Remote job
DevSecOps Engineer
Job details
About this role
Role overview A senior DevSecOps Engineer is needed to embed security throughout the software development lifecycle for a large federal cybersecurity engineering program. The role focuses on designing automated, repeatable pipelines that harden applications and infrastructure from build through deployment in cloud and on-premises environments. The position supports modernization efforts by applying Lean-Agile and cloud-native principles to continuously deliver secure capabilities.
Responsibilities - Design, build, and optimize CI/CD pipelines that integrate security controls and gates directly into development and deployment workflows. - Automate security testing, vulnerability scanning, configuration management, and compliance checks across the SDLC. - Develop and maintain deployment scripts, infrastructure-as-code, and configuration solutions that consistently apply hardened security baselines. - Support secure build, test, and operational processes for containerized workloads within cloud-native and enterprise environments. - Embed cybersecurity scanning and assessment tools into pipelines so risks are surfaced as early as possible in development. - Produce technical evidence for audits, support remediation of findings with automated corrective actions, and ensure alignment with federal cybersecurity and architecture requirements.
Requirements - Minimum of 10 years of DevSecOps experience, including at least 5 years of cybersecurity and cloud security work at a large government agency of comparable scale. - Deep expertise with CI/CD pipelines, containerization, cloud-native platforms, and modern DevSecOps toolchains. - Strong software development background with hands-on experience using Git or similar version control systems. - Demonstrated experience performing security assessments, vulnerability management, and incident response. - Proven ability to integrate security tooling into delivery pipelines and automate testing plus compliance evidence collection.
Nice to have - Bachelor's degree in cybersecurity, computer science, information systems, information assurance, or a closely related discipline. - One or more advanced certifications such as CISSP, CISM, CISA, CASP+/SecurityX, CCISO, GCED, GCIH, GSLC, CCNP Security, or CISSP concentrations like ISSAP or ISSEP.
Benefits and work setup - Salary range of approximately $98,000–$125,000 USD, depending on experience and other factors. - Comprehensive benefits package including medical, dental, vision, life and disability insurance, 401(k), paid time off, holidays, FSA/HSA, telehealth, and an employee assistance program. - Candidates will be subject to a background investigation and must meet eligibility requirements for access to classified information. - Occasional travel of up to two on-site visits per year may be required.