Unknown Company

Senior DevSecOps Engineer

mclean, va • Posted Today
Onsite Full Time IT & Technology

  • Technical Leadership & Team Management: Lead, mentor, and manage a team of approximately five DevSecOps engineers, providing technical direction, prioritizing work, conducting code and architecture reviews, and fostering a collaborative, high-performing "one team" culture while remaining an active hands-on contributor.
  • Hands-On Engineering: Serve as the technical lead for complex infrastructure, automation, and deployment efforts by designing solutions, troubleshooting production issues, developing infrastructure and pipeline code, and supporting implementation across the DevSecOps toolchain.
  • Operational Support & On-Call: Provide operational leadership during production incidents, outages, and high-priority events. Participate in an on-call rotation as required, ensuring timely incident response, root cause analysis, and restoration of services while driving continuous improvements to system reliability and operational maturity.
  • AWS GovCloud Architecture & Management: Design, implement, and maintain secure, scalable, and compliant AWS GovCloud environments for DoD and Civilian agency applications.
  • DevSecOps Pipeline Development: Build and optimize CI/CD pipelines using tools like GitLab CI/CD, Jenkins, AWS Code Pipeline, and Terraform to automate deployments and security compliance.
  • Security & Compliance: Ensure adherence to Federal cybersecurity frameworks (e.g., NIST 800-171, NIST 800-53, RMF, FedRAMP, Zero Trust). Implement STIGs, security baselines, and automated security scanning (SAST/DAST).
  • Infrastructure as Code (IaC): Automate infrastructure provisioning and configuration management using Terraform, CloudFormation, and Ansible.
  • Containerization & Orchestration: Deploy and manage Docker containers and Kubernetes clusters in AWS GovCloud, leveraging services like Amazon EKS, ECS, and Fargate.
  • Monitoring & Incident Response: Implement AWS CloudWatch, AWS Security Hub, GuardDuty, Splunk, or ELK for proactive monitoring, logging, and compliance reporting.
  • Automation & Scripting: Develop automation scripts using Python, Bash, or PowerShell to improve deployment efficiency and security enforcement.
  • Collaboration & Knowledge Sharing: Work closely with software developers, cybersecurity teams, and cloud engineers to integrate security and automation into the software development lifecycle (SDLC).

Requirements

  • US citizenship with the ability to obtain a successful DoD Secret security clearance required
  • Security+, AWS Certified Security
  • 7+ years of hands‑on experience in DevSecOps, Cloud Engineering, or Infrastructure Automation roles.
  • Strong expertise in AWS GovCloud services, security configurations, and compliance frameworks.
  • Experience with CI/CD tools (GitLab CI/CD, Jenkins, AWS Code Pipeline, or similar).
  • Hands‑on experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, and Ansible.
  • Proficiency in containerization and orchestration (Docker, Kubernetes, EKS, ECS, Fargate).
  • Strong understanding of AWS security services (AWS IAM, GuardDuty, Security Hub,AWS KMS, AWS WAF, AWS Config, AWS Secrets Manager).
  • Knowledge of federal cybersecurity frameworks (RMF, NIST 800-171/53, STIGs, ZeroTrust).
  • Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management).
  • Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement.

Demonstrates expertise in AWS GovCloud architecture and management, DevSecOps pipeline development, and infrastructure automation using Infrastructure as Code (IaC) tools. Proven ability to lead teams, ensure security compliance, and implement effective monitoring and incident response strategies.

Highest-signal resume keywords

  • AWS GovCloud Architecture
  • DevSecOps Pipeline Development
  • Infrastructure as Code (IaC)
  • Security Compliance Frameworks
  • Team Leadership & Mentoring

ATS Optimization Keywords

Hard Skills

  • DevSecOps
  • Cloud Engineering
  • Infrastructure Automation
  • CI/CD Tools
  • Terraform
  • CloudFormation
  • Ansible
  • Docker
  • Kubernetes
  • Scripting (Python, Bash, PowerShell)

Soft Skills

  • Team Management
  • Collaboration
  • Knowledge Sharing

Certifications & Qualifications

  • Security+
  • AWS Certified Security

Industry Keywords

  • NIST 800-171
  • NIST 800-53
  • RMF
  • FedRAMP
  • Zero Trust
  • STIGs
  • Automated Security Testing

Tools & Technologies

  • GitLab CI/CD
  • Jenkins
  • AWS Code Pipeline
  • AWS CloudWatch
  • AWS Security Hub
  • GuardDuty
  • Splunk
  • ELK

#J-18808-Ljbffr
Back to Job Search