Site Reliability Engineer / DevSecOps Engineer

openteams

Washington

Hybrid

USD 145,000 - 250,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

OpenTeams is seeking a Site Reliability Engineer / DevSecOps Engineer for hybrid roles in the Washington, DC area, with preferred locations in Denver, CO or Colorado Springs, CO. The role focuses on securing delivery pipelines for AI/ML platforms, including SBOMs, signing, and air-gapped environments. U.S.

citizenship and active clearance are required or highly preferred. The position entails building end-to-end release paths, ensuring compliance evidence is generated automatically, and

Qualifications

  • U.S. citizenship and eligibility to obtain and maintain a U.S. security clearance.
  • 6+ years of experience in DevSecOps, site reliability engineering, platform engineering, or production operations.
  • 3+ years of experience supporting Department of Defense, Intelligence Community, or similarly regulated programs.
  • Hands-on experience packaging or promoting software into classified, air-gapped environments.

Responsibilities

  • Build and operate the CI/CD pipeline that produces versioned, signed release packages with SBOM manifests, hardened container images, deployment runbooks, and validation procedures for each promotion gate.
  • Execute the recurring low-to-high promotion cadence through Government-approved transfer mechanisms, including cross-domain solution submission packages, and verify environment parity after each promotion.
  • Integrate vulnerability management, image signing, dependency scanning, and continuous monitoring into the pipeline so accreditation evidence is generated once and reused at each promotion.
  • Work with the program's security engineers to keep pipeline outputs aligned to the RMF body of evidence.
  • Define and track service level objectives, and build monitoring, logging, and alerting with tools such as Prometheus, Grafana, and OpenTelemetry.
  • Lead incident response and run postmortems to closure.
  • Operate sanitized defect and telemetry feedback paths so issues observed in production environments are reproduced and fixed where the full toolchain is available.
  • Enforce the constraint that platform dependencies are limited to services confirmed available in the target environments, with development-only dependencies gated behind feature flags.
  • Maintain deployment runbooks, validation procedures, and operational documentation to a standard suitable for Government review and for execution by other cleared personnel

Skills

DevSecOps
Site Reliability Eng
Security clearance
RMF compliance

Tools

Prometheus
Grafana
OpenTelemetry

Job description

Who We Are

Every organization runs on intelligence: years of accumulated knowledge, decisions, and context. As AI takes on more of that work, companies face a choice: rent that intelligence from vendors who keep the data, the context, and the results, or own it.

OpenTeams exists to make ownership possible.

Founded by Travis Oliphant, creator of NumPy and SciPy, and built by people with deep roots across the open-source ecosystem, including NumPy, SciPy, PyTorch, and Jupyter, we help enterprises and governments build AI they control, govern, and evolve themselves.

If that sounds like your kind of work, we'd like to meet you.

Site Reliability Engineer / DevSecOps Engineer

Location: Washington, DC; Denver, CO; or Colorado Springs, CO preferred (hybrid). Highly qualified candidates outside these locations may also be considered for unclassified work.

Work Authorization: U.S. citizenship required

Clearance: An active TS/SCI clearance with CI polygraph is strongly preferred. Candidates without an active clearance may be considered for unclassified work but must be eligible to obtain and maintain a U.S. security clearance.

Salary Range: $145,000-$250,000 USD, dependent on experience level and location

About the Role

We're looking for a SRE/DevSecOps Engineer to build and own the secure delivery pipeline for an AI/ML platform deployed into tightly controlled environments. This is a role for someone who treats security as something you build into the delivery path, not something you inspect for at the end of it.

You own the supply chain end to end – pipelines that produce hardened, signed release artifacts with a software bill of materials attached, with scanning, policy enforcement, and secrets handling built into the path rather than bolted alongside it. That path has to survive promotion into isolated and limited-connectivity environments, which means it works when the network doesn't and can prove what it shipped when nobody can reach back to check. It also has to produce the compliance evidence - audit and accreditation artifacts that fall out of the build automatically instead of getting assembled by hand under deadline.

Reliability comes with the territory. Once the platform is deployed, you're part of keeping it healthy: observability, alerting, and incident response are shared work on this team, and the person who built the release path is usually the one who can tell you what changed.

The engineers who do well here have worked inside a formal compliance framework and know the difference between a pipeline that passes a security review and one that produces the review. Experience packaging or promoting software into air-gapped or otherwise disconnected environments matters a lot - it's the part that's hardest to learn on the fly.

This position is contingent upon contract award. Travel of up to 15% may be required, primarily to Government facilities and between company locations. Unclassified work may be performed remotely, while classified promotion and validation activities require onsite work in an accredited facility and the appropriate security clearance.

Key Responsibilities
  • Build and operate the CI/CD pipeline that produces versioned, signed release packages with SBOM manifests, hardened container images, deployment runbooks, and validation procedures for each promotion gate
  • Execute the recurring low-to-high promotion cadence through Government-approved transfer mechanisms, including cross-domain solution submission packages, and verify environment parity after each promotion
  • Integrate vulnerability management, image signing, dependency scanning, and continuous monitoring into the pipeline so accreditation evidence is generated once and reused at each promotion
  • Work with the program's security engineers to keep pipeline outputs aligned to the RMF body of evidence
  • Define and track service level objectives, and build monitoring, logging, and alerting with tools such as Prometheus, Grafana, and OpenTelemetry
  • Lead incident response and run postmortems to closure
  • Operate sanitized defect and telemetry feedback paths so issues observed in production environments are reproduced and fixed where the full toolchain is available
  • Enforce the constraint that platform dependencies are limited to services confirmed available in the target environments, with development-only dependencies gated behind feature flags
  • Maintain deployment runbooks, validation procedures, and operational documentation to a standard suitable for Government review and for execution by other cleared personnel
Required Skills & Experience
  • U.S. citizenship and eligibility to obtain and maintain a U.S. security clearance
  • 6+ years of experience in DevSecOps, site reliability engineering, platform engineering, or production operations
  • 3+ years of experience supporting Department of Defense, Intelligence Community, or similarly regulated programs
  • Hands-on experience packaging or promoting software into classified, air-
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Delivery Lead
Technical Delivery Lead

openteams • Washington, Denver (CO)

Hybrid
USD 145,000 - 250,000
Site Reliability Engineer / DevSecOps Engineer
Site Reliability Engineer / DevSecOps Engineer

OpenTeams • Washington, Denver (CO), Colorado Springs (CO)

Hybrid
USD 145,000 - 250,000
401(k) Match
Unlimited PTO
Fully Remote Setup
+3
Senior Site Reliability Engineer
Senior Site Reliability Engineer

ClearanceJobs • Springfield (VA)

On-site
USD 130,000 - 190,000
SRE & DevSecOps Engineer for Classified AI Platform
SRE & DevSecOps Engineer for Classified AI Platform

OpenTeams • Washington, Denver (CO), Colorado Springs (CO)

Hybrid
USD 145,000 - 250,000
401(k) Match
Unlimited PTO
Fully Remote Setup
+3
Senior DevSecOps & SRE — TS/SCI, On-Site
Senior DevSecOps & SRE — TS/SCI, On-Site

ClearanceJobs • Springfield (VA)

On-site
USD 130,000 - 190,000
Distributed Systems ML Infrastructure Engineer
Distributed Systems ML Infrastructure Engineer

openteams • Washington

Hybrid
USD 145,000 - 250,000
DevSecOps Engineer, Python, CI/CD
DevSecOps Engineer, Python, CI/CD

Jobtailor • Washington

On-site
USD 140,000 - 190,000
DevOps Engineer II
DevOps Engineer II

RiskForce • Northern (KY)

Hybrid
USD 110,000 - 160,000
Staff Site Reliability Engineer, Government
Staff Site Reliability Engineer, Government

sentinellabs • United States

On-site
USD 150,000 - 210,000
Program Manager
Program Manager

openteams • Washington

Hybrid
USD 145,000 - 250,000