Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

DevSecOps Security Engineer

$191.25k - $258.75k
Full-time

Gdit

Type of Requisition: Regular

Clearance Level Must Currently Possess:

None

Clearance Level Must Be Able to Obtain:

None

Public Trust/Other Required:

BI Full 6C (T4)

Job Family:

Cyber and IT Risk Management

Job Qualifications:

Skills:

AWS Cloud Computing, CI/CD, DevSecOps

Certifications:

None

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

DevSecOps Security Engineer

Help us simplify the complex as a DevSecOps Security Engineer at GDIT, where we tailor advanced cloud security solutions to critical client missions. In this role, your priority will be engineering automated, secure compliance and vulnerability-management workflows for our program, while we focus on supporting your professional growth.

Our work on the AED program depends on a senior security engineer who has managed the security portion of a DevSecOps pipeline operating under a continuous ATO (cATO). You’ll leverage a modern stack, including AWS GovCloud security services, Terraform, and CI/CD pipeline tooling, to shift our security posture from reactive to proactive across a highly secure, automated environment.

HOW A DEVSECOPS SECURITY ENGINEER WILL MAKE AN IMPACT:

  • Architect and automate security workflows across our CI/CD pipeline and compliance operations, reducing manual effort in vulnerability scan analysis, security inventory auditing, and continuous monitoring reporting.
  • Partner with development and platform teams to integrate, automate, and monitor security tool components (scan ingestion, finding triage, evidence generation) within automated pipelines.
  • Build automation for compliance and ATO artifacts, including continuous monitoring reports, SPIAs, and control evidence mapping against NIST 800-53 / 800-171.
  • Perform automated inventory delta analysis and drift detection across cloud accounts to maintain an accurate, auditable security posture.
  • Champion DevSecOps culture by mentoring junior/mid-level engineers, educating teams on modern security tooling, and resolving complex configuration or performance issues.
  • Leverage Generative AI engineering tools (such as Claude, Gemini, Copilot) to accelerate the development of security automation, compliance reporting, and Infrastructure as Code (IaC) scanning workflows.
  • Define guidelines and standards for securing AWS Cloud and container environments, implementing advanced solutions for system security, logging, and audit correlation.
  • Drive engineering excellence by guiding the preparation of comprehensive technical documentation, processes, and procedures.

WHAT YOU’LL NEED TO SUCCEED:

Technical Expertise:

  • Continuous ATO Pipeline Security (Required): Direct, hands-on experience managing the security portion of a DevSecOps pipeline in a continuous ATO (cATO) environment. Candidates must have owned automated security gates, control evidence, and compliance posture within a live continuous-authorization pipeline, not point-in-time ATO or general DevOps exposure.
  • Education & Experience: BA/BS Degree and 8+ years of relevant experience (or an equivalent combination of education and experience).
  • Compliance Automation: Hands-on automation of compliance workflows: scan ingestion, finding triage, evidence generation, and continuous monitoring reporting.
  • Cloud Security Tooling: Familiarity with AWS GovCloud security services (Security Hub, Inspector, GuardDuty, Config) and centralizing/correlating their findings, along with scanning and monitoring tooling such as Qualys, CrowdStrike, Nexus/Sonatype, SonarQube, and Datadog.
  • Infrastructure as Code Security: Experience building and scanning IaC (Terraform, CloudFormation) for security and compliance.
  • Standards & Frameworks: Background in NIST 800-53 or 800-171 control implementation and evidence mapping; familiarity with FedRAMP and IAM.
  • Scripting/Development: Strong proficiency in automation scripting (Python, Bash, or similar) for building internal security tooling; Linux/Unix administration (RHEL or CentOS preferred).
  • Compliance: Active Security+ Certification (or equivalent DoD 8570/8140 baseline).

Leadership & Professional Skills:

  • Team Leadership Potential: Demonstrated capability or strong desire to mentor junior/mid-level engineers, drive technical consensus, and serve as a technical anchor for the team.
  • Problem Solving: Exceptional critical thinking skills with a proven track record of delivering simple, elegant solutions to highly complex security and compliance problems.
  • Communication: Highly effective communication and collaboration skills, with the ability to bridge technical concepts between development teams and program stakeholders.
  • Growth Mindset: A strong commitment to continuous learning, engineering best practices, and driving process improvements.

Preferred Background:

  • Prior experience at a company that builds security products or DevSecOps tooling for software development, with a focus on cyber automation.
  • Experience with continuous monitoring automation and proactive compliance posture management.
  • Experience supporting a security audit cadence and evidence collection at scale.
  • Exposure to security analytics platforms (e.g., Databricks) for correlating and analyzing security telemetry at scale.

GDIT IS YOUR PLACE:

  • True Work-Life Autonomy: Enjoy a full-flex work week designed to give you ownership over your personal and professional priorities.
  • Total Well-being: Comprehensive health, dental, vision, and wellness packages to support you and your family.
  • Invested in Your Wealth: A robust 401(k) program with a competitive company match.
  • Continuous Technical Evolution: Access to paid advanced certifications, higher education, and dedicated professional growth opportunities to keep your skills sharp.
  • Internal Career Mobility: A dedicated internal talent team focused entirely on helping you navigate and advance your career path within GDIT.
  • Scale & Innovation: Work with complex, mission-critical technologies and modern infrastructure frameworks that make a tangible impact.
  • Rest & Recharge: Generous paid vacation, floating holidays, and time off to ensure you maintain peak performance.
The likely salary range for this position is $191,250 - $258,750. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

Less than 10%

Telecommuting Options:

Remote

Work Location:

Any Location / Remote

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the DevSecOps Security Engineer in Remote vacancy
  •  ...Info Gain Consulting is seeking an exceptional DevSecOps Engineer to join our team to support the Congressional Budget Office IT support – Sentry...  ...cloud environments. Responsibilities include building secure CI/CD pipelines with GitHub Actions, implementing SAST and secret... 
    Suggested
    Contract work
    Temporary work
    Work at office
    Remote work

    Info Gain Consulting

    Virginia, MN
    2 days ago
  •  ...providing services that help the government ensure the well being and support of U.S. citizens. Job Description DevSecOps Security Engineer Help us simplify the complex as a DevSecOps Security Engineer at GDIT, where we tailor advanced cloud security solutions... 
    Suggested
    Flexible hours
    Shift work

    General Dynamics Information Technology

    Remote
    1 day ago
  • Dev Technology is seeking a Lead Security Engineer to oversee application security in a cloud-native federal modernization program. This role...  ...of security principles, including Zero Trust and DevSecOps, ensuring that security is integrated throughout the development... 
    Suggested
    Remote job
    Flexible hours

    Dev Technology

    Suitland, MD
    4 days ago
  •  ...tech company in Plano, TX is seeking an experienced Application Security Analyst to enhance security within DevOps practices. This role...  ...has over 8 years of experience in DevOps and security engineering, holds a degree in Computer Science or Cybersecurity, and is proficient... 
    Suggested
    Remote work

    IVID TEK INC

    Plano, TX
    4 days ago
  • $160k - $185k

     ...a related discipline, along with 3+ years of DevOps/security experience and 1–2 years in DevSecOps. We expect Security+ or an equivalent certification...  ...CISSP, CISM, AWS Security Specialty, Azure Security Engineer, or CKS. We look for experience typically reflected... 
    Suggested
    Full time
    Remote work
    Monday to Friday

    X-energy

    Rockville, MD
    4 days ago
  • $191.25k - $258.75k

     ...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a DevSecOps Security Engineer based in the United States. This is a senior-level security engineering role focused on building secure, automated... 
    Remote job
    Full time
    Flexible hours

    jobgether

    United States
    15 hours ago
  •  ...enterprise software architectures that support the bank’s information security operations functions. This role performs feedback and...  ...bank. The position serves as a technical resource for security engineering initiatives, applying advanced knowledge to evaluate, build, and... 
    Remote work

    WesBanco

    Pittsburgh, PA
    4 days ago
  • $178.4k - $226.7k

    AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds... 
    Internship
    Remote work
    Flexible hours

    Amazon

    Arlington, VA
    23 hours ago
  • $165k - $242k

     ...CRWV) in March 2025. Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people...  ..., this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls... 
    Permanent employment
    Full time
    Temporary work
    For contractors
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    4 days ago
  • Position: Senior Security Engineer - PKI & Detection, Aircraft SecurityLocation: Fort Worth Texas (Hybrid - onsite Tuesday through Thursday; remote Monday and Friday)Duration: ContractJob ID: 178660Job Overview:We are seeking a Senior Security Engineer to support aircraft... 
    Full time
    Remote work
    Monday to Friday

    Pinnacle Group

    Fort Worth, TX
    1 day ago
  • $107.93k - $188.9k

    Position Summary Deloitte’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM... 
    Remote work

    Deloitte

    Baltimore, MD
    3 days ago
  • $234.4k - $385k

     ...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are...  ...engaging a robust security culture. About the RoleAs a Security Engineer, Application Security you will be responsible for identifying and... 
    Work at office
    Remote work
    Relocation package
    Flexible hours

    OpenAI

    San Francisco, CA
    3 days ago
  • $159.3k - $212.8k

    The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions... 
    Internship
    Flexible hours

    Amazon

    New York, NY
    3 days ago
  • $210k - $260k

     ...journey toward becoming the world's top retail-focused trading platform in the world. What you'll do:We're looking for aStaff Security Engineer, Application Security to help scale and mature our security program. You'll own key security domains and initiatives end-to-end... 
    Work at office
    Remote work
    Worldwide
    Monday to Friday
    Flexible hours

    NinjaTrader Group

    Chicago, IL
    1 day ago
  • Title:Associate Security Engineer, Identity SecurityKBR is seeking an Associate Security Engineer to join our Identity Security Services team within a global cybersecurity organization supporting complex, highly regulated enterprise environments. This hands-on role provides... 
    Permanent employment
    Full time
    Local area
    Remote work

    KBR

    Houston, TX
    1 day ago
  •  ...colleagues. Those stories are part of what makes this such a special place to work.Job OverviewMacy’s is seeking a Staff Information Security Engineer to join its Cloud Security team. This position plays a pivotal role in designing, implementing, and operating secure solutions... 
    Work experience placement
    Flexible hours
    Shift work

    Macy's

    Georgia
    4 days ago
  •  ...workflow automation with Moveworks’ Reasoning Engine and natural language capabilities, we...  ...everyone.Job DescriptionThe Moveworks Security team at ServiceNow is not looking for a...  ...across IT, Security Engineering, DevOps, DevSecOps, Compliance, Cloud, and Infrastructure... 
    Work at office
    Remote work
    Flexible hours

    Moveworks

    Mountain View, CA
    23 hours ago
  •  ...omputational Physics, Inc. (CPI) is looking for a Full-Time Software Engineer / DevSecOps Engineer to support our customers at USNO, Washington, DC....  ...with strong software development fundamentals and a security-first mindset is sought to join a growing engineering team.... 
    Full time
    For contractors
    Work at office
    Flexible hours

    Computational Physics, Inc.

    Remote
    23 hours ago
  •  ...goals of our clients.   Position Title: Web Developer Security Engineer   Location: US Congressional Budget Office Ford House...  ...: Extensive hands-on secure software development, DevSecOps automation, and vulnerability remediation. Proficiency in... 
    Remote job
    Full time
    Work at office
    Local area

    CMT SERVICES, Inc.

    Remote
    23 hours ago
  •  ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental... 
    Full time
    Work at office
    Remote work

    Logical Systems

    Golden, CO
    23 hours ago
  •  ...federal government’s most critical national security and defense priorities, helping protect...  ...is seeking a  Web Developer Security Engineer to join our team. This position is based...  ...detection, incident response, and DevSecOps initiatives. Responsibilities and Duties... 
    Full time
    Local area
    Remote work
    Flexible hours

    Ardentmc

    Washington DC
    23 hours ago
  • $190.8k - $267.1k

     ...internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. Reddit is hiring a Senior Security Engineer, AI Security to help teams build and ship AI-powered products securely. This role combines product security judgment with hands... 
    For contractors
    Work experience placement
    Remote work

    Reddit

    United States
    3 days ago
  •  ...Job Description Fragomen is seeking a Security Engineer - Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh. Our industry-leading, immigration specific software and supporting infrastructure is undergoing... 
    Local area
    Remote work

    Fragomen, Del Rey, Bernsen & Loewy, LLP

    United States
    3 days ago
  • $100k - $200k

     ...no investment capital, Trail of Bits is the premier place for security experts to boldly advance security and address technology's newest...  ...in the fight against attackers. Our research-based and custom-engineering approach ensures that our client's capabilities are at the... 
    Full time
    Contract work
    Remote work
    Work from home
    Home office
    Relocation package

    Trail of Bits

    United States
    3 days ago
  • $100k - $110k

     ...Requirements: We require a bachelors degree in information security or another computer-related discipline, or an equivalent mix of...  ...integrity, and availability while aligning with our standards. We engineer, implement, and deploy advanced security solutions across the... 
    Full time
    Temporary work
    Remote work
    Flexible hours

    WesBanco Bank, Inc.

    Bowie, MD
    4 days ago
  •  ...About The Role We're hiring a Senior Security Engineer, Corporate Security to own the security of our internal systems, endpoints, and enterprise tooling. You'll harden the systems our team relies on every day: laptops, identity, SaaS, the corporate environment - and... 
    Full time
    Flexible hours

    Cogent Security

    Remote
    22 days ago
  • $100k - $300k

     ...providing the research horsepower needed to make truly agentic security workflows a reality. Since coming out of stealth, Cogent has...  ..., Zscaler About The Role We're hiring a Senior Security Engineer, Product Security to own the security of the software we build... 
    Full time
    Flexible hours

    Cogent Security

    Remote
    2 days ago
  •  ...What will you do? We are looking for a Senior Security Engineer to own and drive Corporate Security at Atlan. This is a senior individual...  ...Familiarity with IaC (Terraform), CI/CD pipelines , and DevSecOps practices as they apply to corporate infrastructure Mobile... 
    Full time
    Remote work

    Atlan

    Remote
    25 days ago
  • $107.93k - $188.9k

    Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert... 
    Remote work

    Deloitte LLP

    Washington DC
    19 days ago
  • $200k - $255k

     ...Security Engineer We are seeking an experienced Security Engineer with expertise in corporate security to join our team. As a strategic partner, you will make an immediate impact by leveraging your expertise across identity, endpoint, network, and information security... 
    Odd job
    Contract work
    Immediate start
    Remote work

    Private Tech

    United States
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to DevSecOps Security Engineer. Be the first to apply!