DevSecOps Engineer
3B Staffing LLC
Local candidates only- must send documentation with name/address
Candidate MUST be open to onsite interview as final interview What You'll Do:
- Collaborate with a team of engineers to implement Morgan Stanley specific security policies in the CI/CD security tools including but not limited to SAST, DAST and SCA applications.
- Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevOps processes.
- Define the security rules that needs to be adhered to at a code level in web and mobile applications written in Java, React, Objective C, SWIFT, Kotlin etc. - DO NOT NEED TO KNOW , nice to have
- With your development background and security knowledge, provide security guidance to developers in the form secure coding standards and guidelines.
- Support security standards, create templates and patterns to increase the efficiency and adoption of security program. - Good if familiar but they can train them on that
These skills will help you succeed in this role:
- Bachelor's degree with minimum 8 years of work experience in the IT field
- 3+ years software development experience using Java, JavaScript
- 3+ years of experience in the following:
- OWASP Secure Coding Practices - GOOD TO HAVE
- Common software and web application security vulnerabilities
- Application security scanning tools
- Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools (e.g., Jenkins) - Required
- Experience in Python scripting - Required
Even Better If You Have
- A degree in Cybersecurity or CISSP/CSSLP certification or keen desire to move to security field
- Business acumen to support the implementation of SAST or DAST or IAST across the enterprise
- Ability to perform code reviews with minimal assistance
- A self-starter, with a strong desire for learning new technologies and applying them to solve problems
- Experience with two or more of the application build environments like Jenkins, Gradle, Maven.
- Familiarity with public cloud services a plus
- Experience with two or more of the Secure SDLC tools like Burp Suite, Fortify, Checkmarx, AppSec SE, Veracode, WhiteSource, Sonatype
- Experience with Threat Analysis.
- Experience with DevSecOps, Secure SDLC.
- DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
- Experience with evaluation, integration and onboard of security tools such as RASP, WAF, vulnerability scanner results, container analyzers, open source scanning etc is a plus
Candidate MUST be open to onsite interview as final interview What You'll Do:
- Collaborate with a team of engineers to implement Morgan Stanley specific security policies in the CI/CD security tools including but not limited to SAST, DAST and SCA applications.
- Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevOps processes.
- Define the security rules that needs to be adhered to at a code level in web and mobile applications written in Java, React, Objective C, SWIFT, Kotlin etc. - DO NOT NEED TO KNOW , nice to have
- With your development background and security knowledge, provide security guidance to developers in the form secure coding standards and guidelines.
- Support security standards, create templates and patterns to increase the efficiency and adoption of security program. - Good if familiar but they can train them on that
These skills will help you succeed in this role:
- Bachelor's degree with minimum 8 years of work experience in the IT field
- 3+ years software development experience using Java, JavaScript
- 3+ years of experience in the following:
- OWASP Secure Coding Practices - GOOD TO HAVE
- Common software and web application security vulnerabilities
- Application security scanning tools
- Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools (e.g., Jenkins) - Required
- Experience in Python scripting - Required
Even Better If You Have
- A degree in Cybersecurity or CISSP/CSSLP certification or keen desire to move to security field
- Business acumen to support the implementation of SAST or DAST or IAST across the enterprise
- Ability to perform code reviews with minimal assistance
- A self-starter, with a strong desire for learning new technologies and applying them to solve problems
- Experience with two or more of the application build environments like Jenkins, Gradle, Maven.
- Familiarity with public cloud services a plus
- Experience with two or more of the Secure SDLC tools like Burp Suite, Fortify, Checkmarx, AppSec SE, Veracode, WhiteSource, Sonatype
- Experience with Threat Analysis.
- Experience with DevSecOps, Secure SDLC.
- DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
- Experience with evaluation, integration and onboard of security tools such as RASP, WAF, vulnerability scanner results, container analyzers, open source scanning etc is a plus
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the DevSecOps Engineer in Arlington, VA vacancy
$80k - $175k
OverviewThe AI Strike team is creating mission critical AI Applications. As a DevSecOps Engineer you will work with AI Engineers, Application Engineers, and Data Scientist to make the AI Applications we are creating Production ready. This includes application security...Suggested$62k - $141k
DevSecOps EngineerThe Opportunity:As a DevOps engineer, you know how to set up cloud environments and provision computer networking, storage, and virtual networks, ultimately, how to “harness the cloud.” We’re looking for a DevOps infrastructure engineer like you to support...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$107.93k - $188k
...Join Deloitte’s Government & Public Services practice as a DevSecOps-focused Senior Consultant, Enterprise Security. In this role,... ...scanning, and secrets detectionSupporting cloud and platform engineering teams with secure configuration, infrastructure as code, container...SuggestedLocal area$77.6k - $176k
DevSecOps EngineerThe Opportunity:Modern engineering teams rely on secure, automated delivery pipelines and cloud-hosted DevSecOps platforms to deliver software quickly, reliably, and securely. As a DevSecOps Engineer, you will design, build, harden, and operate CI/CD...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$170k - $193k
As a Sr. DevSecOps Engineer II, you’ll design, implement, and sustain secure, automated CI/CD pipelines and infrastructure across hybrid on‐premises and cloud environments. This role integrates security controls directly into DevOps workflows, enabling continuous compliance...SuggestedFull timeLocal area$125k
Computer Technologies Consultants (CTC) is seeking a DevSecOps Engineer to support the Congressional Budget Office (CBO) in Washington, DC. With offices in Washington DC and San Diego, CA, CTC is a leading technology company providing lifecycle IT, data analytics, cloud...Full timeContract workFor contractorsWork at officeLocal areaRemote work$180k - $200k
...sponsorship or working under a temporary visa status (e.g., H-1B, L-1, F-1, OPT, CPT, etc.) are not eligible for this role.As a Senior DevSecOps Engineer, you will play a crucial role in integrating security practices into the DevOps pipeline. You will be responsible for...Permanent employmentTemporary workH1bVisa sponsorshipWork visa$212.5k - $287.5k
...Lead DevSecOps Systems EngineerHelp us simplify the complex as a Lead DevSecOps Systems Engineer at GDIT, where we tailor advanced cloud solutions to critical client missions. In this role, your priority will be engineering seamless, secure platform experiences for our...Remote workFlexible hours- ...This is a hybrid role (3 days per week) to Rohirrim's headquarters in McLean, VA and client sites We are looking for a DevSecOps Engineer to join our team and help us build and maintain our Azure DevOps cloud application with an API backend. The ideal candidate should...3 days per week
- ...DevSecOps Engineer US Citizenship and the ability to obtain Public Trust is required 100% remote W2 only, no C2C Responsibilities/Requirements: • Implement and maintain modern DevSecOps practices, including secure CI/CD pipelines, automated build and deployment...Full timeLocal areaRemote work
- ...security evidence for Authority to Operate (ATO) processes Build security into delivery through shift-left practices Use AI-assisted engineering tools such as Amazon Q Developer across the lifecycle Develop new capabilities, tools, and lines of business for the firm...Shift work
- ...Junior DevSecOps Engineer - AWS BizTech Fusion is hiring for this position for one of its clients. Location: Reston, Virginia / Washington, D.C. Work Arrangement: Hybrid - 2-3 days per week onsite Job Type: Contract Experience: 3+ years of DevOps/DevSecOps experience...Contract work2 days per week3 days per week
- ...AI-Native Readiness Application Engineer Virtualitics is the category leader in AI-native readiness applications for defense, government... ..., Engineering, or related field. ~5+ years of experience in DevSecOps, DevOps, or cloud security engineering. ~ Advanced AWS...Remote workFlexible hoursShift work
- ...Senior DevSecOps Engineer We are seeking a highly skilled and motivated Senior DevSecOps Engineer to join our team in a hybrid capacity, supporting a key Randstad client in the DC area. In this critical role, you will be responsible for leading the integration of security...
- ...BLN24 in McLean, Virginia is seeking a Junior DevSecOps Engineer to assist in modernizing a mission-critical forecasting system. The role involves building and maintaining GitLab CI/CD pipelines, managing AWS infrastructure, and working with Docker and Kubernetes for...Remote work
- ...growth, and winning ideas. Military Veterans Encouraged to Apply. Job Description: We are seeking a highly skilled DevSecOps Engineer to support the U.S. Department of Veterans Affairs (VA) under the T4NG2 contract vehicle. This role will be part of an agile...Contract workFor contractorsRemote work
- ...DevSecOps Engineer Ardent is seeking a DevSecOps Engineer to support infrastructure automation, secure software delivery, CI/CD pipeline development, container orchestration, and security integration activities within a hybrid cloud environment. This role will work...Local areaShift work
- ...Job Title: Junior DevSecOps Engineer Company: BLN24 About Us: We find strength in teamwork-a better you is a better us. BLN24 is an award-winning Management Consulting Firm that supports the U.S. Federal Government in successfully achieving their mission and goals. Our...Remote work
$140k - $196k
...Devsecops Automation EngineerCydecor is a premier federal government solutions provider, delivering differentiated innovations in mission... ..., what separates us.Cydecor is seeking a DevSecOps Automation Engineer to implement secure, automated development and deployment...Temporary work$140k - $155k
...to their community while being profitable. We're an award-winning IT solutions provider to the Federal government seeking a DevSecOps Engineer to join our project team. This Position Description (PD) is for an experienced DevSecOps Engineer to help design, develop...Full timeFor contractorsRemote work- ...We have an urgent opening for a highly experienced Senior DevSecOps Engineer to support federal workloads operating in AWS GovCloud. This hybrid position focuses on DevSecOps best practices, cloud automation, security and regulatory compliance, and CI/CD engineering to...
- ...team thrives on turning tricky problems into solutions that are practical, accessible and performant. About This Position DevSecOps Engineers at BLEN play a pivotal role in our modernization program, implementing and maintaining robust Continuous Integration/...
- ...DevSecOps Engineer Location: Hybrid, periodic onsite presence (approximately 1-2 days/month) in Crystal City, VA The Role You'll be at the forefront of delivering DevSecOps for solutions that directly impact our clients' law enforcement mission. You'll work with...Flexible hours
$97k - $192k
...The DevSecOps Engineer will maintain and operate the WDP DevSecOps factory and its associated automated pipelines. This person will integrate security into every phase of the software lifecycle, manage the continuous integration and continuous deployment (CI/CD) processes...Full timeContract workTemporary workWork at officeVisa sponsorshipWork visa$120k - $160k
...Job Description Description SAIC has an opportunity for a DevSecOps Engineer to integrate security into the software development and delivery lifecycle. This role will design, implement, and operate secure CI/CD pipelines, cloud infrastructure, automation...2 days per week- ...DevSecOps Engineer Randstad is seeking a skilled DevSecOps Engineer to support a key client in Washington, DC. This role will focus on building secure, scalable, and efficient CI/CD pipelines with an emphasis on automation, security tooling integration, and developer...
$220k - $230k
...GovCIO is currently hiring a DevSecOps Engineer with an active Secret clearance to integrate security practices into software development and infrastructure operations by automating secure delivery pipelines, compliance controls, vulnerability management, and deployment...Currently hiringRemote work- ...DevSecOps Engineer Seeking a DevSecOps Engineer to integrate security into the software development and delivery lifecycle. This role will design, implement, and operate secure CI/CD pipelines, cloud infrastructure, automation, and security controls that enable development...
$125k - $200k
...DevSecOps Technical SETASystems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security... ...out of Arlington, VA.ResponsibilitiesThe Technical SETA (Engineer/Scientist/Mathematician) will support DARPA I2O with high assurance...Work at officeImmediate startFlexible hours$120k - $140k
...DevSecOps Engineer(REMOTE) ROLE We need an experienced DevSecOps Engineer at the U.S. Securities and Exchange Commission (SEC). The SEC's Division of Corporation Finance reviews public company filings to ensure investors are provided with the material information...Full timeContract workWork at officeRemote workRelocationRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to DevSecOps Engineer. Be the first to apply!

