Senior DevSecOps Engineer

Peraton

Reston (VA)

On-site

USD 120,000 - 160,000

Full time

46 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Peraton is seeking a Senior DevSecOps Engineer in Reston, VA to build and operate the Agentic AI platform across CI/CD pipelines, cloud infrastructure, and platform health. You will own security-focused delivery patterns, automated testing, and observability, collaborating with senior engineers and security teams.

You will design scalable, auditable, and secure systems leveraging EKS, Terraform/OpenTofu, and GitOps workflows, with strong emphasis on incident response and compliance.

Qualifications

  • Bachelor's degree with 12+ years of professional experience or equivalent.
  • Hands-on experience building and maintaining CI/CD pipelines.
  • Production experience with Kubernetes/EKS, RBAC, Helm, and debugging workloads.
  • AWS experience across VPC, IAM, S3, RDS, CloudTrail, KMS.
  • IaC experience with OpenTofu or Terraform; manage state and modules.
  • Experience with monitoring/alerting using CloudWatch, Prometheus, Grafana.
  • Identity management: SSO/SAML/OIDC, RBAC, provisioning workflows.
  • Security testing integration: SAST/DAST/ SCA, secrets scanning.
  • Strong scripting in Python/Go/Bash; automation skills.
  • Least-privilege design and software supply chain security practices.
  • Communication skills for runbooks, alerts, and security coordination.
  • U.S. Citizenship required; ability to obtain Public Trust clearance.

Responsibilities

  • Operate Agentic AI platform across CI/CD, cloud infra, Kubernetes, observability, and reliability.
  • Build/maintain CI/CD pipelines with GitHub Actions and GitLab CI for secure delivery.
  • Enhance automated testing and quality gates in SDLC, including security checks.
  • Plan/releases: windows, artifacts, deployment automation, health checks, and rollback support.
  • Manage EKS/Kubernetes environments: upgrades, RBAC, Helm deployments, pod identity, GitOps.
  • Provide AWS infra: VPC, IAM, S3, RDS, CloudTrail, KMS.
  • Contribute to IaC with OpenTofu/Terraform lifecycle management.
  • Manage identity (SSO/SAML/OIDC), RBAC, provisioning workflows, access reviews.
  • Develop monitoring/alerting stack with CloudWatch, Prometheus, Grafana.
  • Create actionable alerts and SLO-aligned operational thresholds.
  • Build synthetic/transactional monitoring for authentication flows.
  • Address IAVM notices and patching with evidence for compliance.
  • Support secret management, least privilege, and supply chain integrity.

Skills

CI/CD pipelines
Kubernetes / EKS
AWS core services
SRE / Monitoring
IaC (Terraform/OpenTofu)
Security testing
Scripting (Python/Go/Bash)
Identity & access management
GitHub Actions / GitLab CI
Trunk-based Dev

Education

Bachelor's degree with 12 years experience
Associate's degree with 14 years experience
MS degree with 10 years experience
High school diploma/equivalent with 16 years experience

Tools

GitHub Actions
GitLab CI
OpenTofu
Terraform
ArgoCD
Flux

Job description

What You Bring
Basic Qualifications
  • Bachelor's degree with 12 years professional experience, or Associate's degree with 14 years professional experience, or MS degree with 10 years professional experience, or high school diploma/equivalent with 16 years professional experience
  • Hands-on experience building and maintaining CI/CD pipelines in GitHub Actions, GitLab CI, or comparable systems — including pipeline-as-code, reusable workflows, and integrated quality/security gates
  • Production experience operating Kubernetes, ideally Amazon EKS — cluster upgrades, RBAC, Helm-based deployments, and troubleshooting workload issues
  • Practical AWS experience across core services: VPC, IAM, S3, RDS, CloudTrail, and KMS
  • Infrastructure-as-code experience with OpenTofu, Terraform, or comparable — writing modules, managing state, and driving change through code review
  • Experience implementing and tuning monitoring, logging, and alerting using CloudWatch, Prometheus/Grafana, or equivalent tooling
  • Familiarity with identity and access management patterns — SSO/SAML/OIDC integration, RBAC, and provisioning/deprovisioning workflows
  • Experience integrating security testing into delivery pipelines (SAST, DAST, SCA, secrets scanning, or dependency scanning) and driving findings to closure
  • Solid scripting and automation skills in Python, Go, Bash, or comparable
  • Working knowledge of secrets management, least-privilege design, and software supply chain integrity practices
  • Comfort with modern engineering delivery patterns: trunk-based development, merge-request-driven change, and automated release quality controls
  • Clear written and verbal communication — able to document runbooks, write actionable alerts, and coordinate with security, program, and customer stakeholders
  • U.S. Citizenship required
  • Must have the ability to obtain and maintain a Public Trust clearance
Preferred Qualifications
  • Experience operating Amazon EKS at scale, including add-on lifecycle, node group strategy, pod identity, and IRSA
  • GitOps experience with ArgoCD, Flux, or comparable
  • Experience with DAST and runtime security tooling such as OWASP ZAP, Burp Suite, Nuclei, or equivalent
  • Experience implementing SLIs/SLOs and error-budget-driven operational practices
  • Experience building synthetic and transactional monitoring that exercises real authentication flows and critical user journeys
  • Familiarity with IAVM tracking, vulnerability remediation workflows, and evidence generation for compliance reporting
  • Exposure to policy-as-code frameworks: OPA/Rego, Kyverno, or Conftest
  • Experience with software supply chain integrity: SBOM generation, image signing (Cosign/Sigstore), SLSA provenance
  • Experience supporting FedRAMP, NIST 800-53, RMF, or comparable federal compliance environments
  • Experience with distributed tracing and modern observability stacks: OpenTelemetry, Loki, Tempo, or ELK
  • Active security clearance or eligibility
  • Relevant certifications such as CKA/CKS, AWS Solutions Architect / Security, or Terraform Associate
  • Prior experience supporting AI/ML or Agentic AI platforms in production
Why Peraton

Peraton is a next-generation national security company delivering mission capabilities across defense, intelligence, space, cyber, and federal civilian markets. The platform work you do here directly shapes how advanced AI-enabled capabilities reach mission teams — securely, compliantly, and in production.

Peraton is seeking a Senior DevSecOps Engineer to join our team in Reston, VA — a DevSecOps / Platform Engineer who will help build and operate our Agentic AI platform across delivery, infrastructure, runtime operations, and platform health.

About the Role

You’ll contribute to the technical backbone that keeps platform delivery secure, reliable, and scalable — from CI/CD pipelines and automated testing through EKS cluster operations, AWS infrastructure, monitoring, alerting, and synthetic health checking.

We're looking for an engineer who pairs strong technical execution with operational discipline and a builder mindset — someone with the judgment to design systems that are not only functional, but supportable, observable, secure, and audit-ready. You'll take ownership of meaningful areas of the platform while working alongside a team of senior DevSecOps and platform engineers.

Why This Role Stands Out

This is a chance to shape the platform layer of a highly visible and ambitious Agentic AI environment. The problems are real, the technical judgment matters, and the engineering practices are modern. For the right candidate, this role is a direct path to building systems that improve platform resilience and shape how advanced AI-enabled capabilities are delivered in secure, compliant, and production-ready ways.

What You’ll Do

Key responsibilities may include, but are not limited to:

  • Help operate the Agentic AI platform across CI/CD, cloud infrastructure, Kubernetes operations, observability, and runtime reliability
  • Build and maintain CI/CD pipelines across GitHub Actions and/or GitLab CI, enabling secure, repeatable, and efficient delivery workflows
  • Implement and improve automated testing and quality gates within the software delivery lifecycle, including build validation, integration checks, security testing, and deployment controls
  • Plan and execute releases and deployments — coordinating change windows, managing release artifacts, running deployment automation, validating post-deployment health, and supporting rollback procedures
  • Support operational ownership of Amazon EKS / Kubernetes environments, including cluster lifecycle activities, upgrades, troubleshooting, RBAC, Helm-based deployments, pod identity, and GitOps-aligned workflows
  • Build and maintain AWS infrastructure supporting platform and application needs across services such as VPC, IAM, S3, RDS, CloudTrail, and KMS
  • Contribute to infrastructure provisioning and lifecycle management through OpenTofu / Terraform and related infrastructure-as-code practices
  • Administer user management for the platform — identity provider integration (SSO/SAML/OIDC), role-based access control (RBAC), provisioning and deprovisioning workflows, and periodic access reviews
  • Help design and operate a mature monitoring, logging, and alerting stack using CloudWatch, Prometheus/Grafana, or equivalent tooling
  • Routinely assess system logs to detect anomalies, configuration drift, misuse, and security-relevant events; triage findings and drive remediation in coordination with senior engineers and the customer security team
  • Develop actionable alerts, service health indicators, and SLO-aligned operational thresholds that support fast triage and resilient service delivery
  • Build and maintain synthetic and transactional monitoring that exercises real authentication flows, user journeys, and critical service transactions
  • Track and remediate Information Assurance Vulnerability Management (IAVM) notices and other vulnerability advisories — maintain inventory accuracy, drive patching to closure, and produce the evidence required for compliance reporting
  • Implement and maintain DAST and runtime security testing in delivery pipelines using tools such as OWASP ZAP, Burp, Nuclei, or equivalent
  • Support security-focused CI/CD practices including secrets management, least privilege, software supply chain integrity, and audit evidence generation
  • Apply modern engineering delivery patterns such as trunk-based development, merge-request-driven change, and automated release quality controls
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton • Basking Ridge (NJ)

On-site
USD 140,000 - 180,000
Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton Labs, Inc. • Basking Ridge (NJ)

On-site
USD 112,000 - 179,000
Medical, dental, vision benefits
401(k) + employer match
Paid time off
Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton Labs • Maryland

On-site
USD 112,000 - 179,000
Health benefits
401(k)
Paid time off (PTO)
+1
Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton • Herndon (VA)

On-site
USD 112,000 - 179,000
Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton • Reston (VA)

Hybrid
USD 112,000 - 179,000
Senior DevSecOps / Platform Engineer
Senior DevSecOps / Platform Engineer

Peraton • Corridor North (MD)

On-site
USD 112,000 - 179,000
External Job Posting Title Senior DevSecOps / Platform Engineer
External Job Posting Title Senior DevSecOps / Platform Engineer

Peraton • Northern (KY)

On-site
USD 112,000 - 179,000
Senior DevSecOps & Platform Engineer—EKS, Cloud, CI/CD
Senior DevSecOps & Platform Engineer—EKS, Cloud, CI/CD

Peraton • Maryland

On-site
USD 140,000 - 190,000
Senior DevSecOps & Platform Engineer
Senior DevSecOps & Platform Engineer

Peraton • Corridor North (MD)

On-site
USD 112,000 - 179,000
Senior Platform Engineer
Senior Platform Engineer

Epsilon ASI • Denver (CO), Northern (KY)

On-site
USD 130,000 - 180,000