI/CD workflows.
  • Support COMSEC operations by ensuring secure communication systems and tools meet applicable standards.
  • Identify and remediate security vulnerabilities across development and production environments.
  • Enforce security policies, procedures, and best practices across engineering teams.
  • Monitor systems for security threats and respond to incidents with Cybersecurity teams.
  • Partner with SREs to build resilient, security-hardened infrastructure.
  • Ensure compliance with relevant government and industry security frameworks and regulations.
  • Collaborate with Cybersecurity teams, Software Developers, and Site Reliability Engineers.

Skills

DevSecOps
SAST
DAST
Vulnerability Scanning
SIEM
Docker
Kubernetes
Networking
Encryption
NIST RMF
CMMC
CISSP
AWS/Azure/GCP
Terraform
Ansible
COMSEC Equipment

Education

Bachelor's degree in Computer Science or Cybersecurity

Tools

Docker
Kubernetes
COMSEC Equipment
Terraform
Ansible

Job description

  • Design, implement, and maintain secure DevOps pipelines and infrastructure
  • Integrate automated security testing, vulnerability scanning, and compliance checks into CI/CD workflows
  • Support COMSEC operations by ensuring secure communication systems and tools meet applicable standards
  • Identify and remediate security vulnerabilities across development and production environments
  • Enforce security policies, procedures, and best practices across engineering teams
  • Monitor systems for security threats and respond to incidents with Cybersecurity teams
  • Partner with SREs to build resilient, security-hardened infrastructure
  • Ensure compliance with relevant government and industry security frameworks and regulations
  • Collaborate with Cybersecurity teams, Software Developers, and Site Reliability Engineers
Requirements
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field
  • 8+ years of experience in DevOps, SecDevOps, or a related engineering discipline
  • Proven experience integrating security practices into CI/CD pipelines and development workflows
  • Hands‑on experience with SAST, DAST, vulnerability scanners, and SIEM platforms
  • Experience with AWS, Azure, or GCP
  • Experience with Docker and Kubernetes
  • Strong understanding of networking, encryption, and secure communications
  • Familiarity with NIST SP 800-series, RMF, or CMMC security frameworks
  • Active U.S. Security Clearance or ability to obtain one
  • Experience with COMSEC equipment, policies, and key management
  • Relevant certifications such as CISSP, CEH, Security+, or Certified DevSecOps Professional
  • Experience applying NIST SP 800-53 security and privacy controls for federal information systems and organizations
  • Experience in an aerospace, defense, or government contracting environment
  • Familiarity with Terraform or Ansible
  • Must be a U.S. citizen or national, U.S. permanent resident, or lawfully admitted into the U.S. as a refugee or granted asylum
  • Successful completion of required background checks
Core Competencies

Demonstrates expertise in designing and maintaining secure DevOps pipelines, integrating security practices into CI/CD workflows, and ensuring compliance with government and industry security frameworks. Proficient in vulnerability management and incident response within development and production environments.

Highest-signal resume keywords
  • DevOps Pipeline Design
  • Security Integration in CI/CD
  • Vulnerability Scanning
  • AWS, Azure, or GCP Experience
  • CISSP, CEH, Security+, or Certified DevSecOps Professional
ATS Optimization Keywords
Hard Skills
  • DevOps
  • SecDevOps
  • SAST
  • DAST
  • Vulnerability Scanners
  • SIEM Platforms
  • Docker
  • Kubernetes
  • Networking
  • Encryption
Certifications & Qualifications
  • CISSP
  • CEH
  • Security+
  • Certified DevSecOps Professional
Industry Keywords
  • NIST SP 800-series
  • RMF
  • CMMC
  • NIST SP 800-53
  • Aerospace
  • Defense
  • Government Contracting
Tools & Technologies
  • Terraform
  • Ansible
  • COMSEC Equipment
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Fall River (MA)

On-site
USD 120,000 - 180,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Jobtailor • McLean (VA)

On-site
USD 150,000 - 190,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Arlington (VA)

On-site
USD 70,000 - 100,000
Senior Information Systems Security Engineer – ISSE
Senior Information Systems Security Engineer – ISSE

Jobtailor • Maryland

On-site
USD 140,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

Socket.dev • Arlington (VA)

On-site
USD 120,000 - 150,000
Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000
Senior Kubernetes Engineer
Senior Kubernetes Engineer

Jobtailor • Washington

On-site
USD 140,000 - 210,000
Senior DevSecOps Cybersecurity Engineer
Senior DevSecOps Cybersecurity Engineer

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000
Information Systems Security Engineer
Information Systems Security Engineer

Jobtailor • King of Prussia (PA)

On-site
USD 120,000 - 170,000
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required

Jobtailor • Fort Belvoir (VA)

On-site
USD 140,000 - 180,000