Senior DevSecOps Engineer

CACI International Inc.

United States

Remote

USD 99,000 - 207,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

CACI International Inc. is seeking a Senior DevSecOps Engineer to join a DoD/AF cloud-native platform team. You will own Kubernetes-based platforms, write Terraform IaC, and lead secure CI/CD automation in mission-critical environments.

The role requires strong GitOps discipline, compliance experience, and the ability to work across multi-tenant identity services while supporting RMF/ATO processes. A Secret clearance is required/eligible.

Qualifications

  • U.S. Citizen with eligibility for Secret Clearance.
  • 7+ years of relevant professional experience with a related degree.
  • Strong experience developing and maintaining Terraform modules and reusable IaC patterns.
  • Experience implementing GitOps workflows with Argo CD, Flux, GitLab, GitHub, or similar platforms.
  • 3–5 years designing and deploying Kubernetes-based solutions; Big Bang is a plus.
  • Experience with CI/CD pipelines, containerization, and secure DevSecOps practices.
  • Familiarity with DISA STIGs, RMF, NIST SP 800-53, ATO processes, POA&M management, continuous monitoring.

Responsibilities

  • Deploy, configure, and sustain Kubernetes-based platforms using Big Bang, Helm, and GitOps.
  • Develop Terraform-based IaC for cloud infra, Kubernetes resources, and platform services.
  • Build, secure, and optimize CI/CD pipelines with reusable templates and automated testing.
  • Triage, remediate, and validate security findings per SLAs.
  • Maintain hardened Kubernetes and cloud baselines aligned with STIGs, NIST, RMF.
  • Manage Kubernetes security controls: RBAC, network policies, secrets, ingress/egress.
  • Maintain GitOps workflows; ensure environments align with approved code.
  • Monitor CI/CD runners, deployments, and Kubernetes workloads; troubleshoot issues.
  • Automate patching, config mgmt, and compliance validation to reduce drift.
  • Produce architecture diagrams, procedures, evidence, remediation plans, and POA&M updates.
  • Support RMF/ATO lifecycle with control evidence and continuous-monitoring artifacts.

Skills

Terraform
GitOps workflows
Kubernetes
CI/CD pipelines
Security compliance
RMF/NIST SP 800-53

Education

Bachelor's degree in related field

Tools

Argo CD
Flux
GitLab
GitHub

Job description

Job Title: Senior DevSecOps EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:Join a high-performing DevSecOps team supporting our DoD/AF customer in delivering, securing, and operating cloud-native enterprise platforms. This role centers on Kubernetes platform engineering, Big Bang deployment and sustainment, Terraform-based Infrastructure as Code, GitOps, and secure CI/CD automation across mission-critical environments.Responsibilities:Deploy, configure, and sustain Kubernetes-based platforms and mission applications using Big Bang, Helm, and GitOps deployment practices.Develop and maintain Terraform-based Infrastructure as Code (IaC) for cloud infrastructure, Kubernetes resources, networking, IAM, and platform services.Build, secure, and optimize CI/CD pipelines for application and infrastructure delivery, including reusable pipeline templates, automated testing, and controlled release promotion.Triage, prioritize, remediate, and validate infrastructure, container, and application security findings in accordance with established vulnerability-management SLAs.Implement and maintain hardened Kubernetes and cloud configuration baselines aligned with DISA STIGs, NIST 800-53, RMF, and organizational security requirements.Manage Kubernetes security controls, including RBAC, network policies, pod security standards, admission controls, secrets management, and secure ingress/egress configurations.Maintain GitOps workflows using Git as the authoritative source for infrastructure and platform configuration; ensure deployed environments remain aligned with approved code.Monitor CI/CD platforms, runners, deployments, and Kubernetes workloads; troubleshoot build, deployment, performance, and availability issues.Develop automated patching, configuration management, and compliance-validation processes to reduce manual effort and configuration drift.Produce security and operational documentation, including architecture diagrams, implementation procedures, scan evidence, remediation plans, and POA&M updates.Support RMF and ATO lifecycle activities by collecting control evidence, addressing assessment findings, and maintaining continuous-monitoring artifacts.Qualifications:Required:U.S Citizen with eligibility for Secret ClearanceAt least 7 years of relevant professional experience with a related degreeStrong experience developing and maintaining Terraform modules and reusable Infrastructure as Code patterns for cloud, network, and Kubernetes resources.Experience implementing GitOps workflows with tools such as Argo CD, Flux, GitLab, GitHub, or similar platforms.3–5 years experience designing and deploying Kubernetes-based solutions; Big Bang is a plus.Experience with CI/CD pipelines, containerization, and secure DevSecOps practices.Strong familiarity with DISA STIGs, RMF, NIST SP 800-53, ATO processes, POA&M management, continuous monitoring, and security compliance evidence generation.Desired:5–10 years of experience in DevSecOps, platform engineering, cloud engineering, SRE, or software delivery roles.Experience with CAC authentication, PIV tokens, and client-side PKI certificate handling.Experience with AWS cloud services, including EKS, IAM, VPC, EC2, S3, Route 53, CloudWatch, load balancers, and security services.Proficiency in Python, Bash, PowerShell, Go, or similar languages for automation, tooling, and operational support.Relevant certifications such as CKA, CKAD, CKS, HashiCorp Terraform Associate, AWS certifications, Security+, CISSP, or CCSP.Experience with ATO/accreditation processes.Familiarity with scanning and compliance tools like RMF, ACAS, Twistlock, Prisma Cloud.Proven ability to work across multi-tenant identity services, supporting thousands of users and integrating with microservices.-What You Can Expect: A culture of integrity.At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.An environment of trust.CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.A focus on continuous growth.Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.Pay Range :There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.Since this position can be worked in more than one location, the range shown is the national average for the position.The proposed salary range for this position is:$98,500-$206,800CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior DevSecOps Engineer
Senior DevSecOps Engineer

CACI International • United States

Remote
USD 99,000 - 207,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

CACI • United States

On-site
USD 120,000 - 180,000
DevSecOps Lead Engineer
DevSecOps Lead Engineer

CACI International Inc. • Stafford (VA)

On-site
USD 82,000 - 172,000
Staff Infrastructure/DevSecOps Engineer
Staff Infrastructure/DevSecOps Engineer

CACI International Inc. • King of Prussia (PA)

On-site
USD 99,000 - 207,000
Senior Infrastructure/DevSecOps Engineer
Senior Infrastructure/DevSecOps Engineer

CACI International Inc. • Aurora (CO)

On-site
USD 90,000 - 190,000
Senior DevSecOps Engineer Chantilly, VA, US
Senior DevSecOps Engineer Chantilly, VA, US

CACI International Inc. • Chantilly (VA), Northern (KY)

Hybrid
USD 113,000 - 238,000
Senior Platform Engineer
Senior Platform Engineer

CACI International Inc. • Denver (CO)

On-site
USD 99,000 - 207,000
DevSecOps Engineer
DevSecOps Engineer

CACI International Inc. • King of Prussia (PA)

On-site
USD 69,000 - 142,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Talentify • King of Prussia (PA)

On-site
USD 82,000 - 172,000
DevOps Engineer
DevOps Engineer

CACI International Inc. • Sterling (VA)

On-site
USD 79,000 - 163,000