DevSecOps Engineer
$120k - $130kWilcore Technologies
We are hiring a DevSecOps to support a pivotal federal program making a positive impact on millions of Americans' daily lives.
This is a hands-on engineering role for someone who can combine DevSecOps expertise with practical cybersecurity and remediation experience. The DevSecOps/Security Engineer will collaborate closely with engineers, security teams, product leadership, and external stakeholders to strengthen the program's cloud infrastructure, automate secure development practices, address security findings, and achieve and maintain an Authorization to Operate (ATO). What You'll Be Doing- Design, implement, maintain, and document secure CI/CD pipelines using modern DevSecOps practices.
- Develop and maintain Infrastructure as Code (IaC) solutions using AWS CloudFormation.
- Build, configure, secure, and support AWS environments and serverless computing services.
- Integrate security controls, vulnerability scanning, and automated compliance checks throughout the software development lifecycle.
- Establish vulnerability patching and remediation plans and work directly with engineers to resolve identified findings.
- Develop and execute actionable Plans of Action and Milestones (POA&Ms), including priorities, owners, dependencies, target completion dates, and measurable milestones.
- Proactively track POA&M progress, identify blockers, and communicate changes to projected remediation timelines.
- Assess new security findings as they are identified and determine their scope, severity, ownership, dependencies, and required remediation actions.
- Identify duplicate, overlapping, inherited, or externally owned findings to prevent unnecessary remediation efforts.
- Determine when findings are outside the program's control or result from externally imposed technical constraints and coordinate appropriate risk-acceptance or disposition requests.
- Develop level-of-effort estimates for core program POA&Ms and help prioritize remediation activities based on risk, effort, dependencies, and operational impact.
- Maintain an accurate, real-time dashboard or tracker for security findings, POA&Ms, remediation activities, risks, dependencies, owners, and target dates.
- Conduct or support Security Impact Assessments (SIAs) for proposed system, infrastructure, application, and configuration changes.
- Support activities required to achieve and maintain an ATO while ensuring program operations adhere to applicable federal software-development and cybersecurity requirements.
- Help reduce the program's administrative and operational burden associated with managing ATOs and POA&Ms through automation, documentation, and repeatable processes.
- Implement Zero Trust best practices, including data tagging and other mechanisms that improve data tracking, classification, and sensitivity management.
- Collaborate with DevOps engineers to establish secure, modern development and data-science environments.
- Engage proactively with developers, infrastructure engineers, security personnel, product owners, program leadership, and external stakeholders to drive findings through resolution.
- Create and maintain technical documentation, remediation evidence, operating procedures, implementation plans, and security-related artifacts.
- Support and secure Linux-based development and production environments.
- Investigate Docker containers, container images, configurations, dependencies, and potential security vulnerabilities.
- Participate effectively in an Agile software-development environment.
- Perform other related duties as assigned.
- Hands-on experience designing, developing, and supporting CI/CD pipelines.
- Experience with GitHub Actions, AWS CloudFormation, Amazon CloudWatch, or comparable technologies.
- Experience creating, configuring, and supporting AWS services, including ECS, S3, RDS, and Lambda.
- Experience developing and improving CI/CD scripts and automated services supporting software development and deployment.
- Experience identifying, assessing, prioritizing, and remediating infrastructure, application, container, and cloud-security vulnerabilities.
- Demonstrated experience developing vulnerability-patching and remediation plans.
- Experience managing or supporting POA&Ms, including defining corrective actions, owners, dependencies, milestones, target dates, and closure evidence.
- Ability to translate security findings into practical engineering tasks and work directly with technical teams through remediation and closure.
- Experience supporting ATO activities, Security Impact Assessments, or federal security-authorization processes.
- Knowledge of federal cybersecurity and secure software-development requirements.
- Experience with Infrastructure as Code and configuration-management practices.
- Experience supporting and securing Linux-based environments.
- Experience working with Docker and investigating container configurations and vulnerabilities.
- Understanding of Zero Trust principles and their application within cloud-based environments.
- Strong organizational skills and the ability to manage multiple security findings, remediation activities, dependencies, and deadlines simultaneously.
- Ability to develop realistic plans of action and level-of-effort estimates in an environment where requirements and priorities may change.
- Strong analytical skills, including the ability to identify duplicate findings, ownership boundaries, inherited risks, and external dependencies.
- Proactive communication skills and the ability to engage engineers, security teams, program leaders, and external stakeholders without waiting for issues to escalate.
- Ability to maintain accurate dashboards, trackers, documentation, and status reports.
- A collaborative mindset and the ability to work successfully with multidisciplinary teams of developers, engineers, managers, security professionals, and product managers.
- A security-first mindset and the ability to keep infrastructure, application, and data security at the forefront of engineering decisions.
- Experience working as part of an Agile software-development team.
- Experience supporting federal government systems or programs.
- Experience working with federal security frameworks, authorization requirements, and continuous-monitoring processes.
- Experience supporting ATO maintenance and POA&M remediation in an AWS cloud environment.
- Familiarity with federal Zero Trust initiatives and data-classification or data-tagging practices.
- Experience implementing automated security testing, vulnerability scanning, compliance validation, or policy enforcement within CI/CD pipelines.
- Applicants must be authorized to work in the United States.
- In alignment with federal contract requirements, certain positions may require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or security clearance.
- Hands-on experience designing, developing, and supporting CI/CD pipelines.
- Experience with GitHub Actions, AWS CloudFormation, Amazon CloudWatch, or comparable technologies.
- Experience creating, configuring, and supporting AWS services, including ECS, S3, RDS, and Lambda.
- Experience developing and improving CI/CD scripts and automated services supporting software development and deployment.
- Experience identifying, assessing, prioritizing, and remediating infrastructure, application, container, and cloud-security vulnerabilities.
- Demonstrated experience developing vulnerability-patching and remediation plans.
- Experience managing or supporting POA&Ms, including defining corrective actions, owners, dependencies, milestones, target dates, and closure evidence.
- Ability to translate security findings into practical engineering tasks and work directly with technical teams through remediation and closure.
- Experience supporting ATO activities, Security Impact Assessments, or federal security-authorization processes.
- Knowledge of federal cybersecurity and secure software-development requirements.
- Experience with Infrastructure as Code and configuration-management practices.
- Experience supporting and securing Linux-based environments.
- Experience working with Docker and investigating container configurations and vulnerabilities.
- Understanding of Zero Trust principles and their application within cloud-based environments.
- Strong organizational skills and the ability to manage multiple security findings, remediation activities, dependencies, and deadlines simultaneously.
- Ability to develop realistic plans of action and level-of-effort estimates in an environment where requirements and priorities may change.
- Strong analytical skills, including the ability to identify duplicate findings, ownership boundaries, inherited risks, and external dependencies.
- Proactive communication skills and the ability to engage engineers, security teams, program leaders, and external stakeholders without waiting for issues to escalate.
- Ability to maintain accurate dashboards, trackers, documentation, and status reports.
- A collaborative mindset and the ability to work successfully with multidisciplinary teams of developers, engineers, managers, security professionals, and product managers.
- A security-first mindset and the ability to keep infrastructure, application, and data security at the forefront of engineering decisions.
- Experience working as part of an Agile software-development team.
- Experience supporting federal government systems or programs.
- Experience working with federal security frameworks, authorization requirements, and continuous-monitoring processes.
- Experience supporting ATO maintenance and POA&M remediation in an AWS cloud environment.
- Familiarity with federal Zero Trust initiatives and data-classification or data-tagging practices.
- Experience implementing automated security testing, vulnerability scanning, compliance validation, or policy enforcement within CI/CD pipelines.
- Applicants must be authorized to work in the United States.
- In alignment with federal contract requirements, certain positions may require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or security clearance.
Salary Description
$120,000.00 - $130,000.00
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the DevSecOps Engineer in United States vacancy
$75k - $156k
...challenges with a promise of delivering successful and usable solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our multidisciplinary teams of engineers and scientists work in a collaborative...SuggestedFull timeLocal area- AV is seeking a DevSecOps Engineer to support a rapidly growing program developing a cloud native product for a government customer. The ideal candidate will drive how the product deploys, verifies, and monitors applications and services. This person will interface with...SuggestedFull timeWork experience placementShift work
$136.75k - $218.8k
...demand professional development resources that allow you to hone existing skills and learn new ones “I can succeed as a Senior DevSecOps Engineer at Capital Group.”As a Senior DevSecOps Engineer within the Application Security team, you’ll support, secure, manage and...SuggestedFull timeTemporary workWork at officeLocal areaFlexible hoursShift work3 days per week$116k - $145k
...applications through September 27, 2026 or until filled.--- --- ---DevSecOps EngineerSecure the systems that keep innovation moving.At Gogo... ...systems and support continued growth.As our DevSecOps Engineer, you'll help design, implement, and maintain the security controls...SuggestedFull timeTemporary workImmediate start$80k - $175k
OverviewThe AI Strike team is creating mission critical AI Applications. As a DevSecOps Engineer you will work with AI Engineers, Application Engineers, and Data Scientist to make the AI Applications we are creating Production ready. This includes application security...Suggested$77.6k - $176k
DevSecOps Engineer, SeniorThe Opportunity:DevOps engineering requires a specific mix of development, engineering, and communication skills. As a DevOps engineer, you know that these skills create efficiency and effectiveness—so you can quickly deliver the best solutions...Full timeContract workPart timeWork at officeLocal areaRemote work$77.5k - $176k
DevSecOps Engineer, SeniorThe Opportunity:Modernizing digital infrastructure in classified environments demands engineers who can build secure enterprise platforms, operate them reliably, and elevate the teams that depend on them. As a Senior DevSecOps Engineer, you will...Full timeContract workPart timeWork at officeLocal areaRemote work$100k - $140k
As a DevSecOps Engineer with MTSI, you will be responsible for aiding in solutioning, implementing, and sustaining CI/CD and DevSecOps technologies. You will be responsible for ensuring CI/CD security posture meets any requirements. You will aide in the decomposition of...Full timeContract workRemote work$50 per hour
...FullTimeDepartment: MFC-PrimaryBusiness Unit: MFC-PrimaryStandard Job DescriptionLockheed Martin’s Software Factory, a leader in DevSecOps-driven software engineering serving the aerospace and defense sectors. The Lockheed Martin Software Factory delivers customized solutions to...Full timeTemporary workWork experience placementInterim roleCasual workFlexible hours$50 per hour
...the military’s green power initiatives. As a Senior Software Engineer at MFC, you will join one of the largest networks of software... ...career! What You Will Be DoingWe are seeking a highly skilled DevSecOps software developer to join our team. The successful candidate...Full timeTemporary workWork experience placementCasual workWorldwideFlexible hours$69.1k - $141.5k
Job Title: DevSecOps EngineerJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee... ...and Sensor Technologies group is seeking a talented DevSecOps Engineer to join our team supporting one of our primary programs...Contract workWork experience placementFlexible hours$87.1k - $157.45k
DevSecOps EngineerOklahoma City, OKTS/SCI ClearanceThe Defense Sector at Leidos is looking for a DevSecOps Engineer to support a fast-paced program with the Air Force Life Cycle Management Center. The Mid-Level DevSecOps Engineer will enhance the integration of security...Full time- ...active U.S. Government Security Clearance at the TS/SCI with CI poly level.Unlock your future with Vantor! We need a Senior DevSecOps Engineer with on-prem and cloud expertise to support efforts to manage our new infrastructure platform. Join our operations, software,...Permanent employmentFull time
- ...intersection of advanced mathematics, computer science, physics, and engineering. Our people are leaders in their technical fields and are... ...settings. Job Description: Our Reston, VA office is seeking a DevSecOps Engineer to help secure and improve software delivery across...For contractorsWork at office
- ...United States Defense and Intelligence Communities to support national security.Rincon Research Corporation is looking for a DevSecOps Engineer to develop advanced secure cloud computing solutions for complex national security and defense challenges in signal processing...Temporary workRemote workFlexible hours
- ...Centers, we continuously refine our methods, ensuring we remain industry leaders.We are Sparksoft!ROLE & RESPONSIBILITIES:The DevSecOps Engineer implements, automates, secures, and maintains the cloud infrastructure, CI/CD pipelines, and operational environments...Work at officeImmediate startFlexible hours
- ...bring improved capabilities to our undersea forces. Analysts and Engineers supporting Director Submarine Program will continue SPA’s... ...era of renewed strategic competition. #MCSPA has a need for a DevSecOps Engineer in Philadelphia, PA, contingent on contract award. #MCResponsibilitiesThe...Contract workWork at office
$113.2k - $237.8k
Job Title: Senior DevSecOps EngineerJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee... ...optimization. As a DevOps / Infrastructure / DevSecOps Engineer on an AWS-based, Kubernetes-native environment, you will:...Contract workWork experience placementFlexible hours- ...a)(3).Please review the job details below.Vantor is seeking a DevSecOps in Herndon, VA!Principal Responsibilities:Design, implement and... ...(cloud and local virtualized). Work with software and system engineers to apply automated test and documentation processes. Generate...Full timeLocal area
- DescriptionSAIC is looking for a full-time onsite DevOps / DevSecOps Engineer to join our team in Hampton, VA in support of the Air Operations Center Weapons System (AOC WS) Falconer Program's Application Transformation (AppTX) team. Candidates MUST be willing and able...Full timeMonday to Friday
$112k - $179k
ResponsibilitiesPeraton is seeking an enthusiastic and talented senior DevSecOps engineer to build on ongoing modernization efforts for the US Navy with enabling microservices to be rapidly built, tested, fielded, and integrated to container orchestration platforms through...Contract workLive inRemote workShift work$145k - $210k
...exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer you the chance to make a... ...initiatives of our government customers.I2X Technologies is seeking a DevSecOps Engineer to support ongoing activities for a customer in...Work experience placementLong distance$220k - $275k
Job Title: DevSecOps EngineerLocation(s): Annapolis Junction, MD Salary Range: $220k - $275k/yrClearance RequirementsA TS/SCI with Poly... ...will be doing:We are seeking an experienced Senior DevSecOps Engineer to support the design, implementation, automation, and security...Full timeWork at officeFlexible hours- Job ID: 19678221Reference Number: 23-00871Title: Senior DevSecOps EngineerLocation: Malvern, PAPosted Date: 2023-05-12Company: HAN StaffingSenior... ...infrastructure for deployed servicesWork with peer software engineers to design resilient, scalable, and robust cloud and IoT...
- Reference: 85347-369905Readiness Delivered. Kratos engineers and deploys technology and systems that move national security forward, with... ...and ourselves. As part of the Build Automation team, the Sr. DevSecOps Engineer will focus on the build and deploy pipelines for...Temporary work
- ...Additional responsibility will include activities to install, configure and maintain all tools needed to accomplish all the following DevSecOps functions -- source control management, continuous integration, deployment, monitoring, database management, repository management...Work at officeImmediate startFlexible hours
$91.7k - $163.7k
...you help us advance health optimization on a global scale.Join us to start Caring. Connecting. Growing together. As a Senior DevSecOps Engineer (Sr DevOps Engineer) within our technology organization, you will be at the forefront of securing, automating, and optimizing...Minimum wageFull timeWork experience placementLocal areaRemote work$160k - $190k
As a Sr. DevSecOps Engineer II, you will build the automated processes that allow customer applications, new code, and data to be securely containerized, deployed, updated, and ultimately moved from low-side to high-side environments within AWS. You will design CI/CD pipelines...Full timeLocal area$50 per hour
...features & use cases into implemented designs.WHO WE AREThe ISA UAS division of Lockheed Martin Skunk Works is seeking talented DevSecOps Engineers with a Software Engineering background to join our team and continue our 80-year legacy of pioneering advanced aircraft.As a...Full timeTemporary workWork experience placementInterim roleCasual workImmediate startFlexible hoursWeekend work3 days per week$69.1k - $141.5k
Job Title: DevSecOps EngineerJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee... ...an ongoing basis.The Opportunity:CACI is seeking a DevSecOps engineer to join our team and help us solve one of our customer’s...Contract workWork experience placementImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to DevSecOps Engineer. Be the first to apply!
