Senior DevSecOps Engineer

Jobtailor

McLean (VA)

On-site

USD 150,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a Technical Leader for DevSecOps in the Virginia/McLean area to guide a five-engineer team, drive secure automation, and maintain compliant AWS GovCloud environments for government apps.

You will own complex CI/CD pipelines, implement IaC with Terraform/CloudFormation/Ansible, and lead incident response with a focus on zero-trust posture and RMF/NIST alignment.

Qualifications

  • US citizenship with ability to obtain a DoD Secret clearance required.
  • Security+ and AWS Certified Security.
  • 7+ years hands-on DevSecOps, Cloud Eng., or Infra Automation.
  • Strong expertise in AWS GovCloud and compliance frameworks.
  • Experience with CI/CD tools (GitLab CI/CD, Jenkins, AWS Code Pipeline).
  • IaC using Terraform, CloudFormation, and Ansible.
  • Proficiency in Docker, Kubernetes (EKS/ECS/Fargate).
  • Knowledge of federal cybersecurity frameworks (RMF, NIST 800-171/53, STIGs, Zero Trust).
  • Automated security testing (SAST/DAST).
  • Scripting (Python, Bash, PowerShell) for automation and enforcement.

Responsibilities

  • Lead and mentor a team of DevSecOps engineers, providing technical direction.
  • Design, implement, and troubleshoot infrastructure and automation pipelines.
  • Own on-call incident response and drive reliability improvements.
  • Architect secure AWS GovCloud environments for DoD and civilian apps.
  • Build and optimize CI/CD pipelines to automate deployments and security checks.
  • Ensure compliance with security baselines and automated tooling.
  • Collaborate with developers, cybersecurity, and cloud engineers across SDLC.

Skills

DevSecOps
Team leadership
AWS GovCloud
CI/CD
Terraform
Kubernetes
Security testing
Python/Bash/PowerShell

Tools

GitLab CI/CD
Jenkins
AWS Code Pipeline
CloudFormation
Ansible

Job description

  • Technical Leadership & Team Management: Lead, mentor, and manage a team of approximately five DevSecOps engineers, providing technical direction, prioritizing work, conducting code and architecture reviews, and fostering a collaborative, high-performing "one team" culture while remaining an active hands-on contributor.
  • Hands-On Engineering: Serve as the technical lead for complex infrastructure, automation, and deployment efforts by designing solutions, troubleshooting production issues, developing infrastructure and pipeline code, and supporting implementation across the DevSecOps toolchain.
  • Operational Support & On-Call: Provide operational leadership during production incidents, outages, and high-priority events. Participate in an on-call rotation as required, ensuring timely incident response, root cause analysis, and restoration of services while driving continuous improvements to system reliability and operational maturity.
  • AWS GovCloud Architecture & Management: Design, implement, and maintain secure, scalable, and compliant AWS GovCloud environments for DoD and Civilian agency applications.
  • DevSecOps Pipeline Development: Build and optimize CI/CD pipelines using tools like GitLab CI/CD, Jenkins, AWS Code Pipeline, and Terraform to automate deployments and security compliance.
  • Security & Compliance: Ensure adherence to Federal cybersecurity frameworks (e.g., NIST 800-171, NIST 800-53, RMF, FedRAMP, Zero Trust). Implement STIGs, security baselines, and automated security scanning (SAST/DAST).
  • Infrastructure as Code (IaC): Automate infrastructure provisioning and configuration management using Terraform, CloudFormation, and Ansible.
  • Containerization & Orchestration: Deploy and manage Docker containers and Kubernetes clusters in AWS GovCloud, leveraging services like Amazon EKS, ECS, and Fargate.
  • Monitoring & Incident Response: Implement AWS CloudWatch, AWS Security Hub, GuardDuty, Splunk, or ELK for proactive monitoring, logging, and compliance reporting.
  • Automation & Scripting: Develop automation scripts using Python, Bash, or PowerShell to improve deployment efficiency and security enforcement.
  • Collaboration & Knowledge Sharing: Work closely with software developers, cybersecurity teams, and cloud engineers to integrate security and automation into the software development lifecycle (SDLC).
Requirements
  • US citizenship with the ability to obtain a successful DoD Secret security clearance required
  • Security+, AWS Certified Security
  • 7+ years of hands‑on experience in DevSecOps, Cloud Engineering, or Infrastructure Automation roles.
  • Strong expertise in AWS GovCloud services, security configurations, and compliance frameworks.
  • Experience with CI/CD tools (GitLab CI/CD, Jenkins, AWS Code Pipeline, or similar).
  • Hands‑on experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, and Ansible.
  • Proficiency in containerization and orchestration (Docker, Kubernetes, EKS, ECS, Fargate).
  • Strong understanding of AWS security services (AWS IAM, GuardDuty, Security Hub,AWS KMS, AWS WAF, AWS Config, AWS Secrets Manager).
  • Knowledge of federal cybersecurity frameworks (RMF, NIST 800-171/53, STIGs, ZeroTrust).
  • Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management).
  • Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement.

Demonstrates expertise in AWS GovCloud architecture and management, DevSecOps pipeline development, and infrastructure automation using Infrastructure as Code (IaC) tools. Proven ability to lead teams, ensure security compliance, and implement effective monitoring and incident response strategies.

Highest-signal resume keywords
  • AWS GovCloud Architecture
  • DevSecOps Pipeline Development
  • Infrastructure as Code (IaC)
  • Security Compliance Frameworks
  • Team Leadership & Mentoring
ATS Optimization Keywords
Hard Skills
  • DevSecOps
  • Cloud Engineering
  • Infrastructure Automation
  • CI/CD Tools
  • Terraform
  • CloudFormation
  • Ansible
  • Docker
  • Kubernetes
  • Scripting (Python, Bash, PowerShell)
Soft Skills
  • Team Management
  • Collaboration
  • Knowledge Sharing
Certifications & Qualifications
  • Security+
  • AWS Certified Security
Industry Keywords
  • NIST 800-171
  • NIST 800-53
  • RMF
  • FedRAMP
  • Zero Trust
  • STIGs
  • Automated Security Testing
Tools & Technologies
  • GitLab CI/CD
  • Jenkins
  • AWS Code Pipeline
  • AWS CloudWatch
  • AWS Security Hub
  • GuardDuty
  • Splunk
  • ELK
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SecDevOps Engineer
SecDevOps Engineer

Jobtailor • Colorado

On-site
USD 150,000 - 190,000
Platform Automation Engineer
Platform Automation Engineer

Jobtailor • Maryland

On-site
USD 120,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Fall River (MA)

On-site
USD 120,000 - 180,000
Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required

Jobtailor • Fort Belvoir (VA)

On-site
USD 140,000 - 180,000
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required
Systems Architect / DevSecOps Engineer, Mid to Senior, Top Secret Clearance Required

Jobtailor • Quantico (VA)

On-site
USD 140,000 - 210,000
Principal DevSecOps Engineer – Platform
Principal DevSecOps Engineer – Platform

Jobtailor • Arlington (VA)

On-site
USD 180,000 - 240,000
Multi-Cloud Engineer, SME
Multi-Cloud Engineer, SME

Jobtailor • New Mexico

On-site
USD 150,000 - 190,000
Software Engineer
Software Engineer

Jobtailor • Denver (CO)

On-site
USD 180,000 - 240,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Arlington (VA)

On-site
USD 70,000 - 100,000