DevSecOps Engineer - Senior
Jobleads-US
Koniag Data Solutions, LLC, a Koniag Government Services company, is seeking a DevSecOps Engineer - Senior to support KDS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust.
Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits, and tuition reimbursement.
Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced DevSecOps Lead Engineer to support the design, implementation, and management of DevSecOps practices, pipelines, and culture in support of the U.S. Small Business Administration (SBA). The ideal candidate is a senior-level engineering professional with deep expertise in DevSecOps methodologies, CI/CD pipeline development, security automation, and cloud-native technologies, and a proven track record of leading DevSecOps transformation efforts within complex federal government environments. This individual will serve as the technical lead and subject matter expert for SBA's DevSecOps program, driving the integration of security into every phase of the software development lifecycle, accelerating the delivery of secure, high-quality software, and fostering a culture of collaboration, automation, and continuous improvement across SBA's development and operations teams.
The DevSecOps Engineer - Senior will serve as the senior technical lead and SME for DevSecOps practices and implementation at the SBA, working closely with SBA's IT leadership, development teams, security teams, operations staff, and program managers to design, build, and continuously improve a robust DevSecOps program that enables the rapid, secure, and reliable delivery of software and infrastructure solutions in support of SBA's mission.
Principal responsibilities will include but are not limited to:
- Serve as the senior technical lead and SME for DevSecOps practices, pipelines, and culture at the SBA, providing expert guidance, strategic direction, and hands‑on technical leadership to development, security, and operations teams across the organization.
- Lead the design, development, implementation, and continuous improvement of SBA's CI/CD pipelines and DevSecOps toolchain, ensuring pipelines are automated, secure, scalable, and aligned with SBA's software delivery and security requirements.
- Drive the integration of security practices, tools, and automation throughout the software development lifecycle (SDLC), including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), container security scanning, and infrastructure as code (IaC) security scanning.
- Lead the development and implementation of SBA's DevSecOps strategy, roadmap, and standards, ensuring alignment with federal DevSecOps guidance, SBA's enterprise architecture framework, and industry best practices.
- Oversee the design, implementation, and management of infrastructure as code (IaC) practices and tools, enabling automated, repeatable, and auditable provisioning and management of SBA's IT infrastructure and cloud environments.
- Collaborate with SBA's development, security, and operations teams to establish and enforce DevSecOps standards, coding best practices, security requirements, and quality gates within the CI/CD pipeline.
- Lead the evaluation, selection, and implementation of DevSecOps tools and platforms, including source code management, CI/CD orchestration, container orchestration, artifact management, security scanning, and monitoring solutions appropriate for SBA's environment.
- Provide technical leadership and oversight for the containerization and orchestration of SBA applications, ensuring container images are properly secured, scanned, and managed in accordance with SBA security requirements and federal guidelines.
- Support the planning and execution of cloud migration and modernization initiatives, applying DevSecOps principles and practices to accelerate the secure migration of SBA workloads to cloud environments.
- Develop and maintain comprehensive DevSecOps documentation including pipeline architecture designs, technical runbooks, standards and guidelines, and training materials to support SBA's DevSecOps program.
- Collaborate with SBA's ISSO and security teams to ensure DevSecOps pipelines and practices support the maintenance of system Authorization to Operate (ATO) requirements, including the automation of security control testing and continuous monitoring activities where applicable.
- Lead and conduct code reviews, architecture reviews, and security reviews for DevSecOps pipeline components and infrastructure as code artifacts, ensuring they meet SBA's quality and security standards.
- Provide technical mentorship and guidance to junior and mid-level engineers, developers, and operations staff, fostering a culture of learning, collaboration, and continuous improvement across SBA's technical teams.
- Develop and deliver DevSecOps training, workshops, and knowledge-sharing sessions for SBA technical staff, helping to build organizational capability and support for DevSecOps principles and practices
- Monitor and analyze the performance, reliability, and security of SBA's DevSecOps pipelines and toolchain, identifying and implementing improvements to enhance pipeline efficiency, security, and overall effectiveness.
- Stay at the forefront of DevSecOps technology developments, federal policy guidance, and industry best practices, applying this knowledge to continuously refine and improve SBA's DevSecOps program.
Education and Experience:
Required:
- Bachelor's degree in Computer Science, Software Engineering, Information Technology, Cybersecurity, or a related field from an accredited college or university, OR equivalent combination of education and extensive relevant work experience.
- 7+ years of progressive experience in software engineering, systems engineering, or DevOps/DevSecOps, with significant demonstrated experience designing, implementing, and managing CI/CD pipelines and DevSecOps practices in a federal government or large enterprise environment.
- Demonstrated expert‑level hands‑on experience with CI/CD tools and platforms such as Jenkins, GitLab CI/CD, GitHub Actions, or similar, and container orchestration platforms such as Kubernetes or Red Hat OpenShift. Demonstrated experience integrating security tools and automation into CI/CD pipelines including SAST, DAST, SCA, and container security scanning solutions.
- One or more of the following certifications: Certified Kubernetes Administrator (CKA), AWS Certified DevOps Engineer, Microsoft Certified: DevOps Engineer Expert, or equivalent senior‑level DevSecOps or cloud engineering certification.
Desired:
- Master's degree in Computer Science, Software Engineering, Information Technology, or a related field.
- Prior experience leading DevSecOps program development and implementation at a federal civilian agency, preferably the SBA or a similar organization.
- Certified Kubernetes Security Specialist (CKS), AWS Certified Security – Specialty, or other relevant advanced cloud security or DevSecOps certifications.
- Red Hat Certified Engineer (RHCE) or Red Hat Certified Architect (RHCA) certification.
Required Skills and Competencies:
- Expert-level knowledge of DevSecOps principles, methodologies, and best practices and their application to the design, implementation, and management of secure, automated software delivery pipelines in a federal government environment.
- Demonstrated expert‑level hands‑on experience with CI/CD tools and platforms including Jenkins, GitLab CI/CD, GitHub Actions, CircleCI, or similar, and the ability to design, build, and optimize complex CI/CD pipeline architectures.
- Deep technical expertise in containerization and container orchestration technologies including Docker, Kubernetes, and Red Hat OpenShift, including experience securing and managing container environments in production.
- Extensive experience with infrastructure as code (IaC) tools and practices including Terraform, Ansible, AWS CloudFormation, or similar, and their application to automated, repeatable infrastructure provisioning and management.
- Strong experience integrating security automation into CI/CD pipelines including SAST tools such as SonarQube or Checkmarx, DAST tools such as OWASP ZAP or Burp Suite, SCA tools such as Black Duck or Snyk, and container security scanning tools such as Twistlock, Aqua Security, or Anchore.
- Solid experience with cloud platforms and services including AWS, Microsoft Azure, or Google Cloud Platform, and the application of cloud-native DevSecOps practices and tools within federal cloud environments.
- Proficient experience with source code management and collaboration platforms including Git, GitHub, GitLab, or Bitbucket, including experience with branching strategies, code review processes, and repository security practices.
- Solid understanding of federal cybersecurity frameworks, requirements, and guidance including NIST SP 800‑53, NIST SP 800‑218 (Secure Software Development Framework), FISMA, and FedRAMP, and their application to DevSecOps practices and pipeline security.
- Experience with monitoring, logging, and observability tools and platforms such as ELK Stack, Prometheus, Grafana, Splunk, or similar, and their integration into DevSecOps pipelines and operations.
- Strong experience with scripting and programming languages including Python, Bash, PowerShell, or similar, and their application to pipeline automation, toolchain integration, and infrastructure management.
- Exceptional written and oral communication skills in English, with the ability to clearly communicate complex DevSecOps concepts, architectural designs, and technical recommendations to both technical teams and senior non-technical audiences.
- Strong leadership and mentorship skills with demonstrated experience guiding and developing engineers, developers, and operations staff in DevSecOps practices and culture.
- Ability to obtain and maintain a Public Trust clearance as required by the SBA.
Desired Skills and Competencies:
- Prior experience leading DevSecOps program development and implementation at the SBA or a similar federal civilian agency
- In-depth familiarity with SBA's IT environment, development platforms, and mission areas, including an understanding of the unique challenges and opportunities associated with implementing DevSecOps within the SBA environment
- Experience with artifact management and software supply chain security tools and practices including JFrog Artifactory, Nexus Repository, or similar, and their integration into secure software delivery pipelines.
- Advanced knowledge of service mesh technologies such as Istio or Linkerd and their application to securing microservices architectures within a DevSecOps context.
- Experience with GitOps practices and tools such as ArgoCD or Flux and their application to automated, auditable infrastructure and application deployments.
- Familiarity with the NIST Secure Software Development Framework (SSDF) and its practical application to DevSecOps program design and implementation in a federal government environment.
- Experience supporting ATO processes and continuous monitoring programs, including the automation of security control testing and evidence collection within CI/CD pipelines.
- Knowledge of software bill of materials (SBOM) concepts and tools and their application to software supply chain security and federal compliance requirements.
- Certified Kubernetes Security Specialist (CKS), AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate, or other relevant advanced cloud security certifications.
- Experience with chaos engineering practices and tools and their application to improving the resilience and reliability of DevSecOps pipelines and application deployments.
- Familiarity with federal IT acquisition and procurement processes and experience supporting the development of technical requirements and evaluation criteria for DevSecOps toolchain acquisitions.
Our Equal Employment Opportunity Policy
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristicprotected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.
The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e‑mail at View email address on click.appcast.io or by calling View phone number on click.appcast.io to request accommodations.
Equal Opportunity Employer/Veterans/Disabled.Shareholder Preference in accordance with Public Law 88-352
Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit
#J-18808-Ljbffr Jobleads-US$150k - $185k
OverviewAs a Senior DevSecOps Engineer, you will work with our growing DevSecOps practice delivering features to support cloud and application development. We are looking for candidates with 5-7 years experience with cloud platform services and DevSecOps practices such...Senior$131.3k - $237.35k
...Your opportunity to lead transformation.Join the core engineering team building the new USCG DevSecOps platform that will be used by hundreds of mission-... ...this role is for you.Primary ResponsibilitiesAs a senior member of the team, you will design and implement the...SeniorFull time$77.6k - $176k
DevSecOps Engineer, SeniorThe Opportunity:DevOps engineering requires a specific mix of development, engineering, and communication skills. As a DevOps engineer, you know that these skills create efficiency and effectiveness—so you can quickly deliver the best solutions...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work- ...Position Title: Senior DevSecOps & Software Engineer Location: Pentagon, Arlington, Virginia Category: Funded Schedule (FT/PT): Full Time Travel Required: May require occasional domestic travel Shift: Day Remote Type: In-Office Clearance...SeniorFull timeTemporary workWork at officeLocal areaRemote workFlexible hoursShift work
- ...Needs to be local No restrictions on visa Job Title: Senior DevSecOps Engineer Location: Washington, DC Job Description We are seeking a highly skilled and motivated Senior DevSecOps Engineer to join our team in a hybrid capacity...SeniorLocal area
$140k - $145k
...Clearance: TS/SCI willingness to take a polygraph exam Must be a U.S. Citizen Job Summary Castalia Systems is seeking a Senior DevSecOps Engineer to work closely with your clients to understand their questions and needs and then dig into their data-rich environments...SeniorContract workWork experience placementWork at officeLocal area- ...build and own the security infrastructure that keeps Twenty's engineering systems safe without slowing engineers down. This role spans runtime... ...and team-building as we grow. Must Have ~8+ years in DevSecOps, platform security, or a closely related security engineering...Senior
- ...Knight Federal Solutions is seeking a DevSecOps Engineer to integrate security into the full software lifecycle. You will work with cross-functional teams to implement security in the pipeline, automate workflows, and maintain secure infrastructure in support of DoD and...Senior
- ...supporting Federal civilian agencies. Our services include Cloud Security, DevSecOps, Security Engineering, SOC Operations, GRC, and Continuous Monitoring. About the Role We are seeking a Senior Cloud / DevSecOps Engineer to join an established cybersecurity...SeniorFull timeLocal areaRemote work2 days per week
- ...Accenture Federal Services is seeking a senior infrastructure/DevOps engineer to own Terraform for a multi-account AWS estate and operate production EKS clusters. You will extend our GitOps delivery model (ArgoCD) and drive secure, compliant CI/CD pipelines using GitLab...Senior
$129.8k - $194.3k
...sits right at the intersection of platform engineering, security, and compliance — where the interesting problems are. You’ll be a senior hand on a small, high‑trust team. We move... ...(GitLab CI strongly preferred) ~ DevSecOps in practice: security scanning (SAST, container...SeniorWork at officeLocal areaRemote work- ...supporting Federal civilian agencies. Our services include Cloud Security, DevSecOps, Security Engineering, SOC Operations, GRC, and Continuous Monitoring. About the Role\n We are seeking a Senior Cloud / DevSecOps Engineer to join an established cybersecurity...SeniorFull timeLocal areaRemote work2 days per week
- ...We are seeking a highly skilled SecDevOps Engineer to lead the design, automation, and maintenance of secure cloud infrastructure and CI/CD pipelines within multi-cloud environments. This role focuses on implementing Zero Trust architectures, continuous security monitoring...SeniorFull timeRemote work
$130k - $190k
Modern Technology Solutions, Inc. (MTSI) is hiring a Senior DevSecOps Engineer to work in Springfield, VA. Qualified candidates must be U.S. citizens with an active TS/SCI clearance and be eligible to obtain a CI Poly.Responsibilities:• Build and operate the Cloud Native...SeniorContract work$185k - $210k
The DevSecOps Engineer III designs, implements, and sustains secure, automated CI/CD pipelines and infrastructure across hybrid on‐premises and cloud environments. This role integrates security controls directly into DevOps workflows, enabling continuous compliance, monitoring...SeniorFull timeLocal area$150k - $180k
...clients, team members, and partners, we all achieve greater success. We have an immediate need for a highly skilled Senior-level DevSecOps Engineer to support federal programs hosted on AWS GovCloud. This role requires expertise in DevSecOps best practices, cloud automation...SeniorImmediate start- ...Senior DevSecOps Engineer Who We Are: Exiger is the AI partner for supply chain and procurement automation. Its centralized 1EXIGER.AI platform allows organizations to manage their entire operating network, from parts to suppliers, regulators, and customers, through...Senior
$125.8k - $209.7k
...Join EY and help to build a better working world.Government and Infrastructure - Technology Consulting - Cybersecurity - DevSecOps Senior Engineer - Senior ConsultantFrom strategy to execution, the Government & Infrastructure of Ernst & Young provides a full range of consulting...SeniorFor contractorsSummer holidayWork at officeLocal areaImmediate startFlexible hours$124.75k - $178.22k
...perspectives will help us achieve this global, inclusive mission. Join us to help make an impact. Your Opportunity As a Senior DevSecOps Engineer, you will play a key role in designing, building, and maintaining production-grade data and platform pipelines and...SeniorFull timeInternshipWork at officeLocal areaRemote workWorldwideFlexible hours- ...EY is hiring a Senior DevSecOps Engineer to support its Government & Infrastructure cybersecurity team in McLean, VA. You will design secure CI/CD pipelines, automate evidence for authorization, and ensure security is embedded throughout the software lifecycle with mapping...Senior
- ...Job Description Job Description Description: On-site in Washington, DC Our client seeks a Sr. DevSecOps Engineer I to design, implement, and maintain secure and efficient software development and deployment pipelines. The role collaborates with cross-functional...SeniorHourly payPermanent employmentFull timeLocal area
- ...security. Make an impact by using your expertise to protect our country from threats. Job Description Job Description Senior DevSecOps Engineer We are seeking an experienced Senior DevSecOps Engineer who will work as part of a collaborative and high-performing...Senior
- ...years of experience developing tools and processes to advance DevSecOps maturity. ~10+ years of experience automating infrastructure... ...CKA/CKAD, or Security+ Certification. ~ A master's degree in Engineering, Physics, Mathematics, Computer Science, or a related field is...SeniorFull timePart timeRemote work
$104.8k - $209.7k
...EY is hiring a Senior DevSecOps Engineer to support its Government & Infrastructure cybersecurity team in McLean, VA. In this role, you will evaluate how applications are delivered and how mature their security practices are, then help modernize software delivery by designing...SeniorFor contractorsSummer holidayWork at officeFlexible hours- ...tooling. Create practical security guidance and shape the DevSecOps function as it scales, including contributing to hiring and team... ...DevSecOps, platform security, or a closely related security engineering role. ~ Deep hands-on AWS experience with IAM, SCPs, Organizations...SeniorFull timeFlexible hours
- ...A resume request for: TO-691 Sr. IT DevSecOps Engineer Citizenship required: Yes Performance Period: Through the end of the year, with the possibility of extension. Position Requirements: Senior Jira SAAS Administrator Position Overview We are seeking...SeniorFull timeContract workMonday to Friday
$120k - $125k
...Conviso Inc is hiring Secret Cleared DevSecOps Engineer. This is a 100% Remote set-up position & comes with benefits, 401K & some accrued PTO. Role: DevSecOps Engineer Active Secret Clearance is needed Remote Role Certification : DoD 8570 IAT II (i.e. Security+...Remote work$77.6k - $176k
DevSecOps EngineerThe Opportunity:Modern engineering teams rely on secure, automated delivery pipelines and cloud-hosted DevSecOps platforms to deliver software... ...environments. The preferred candidate is a hands-on senior engineer who can bridge database engineering, API...Full timeContract workPart timeWork at officeLocal areaRemote work$150k - $180k
As a REMOTE DevSecOps Engineer with MTSI, you will be responsible for aiding in the solutioning, implementing, and sustaining cloud-native and traditional infrastructure, tools, and technologies. You will be responsible for ensuring security posture meets any requirements...Contract workRemote work$87.1k - $157.45k
...The Geospatial Analyst Solutions Directorate, part of the National Solutions Business Area, is currently seeking a Mid-Level DevSecOps Engineer on the Maru Program. The successful candidate will play a critical role in the integration of security into all stages of the...Full timeContract workShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to DevSecOps Engineer - Senior. Be the first to apply!
- devsecops engineer Washington DC
- senior service associate Washington DC
- senior safety specialist Washington DC
- senior vice president of business development Washington DC
- senior service designer Washington DC
- senior sales recruiter Washington DC
- senior mulesoft developer Washington DC
- senior media manager Washington DC
- senior java software engineer Washington DC
- senior business manager Washington DC






