Owning the end-to-end DevSecOps capability, the full-time remote DevSecOps Lead will manage the CI/CD pipeline, infrastructure as code, and security scanning for the CMS Drug Data Processing System (DDPS) and Payment Reconciliation System (PRS), while driving standardization across sprint teams. Key Responsibilities Own the CI/CD pipeline, infrastructure as code, and security scanning across all DDPS/PRS environments Maintain and optimize CI/CD pipelines using CMS enterprise tools such as GitHub, Jenkins/CloudBees, and SonarQube Coordinate security scanning and ATO compliance with tools like Nessus and AWS Inspector Required Qualifications Bachelor's degree in Computer Science or related field; 8+ years in DevOps or DevSecOps, including 4+ years owning CI/CD for a production federal system Hands-on expertise with Jenkins/CloudBees, JFrog Artifactory/XRay, and GitHub Experience with AWS CloudFormation for infrastructure as code across multi-AZ production environments Working knowledge of federal ATO, FISMA, and CMS ARS compliance processes Experience with Bash, Groovy, and YAML scripting in Linux environments
DevSecOps Lead in workfromhome at Unknown Company
This position is listed as full time and able to be worked remotely.