Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

DevSecOps Engineer - Senior

Jobleads-US

Koniag Data Solutions, LLC, a Koniag Government Services company, is seeking a DevSecOps Engineer - Senior to support KDS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust.

Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits, and tuition reimbursement.

Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced DevSecOps Lead Engineer to support the design, implementation, and management of DevSecOps practices, pipelines, and culture in support of the U.S. Small Business Administration (SBA). The ideal candidate is a senior-level engineering professional with deep expertise in DevSecOps methodologies, CI/CD pipeline development, security automation, and cloud-native technologies, and a proven track record of leading DevSecOps transformation efforts within complex federal government environments. This individual will serve as the technical lead and subject matter expert for SBA's DevSecOps program, driving the integration of security into every phase of the software development lifecycle, accelerating the delivery of secure, high-quality software, and fostering a culture of collaboration, automation, and continuous improvement across SBA's development and operations teams.

The DevSecOps Engineer - Senior will serve as the senior technical lead and SME for DevSecOps practices and implementation at the SBA, working closely with SBA's IT leadership, development teams, security teams, operations staff, and program managers to design, build, and continuously improve a robust DevSecOps program that enables the rapid, secure, and reliable delivery of software and infrastructure solutions in support of SBA's mission.

Principal responsibilities will include but are not limited to:

  • Serve as the senior technical lead and SME for DevSecOps practices, pipelines, and culture at the SBA, providing expert guidance, strategic direction, and hands‑on technical leadership to development, security, and operations teams across the organization.
  • Lead the design, development, implementation, and continuous improvement of SBA's CI/CD pipelines and DevSecOps toolchain, ensuring pipelines are automated, secure, scalable, and aligned with SBA's software delivery and security requirements.
  • Drive the integration of security practices, tools, and automation throughout the software development lifecycle (SDLC), including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), container security scanning, and infrastructure as code (IaC) security scanning.
  • Lead the development and implementation of SBA's DevSecOps strategy, roadmap, and standards, ensuring alignment with federal DevSecOps guidance, SBA's enterprise architecture framework, and industry best practices.
  • Oversee the design, implementation, and management of infrastructure as code (IaC) practices and tools, enabling automated, repeatable, and auditable provisioning and management of SBA's IT infrastructure and cloud environments.
  • Collaborate with SBA's development, security, and operations teams to establish and enforce DevSecOps standards, coding best practices, security requirements, and quality gates within the CI/CD pipeline.
  • Lead the evaluation, selection, and implementation of DevSecOps tools and platforms, including source code management, CI/CD orchestration, container orchestration, artifact management, security scanning, and monitoring solutions appropriate for SBA's environment.
  • Provide technical leadership and oversight for the containerization and orchestration of SBA applications, ensuring container images are properly secured, scanned, and managed in accordance with SBA security requirements and federal guidelines.
  • Support the planning and execution of cloud migration and modernization initiatives, applying DevSecOps principles and practices to accelerate the secure migration of SBA workloads to cloud environments.
  • Develop and maintain comprehensive DevSecOps documentation including pipeline architecture designs, technical runbooks, standards and guidelines, and training materials to support SBA's DevSecOps program.
  • Collaborate with SBA's ISSO and security teams to ensure DevSecOps pipelines and practices support the maintenance of system Authorization to Operate (ATO) requirements, including the automation of security control testing and continuous monitoring activities where applicable.
  • Lead and conduct code reviews, architecture reviews, and security reviews for DevSecOps pipeline components and infrastructure as code artifacts, ensuring they meet SBA's quality and security standards.
  • Provide technical mentorship and guidance to junior and mid-level engineers, developers, and operations staff, fostering a culture of learning, collaboration, and continuous improvement across SBA's technical teams.
  • Develop and deliver DevSecOps training, workshops, and knowledge-sharing sessions for SBA technical staff, helping to build organizational capability and support for DevSecOps principles and practices
  • Monitor and analyze the performance, reliability, and security of SBA's DevSecOps pipelines and toolchain, identifying and implementing improvements to enhance pipeline efficiency, security, and overall effectiveness.
  • Stay at the forefront of DevSecOps technology developments, federal policy guidance, and industry best practices, applying this knowledge to continuously refine and improve SBA's DevSecOps program.

Education and Experience:

Required:

  • Bachelor's degree in Computer Science, Software Engineering, Information Technology, Cybersecurity, or a related field from an accredited college or university, OR equivalent combination of education and extensive relevant work experience.
  • 7+ years of progressive experience in software engineering, systems engineering, or DevOps/DevSecOps, with significant demonstrated experience designing, implementing, and managing CI/CD pipelines and DevSecOps practices in a federal government or large enterprise environment.
  • Demonstrated expert‑level hands‑on experience with CI/CD tools and platforms such as Jenkins, GitLab CI/CD, GitHub Actions, or similar, and container orchestration platforms such as Kubernetes or Red Hat OpenShift. Demonstrated experience integrating security tools and automation into CI/CD pipelines including SAST, DAST, SCA, and container security scanning solutions.
  • One or more of the following certifications: Certified Kubernetes Administrator (CKA), AWS Certified DevOps Engineer, Microsoft Certified: DevOps Engineer Expert, or equivalent senior‑level DevSecOps or cloud engineering certification.

Desired:

  • Master's degree in Computer Science, Software Engineering, Information Technology, or a related field.
  • Prior experience leading DevSecOps program development and implementation at a federal civilian agency, preferably the SBA or a similar organization.
  • Certified Kubernetes Security Specialist (CKS), AWS Certified Security – Specialty, or other relevant advanced cloud security or DevSecOps certifications.
  • Red Hat Certified Engineer (RHCE) or Red Hat Certified Architect (RHCA) certification.

Required Skills and Competencies:

  • Expert-level knowledge of DevSecOps principles, methodologies, and best practices and their application to the design, implementation, and management of secure, automated software delivery pipelines in a federal government environment.
  • Demonstrated expert‑level hands‑on experience with CI/CD tools and platforms including Jenkins, GitLab CI/CD, GitHub Actions, CircleCI, or similar, and the ability to design, build, and optimize complex CI/CD pipeline architectures.
  • Deep technical expertise in containerization and container orchestration technologies including Docker, Kubernetes, and Red Hat OpenShift, including experience securing and managing container environments in production.
  • Extensive experience with infrastructure as code (IaC) tools and practices including Terraform, Ansible, AWS CloudFormation, or similar, and their application to automated, repeatable infrastructure provisioning and management.
  • Strong experience integrating security automation into CI/CD pipelines including SAST tools such as SonarQube or Checkmarx, DAST tools such as OWASP ZAP or Burp Suite, SCA tools such as Black Duck or Snyk, and container security scanning tools such as Twistlock, Aqua Security, or Anchore.
  • Solid experience with cloud platforms and services including AWS, Microsoft Azure, or Google Cloud Platform, and the application of cloud-native DevSecOps practices and tools within federal cloud environments.
  • Proficient experience with source code management and collaboration platforms including Git, GitHub, GitLab, or Bitbucket, including experience with branching strategies, code review processes, and repository security practices.
  • Solid understanding of federal cybersecurity frameworks, requirements, and guidance including NIST SP 800‑53, NIST SP 800‑218 (Secure Software Development Framework), FISMA, and FedRAMP, and their application to DevSecOps practices and pipeline security.
  • Experience with monitoring, logging, and observability tools and platforms such as ELK Stack, Prometheus, Grafana, Splunk, or similar, and their integration into DevSecOps pipelines and operations.
  • Strong experience with scripting and programming languages including Python, Bash, PowerShell, or similar, and their application to pipeline automation, toolchain integration, and infrastructure management.
  • Exceptional written and oral communication skills in English, with the ability to clearly communicate complex DevSecOps concepts, architectural designs, and technical recommendations to both technical teams and senior non-technical audiences.
  • Strong leadership and mentorship skills with demonstrated experience guiding and developing engineers, developers, and operations staff in DevSecOps practices and culture.
  • Ability to obtain and maintain a Public Trust clearance as required by the SBA.

Desired Skills and Competencies:

  • Prior experience leading DevSecOps program development and implementation at the SBA or a similar federal civilian agency
  • In-depth familiarity with SBA's IT environment, development platforms, and mission areas, including an understanding of the unique challenges and opportunities associated with implementing DevSecOps within the SBA environment
  • Experience with artifact management and software supply chain security tools and practices including JFrog Artifactory, Nexus Repository, or similar, and their integration into secure software delivery pipelines.
  • Advanced knowledge of service mesh technologies such as Istio or Linkerd and their application to securing microservices architectures within a DevSecOps context.
  • Experience with GitOps practices and tools such as ArgoCD or Flux and their application to automated, auditable infrastructure and application deployments.
  • Familiarity with the NIST Secure Software Development Framework (SSDF) and its practical application to DevSecOps program design and implementation in a federal government environment.
  • Experience supporting ATO processes and continuous monitoring programs, including the automation of security control testing and evidence collection within CI/CD pipelines.
  • Knowledge of software bill of materials (SBOM) concepts and tools and their application to software supply chain security and federal compliance requirements.
  • Certified Kubernetes Security Specialist (CKS), AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate, or other relevant advanced cloud security certifications.
  • Experience with chaos engineering practices and tools and their application to improving the resilience and reliability of DevSecOps pipelines and application deployments.
  • Familiarity with federal IT acquisition and procurement processes and experience supporting the development of technical requirements and evaluation criteria for DevSecOps toolchain acquisitions.

Our Equal Employment Opportunity Policy

The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristicprotected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e‑mail at View email address on click.appcast.io or by calling View phone number on click.appcast.io to request accommodations.

Equal Opportunity Employer/Veterans/Disabled.Shareholder Preference in accordance with Public Law 88-352

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit

#J-18808-Ljbffr Jobleads-US
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the DevSecOps Engineer - Senior in Washington DC vacancy
  • $150k - $185k

    OverviewAs a Senior DevSecOps Engineer, you will work with our growing DevSecOps practice delivering features to support cloud and application development. We are looking for candidates with 5-7 years experience with cloud platform services and DevSecOps practices such... 
    Senior

    Steampunk

    Washington DC
    5 hours ago
  • $131.3k - $237.35k

     ...Your opportunity to lead transformation.​Join the core engineering team building the new USCG DevSecOps platform that will be used by hundreds of mission-...  ...this role is for you.​Primary Responsibilities​As a senior member of the team, you will design and implement the... 
    Senior
    Full time

    Leidos

    Alexandria, VA
    5 hours ago
  • $77.6k - $176k

    DevSecOps Engineer, SeniorThe Opportunity:DevOps engineering requires a specific mix of development, engineering, and communication skills. As a DevOps engineer, you know that these skills create efficiency and effectiveness—so you can quickly deliver the best solutions... 
    Senior
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    4 days ago
  •  ...Position Title: Senior DevSecOps & Software Engineer Location: Pentagon, Arlington, Virginia Category: Funded Schedule (FT/PT): Full Time Travel Required: May require occasional domestic travel Shift: Day Remote Type: In-Office Clearance... 
    Senior
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Flexible hours
    Shift work

    ACT1

    Arlington, VA
    4 days ago
  •  ...Needs to be local No restrictions on visa Job Title: Senior DevSecOps Engineer Location: Washington, DC Job Description We are seeking a highly skilled and motivated Senior DevSecOps Engineer to join our team in a hybrid capacity... 
    Senior
    Local area

    3B Staffing LLC

    Washington DC
    14 hours ago
  • $140k - $145k

     ...Clearance: TS/SCI willingness to take a polygraph exam Must be a U.S. Citizen Job Summary Castalia Systems is seeking a Senior DevSecOps Engineer to work closely with your clients to understand their questions and needs and then dig into their data-rich environments... 
    Senior
    Contract work
    Work experience placement
    Work at office
    Local area

    Castalia Systems

    Washington DC
    4 days ago
  •  ...build and own the security infrastructure that keeps Twenty's engineering systems safe without slowing engineers down. This role spans runtime...  ...and team-building as we grow. Must Have ~8+ years in DevSecOps, platform security, or a closely related security engineering... 
    Senior

    Twenty Inc.

    Arlington, VA
    4 days ago
  •  ...Knight Federal Solutions is seeking a DevSecOps Engineer to integrate security into the full software lifecycle. You will work with cross-functional teams to implement security in the pipeline, automate workflows, and maintain secure infrastructure in support of DoD and... 
    Senior

    Jobleads-US

    Washington DC
    1 day ago
  •  ...supporting Federal civilian agencies. Our services include Cloud Security, DevSecOps, Security Engineering, SOC Operations, GRC, and Continuous Monitoring. About the Role We are seeking a Senior Cloud / DevSecOps Engineer to join an established cybersecurity... 
    Senior
    Full time
    Local area
    Remote work
    2 days per week

    DANASTAR Professional Services, LLC

    Washington DC
    3 days ago
  •  ...Accenture Federal Services is seeking a senior infrastructure/DevOps engineer to own Terraform for a multi-account AWS estate and operate production EKS clusters. You will extend our GitOps delivery model (ArgoCD) and drive secure, compliant CI/CD pipelines using GitLab... 
    Senior

    Jobleads-US

    Washington DC
    1 day ago
  • $129.8k - $194.3k

     ...sits right at the intersection of platform engineering, security, and compliance — where the interesting problems are. You’ll be a senior hand on a small, high‑trust team. We move...  ...(GitLab CI strongly preferred) ~ DevSecOps in practice: security scanning (SAST, container... 
    Senior
    Work at office
    Local area
    Remote work

    Jobleads-US

    Washington DC
    1 day ago
  •  ...supporting Federal civilian agencies. Our services include Cloud Security, DevSecOps, Security Engineering, SOC Operations, GRC, and Continuous Monitoring. About the Role\n We are seeking a Senior Cloud / DevSecOps Engineer to join an established cybersecurity... 
    Senior
    Full time
    Local area
    Remote work
    2 days per week

    DANASTAR Professional Services, LLC

    Washington DC
    4 days ago
  •  ...We are seeking a highly skilled SecDevOps Engineer to lead the design, automation, and maintenance of secure cloud infrastructure and CI/CD pipelines within multi-cloud environments. This role focuses on implementing Zero Trust architectures, continuous security monitoring... 
    Senior
    Full time
    Remote work

    The Phoenix Group

    Arlington, VA
    3 days ago
  • $130k - $190k

    Modern Technology Solutions, Inc. (MTSI) is hiring a Senior DevSecOps Engineer to work in Springfield, VA. Qualified candidates must be U.S. citizens with an active TS/SCI clearance and be eligible to obtain a CI Poly.Responsibilities:• Build and operate the Cloud Native... 
    Senior
    Contract work

    Modern Technology Solutions

    Springfield, VA
    2 days ago
  • $185k - $210k

    The DevSecOps Engineer III designs, implements, and sustains secure, automated CI/CD pipelines and infrastructure across hybrid on‐premises and cloud environments. This role integrates security controls directly into DevOps workflows, enabling continuous compliance, monitoring... 
    Senior
    Full time
    Local area

    MetroStar Systems

    Washington DC
    2 days ago
  • $150k - $180k

     ...clients, team members, and partners, we all achieve greater success. We have an immediate need for a highly skilled Senior-level DevSecOps Engineer to support federal programs hosted on AWS GovCloud. This role requires expertise in DevSecOps best practices, cloud automation... 
    Senior
    Immediate start

    Credence company

    McLean, VA
    4 days ago
  •  ...Senior DevSecOps Engineer Who We Are: Exiger is the AI partner for supply chain and procurement automation. Its centralized 1EXIGER.AI platform allows organizations to manage their entire operating network, from parts to suppliers, regulators, and customers, through... 
    Senior

    Exiger

    McLean, VA
    1 day ago
  • $125.8k - $209.7k

     ...Join EY and help to build a better working world.Government and Infrastructure - Technology Consulting - Cybersecurity - DevSecOps Senior Engineer - Senior ConsultantFrom strategy to execution, the Government & Infrastructure of Ernst & Young provides a full range of consulting... 
    Senior
    For contractors
    Summer holiday
    Work at office
    Local area
    Immediate start
    Flexible hours

    EY (Ernst & Young)

    McLean, VA
    4 days ago
  • $124.75k - $178.22k

     ...perspectives will help us achieve this global, inclusive mission. Join us to help make an impact. Your Opportunity As a Senior DevSecOps Engineer, you will play a key role in designing, building, and maintaining production-grade data and platform pipelines and... 
    Senior
    Full time
    Internship
    Work at office
    Local area
    Remote work
    Worldwide
    Flexible hours

    EBSCO Information Services

    Washington DC
    3 days ago
  •  ...EY is hiring a Senior DevSecOps Engineer to support its Government & Infrastructure cybersecurity team in McLean, VA. You will design secure CI/CD pipelines, automate evidence for authorization, and ensure security is embedded throughout the software lifecycle with mapping... 
    Senior

    Jobleads-US

    McLean, VA
    1 day ago
  •  ...Job Description Job Description Description: On-site in Washington, DC   Our client seeks a Sr. DevSecOps Engineer I to design, implement, and maintain secure and efficient software development and deployment pipelines. The role collaborates with cross-functional... 
    Senior
    Hourly pay
    Permanent employment
    Full time
    Local area

    Eliassen Group

    Washington DC
    a month ago
  •  ...security. Make an impact by using your expertise to protect our country from threats. Job Description Job Description Senior DevSecOps Engineer We are seeking an experienced Senior DevSecOps Engineer who will work as part of a collaborative and high-performing... 
    Senior

    General Dynamics Information Technology

    Washington DC
    1 day ago
  •  ...years of experience developing tools and processes to advance DevSecOps maturity. ~10+ years of experience automating infrastructure...  ...CKA/CKAD, or Security+ Certification. ~ A master's degree in Engineering, Physics, Mathematics, Computer Science, or a related field is... 
    Senior
    Full time
    Part time
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    6 days ago
  • $104.8k - $209.7k

     ...EY is hiring a Senior DevSecOps Engineer to support its Government & Infrastructure cybersecurity team in McLean, VA. In this role, you will evaluate how applications are delivered and how mature their security practices are, then help modernize software delivery by designing... 
    Senior
    For contractors
    Summer holiday
    Work at office
    Flexible hours

    Jobleads-US

    McLean, VA
    1 day ago
  •  ...tooling. Create practical security guidance and shape the DevSecOps function as it scales, including contributing to hiring and team...  ...DevSecOps, platform security, or a closely related security engineering role. ~ Deep hands-on AWS experience with IAM, SCPs, Organizations... 
    Senior
    Full time
    Flexible hours

    Twenty

    Arlington, VA
    11 days ago
  •  ...A resume request for: TO-691 Sr. IT DevSecOps Engineer Citizenship required: Yes Performance Period: Through the end of the year, with the possibility of extension. Position Requirements: Senior Jira SAAS Administrator Position Overview We are seeking... 
    Senior
    Full time
    Contract work
    Monday to Friday

    Diverse Agile Solutions

    Washington DC
    8 days ago
  • $120k - $125k

     ...Conviso Inc is hiring Secret Cleared DevSecOps Engineer. This is a 100% Remote set-up position & comes with benefits, 401K & some accrued PTO. Role: DevSecOps Engineer Active Secret Clearance is needed Remote Role Certification : DoD 8570 IAT II (i.e. Security+... 
    Remote work

    Conviso Inc.

    Washington DC
    3 days ago
  • $77.6k - $176k

    DevSecOps EngineerThe Opportunity:Modern engineering teams rely on secure, automated delivery pipelines and cloud-hosted DevSecOps platforms to deliver software...  ...environments. The preferred candidate is a hands-on senior engineer who can bridge database engineering, API... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    2 days ago
  • $150k - $180k

    As a REMOTE DevSecOps Engineer with MTSI, you will be responsible for aiding in the solutioning, implementing, and sustaining cloud-native and traditional infrastructure, tools, and technologies. You will be responsible for ensuring security posture meets any requirements... 
    Contract work
    Remote work

    Modern Technology Solutions

    Alexandria, VA
    3 days ago
  • $87.1k - $157.45k

     ...The Geospatial Analyst Solutions Directorate, part of the National Solutions Business Area, is currently seeking a Mid-Level DevSecOps Engineer on the Maru Program. The successful candidate will play a critical role in the integration of security into all stages of the... 
    Full time
    Contract work
    Shift work

    Leidos

    Alexandria, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to DevSecOps Engineer - Senior. Be the first to apply!