
DevOps Lead – Architect
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Maryland.
• Act as the designated Key Personnel for an upcoming federal health agency initiative providing enterprise DevSecOps platform services.
• Take ownership of the technical architecture and security posture for managed DevSecOps platforms and supporting AWS infrastructure across development, testing, implementation, and production accounts.
• Develop standardized operating procedures for provisioning, identity management, backup and restore, observability, and security measures.
• Define and uphold Terraform Infrastructure as Code standards, including versioned module catalogs, drift detection, and remediation practices.
• Implement policy-as-code preventive controls and GitOps workflows for Kubernetes-based services.
• Maintain continuous Authority to Operate and security documentation within the client's compliance repository.
• Apply compliance-as-code and documentation-as-code methodologies for continuous evidence, scan results, baselines, and SBOM generation.
• Assist in security control assessments, security impact analyses, penetration testing, and the upkeep of necessary security plans.
• Manage artifact repositories and binary analysis platforms, encompassing segregation, retention, quotas, scanning, and remediation workflows.
• Design observability architecture for application performance monitoring, centralized logging, OpenTelemetry, metrics, and dashboards.
• Establish Site Reliability Engineering practices, including SLI/SLO definitions, error budgets, toil reduction strategies, and capacity planning.
• Create and maintain disaster recovery playbooks, failover/failback procedures, recovery drills, and validation of RTO/RPO.
• Implement Zero Trust strategies, including network segmentation, identity-aware access, least-privilege roles, and secrets rotation.
• Lead FinOps and cost optimization initiatives, including tagging, rightsizing, discounted pricing coverage, scheduling, anomaly detection, and cost reporting.
• Maintain architecture documentation as code, including ADRs, C4 diagrams, and API contracts.
• Serve as the technical liaison to the independent quality assurance contractor and client security officers.
• Participate in a 24x7x365 on-call rotation and spearhead quarterly resilience and security exercises.
• Extensive AWS architecture experience in a multi-account context, including VPC and network design, IAM boundary design, and account segmentation across environments.
• Expert-level proficiency in Terraform, encompassing modular design, state governance, remote backends, and drift detection at an organizational scale.
• Strong experience in Kubernetes architecture, preferably with AWS EKS, including workload design, Helm, and container security practices.
• Proven track record of managing security compliance for a federal system boundary, including maintaining or supporting an Authority to Operate and related documentation.
• Practical experience with artifact management and binary analysis platforms, preferably JFrog Artifactory and Xray.
• Hands-on experience with observability architecture covering metrics, logs, and traces, including OpenTelemetry and at least one enterprise application performance monitoring platform.
• Demonstrated Site Reliability Engineering practice, including defining service level indicators and objectives while operating against error budgets.
• Experience in designing and testing disaster recovery and backup strategies with validated recovery time and recovery point objectives.
• Familiarity with cloud cost optimization practices, including tagging governance, rightsizing, and utilization-driven decision-making.
• Bachelor's degree in Computer Science, Engineering, Information Systems, or a related technical field.
• Additional directly relevant experience may be considered in place of a degree.
• Minimum of ten (10) years of experience in infrastructure, DevOps, or cloud engineering, with at least four (4) years in an architecture or technical lead role.
• At least three (3) years of experience supporting federal systems subject to FISMA and Authority to Operate requirements.
• Candidates must be able to provide a resume suitable for submission as designated Key Personnel.
• Strong written and verbal communication abilities.
• Highly organized with the capability to prioritize, balance, and effectively manage multiple competing priorities in a fast-paced environment.
• Ability to interact professionally and collaboratively with fellow Dynanet teammates, clients, and business partners.
• Willingness and desire to challenge and enhance your own knowledge to support and advance IT service delivery in the Federal agencies served.
• Excellent judgment and creative problem-solving skills.
• Respond to requests from team members and clients via email, MS Teams, or other communication methods during core business hours.
• Strong active listening and collaboration skills.
• Preferred: prior architecture ownership experience within a federal health setting.
• Preferred: familiarity with agency compliance documentation repositories, automated inventory tools, and federal security control baselines.
• Preferred: experience with compliance automation frameworks such as InSpec, OSCAL-based control authoring, or continuous controls monitoring.
• Preferred: familiarity with NIST SP 800-218, NIST SP 800-53, and Zero Trust reference architecture under OMB M-22-09.
• Preferred: experience with policy-as-code tools including Open Policy Agent and Conftest.
• Preferred: experience operating Grafana, Prometheus, SonarQube, TestRail, or Apache JMeter.
• Preferred: relevant certifications such as AWS Certified Solutions Architect - Professional, Certified Kubernetes Administrator, CISSP, or HashiCorp Certified: Terraform Associate.
• Industry Competitive Compensation
• Medical and Dental Insurance
• Paid Time Off/Holidays
• 401(k) Retirement Plans with Matching
• Remote Work
• Paid Training
• Employee Referral Program
• Employee Development Program
Thumbtack
Thumbtack
Kinaxis
Harmonic Security
Get handpicked remote jobs straight to your inbox weekly.