
DevSecOps Engineer
Posted 6 hours ago

Posted 6 hours ago
This is a fully remote position, open to applicants in United States.
• Design, develop, and oversee the automated CI/CD pipelines that transport code from development through security scanning, compliance verification, and deployment in Navy and DoD settings.
• Create and sustain secure Kubernetes environments that adhere to DISA STIG guidelines across both cloud and restricted network deployment scenarios.
• Automate the generation of security artifacts, including SBOM creation, CVE scanning, and ongoing compliance validation.
• Encourage the adoption of Infrastructure as Code, GitOps methodologies, and controls-as-code within the team.
• Utilize AI tools to expedite pipeline creation, vulnerability management, compliance correction, and operational documentation processes.
• Collaborate closely with software engineers, systems engineers, and ISSEs to integrate security and compliance standards from the initial stages of development.
• Manage and enhance deployment infrastructure across various secure environments, including cloud and air-gapped or intermittently connected settings.
• Assist with ATO processes through automated evidence generation, documentation as code, and direct engagement with the security team.
• Set and advocate for standards regarding pipeline design, container security, secrets management, and deployment uniformity.
• Contribute to feature development when team capacity allows, applying security-focused development practices to application code.
• Maintain operational documentation, including runbooks, deployment guides, and architecture diagrams, as version-controlled artifacts.
• Bachelor's degree and over 4 years of professional experience in DevSecOps or DevOps engineering.
• Practical experience in designing and maintaining CI/CD pipelines using GitLab CI; familiarity with additional pipeline tools is a plus.
• Proficient in Kubernetes administration and hardening within DoD or compliance-focused environments — experience with RKE2 or K3S is highly preferred.
• Knowledge of implementing DISA STIG compliance in containerized and Linux environments (RHEL or Rocky Linux).
• Expertise in Infrastructure as Code tools, particularly Terraform.
• Experience with Helm chart creation and Kubernetes deployment management.
• Familiarity with automated security scanning, SBOM creation, and CVE triage and remediation processes.
• Proficiency in scripting with Python or Bash for pipeline and operational automation.
• Proven experience using AI tools to enhance engineering workflows.
• Background in contributing to application feature development alongside infrastructure responsibilities.
• Ability to work independently and manage tasks effectively amidst competing priorities in a dynamic, small team environment.
• Must hold and maintain an active Secret security clearance or higher.
• Continuous learning and development opportunities.
• A diverse range of benefits related to health, retirement, professional growth, and more.
NBCUniversal
Sophos
CSC Generation
ClanX
Get handpicked remote jobs straight to your inbox weekly.