
DevSecOps Engineer – Intelligent Platforms, Agents
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in United States.
• Design, implement, and maintain automated CI/CD pipelines that encompass development, security scanning, compliance validation, and deployment within Navy and DoD environments.
• Build and sustain hardened Kubernetes environments that comply with DISA STIG requirements in both cloud and restricted network settings.
• Automate the generation of security artifacts, including SBOM production, CVE scanning, and continuous compliance validation.
• Promote the adoption of Infrastructure as Code, GitOps, and controls-as-code methodologies.
• Utilize AI tools for pipeline development, vulnerability triage, compliance remediation, and operational documentation.
• Collaborate with software engineers, systems engineers, and Information System Security Engineers (ISSEs) to integrate security and compliance requirements from the initial stages of development.
• Maintain and enhance deployment infrastructure across secure cloud environments, air-gapped systems, and intermittently connected settings.
• Assist with ATO processes by automating evidence generation, employing documentation as code, and working closely with the security team.
• Set standards for pipeline design, container security, secrets management, and deployment consistency.
• Contribute to application feature development when team capacity allows, applying security-first methodologies.
• Keep version-controlled operational documentation, including runbooks, deployment guides, and architecture diagrams.
• Must possess and retain a Secret security clearance.
• Bachelor's degree with 4+ years of professional DevSecOps or DevOps engineering experience, totaling 8+ years of relevant experience.
• Hands-on experience in designing and maintaining CI/CD pipelines using GitLab CI.
• Proficiency in Kubernetes administration and hardening within DoD or compliance-driven environments; experience with RKE2 or K3S is highly preferred.
• Experience in implementing DISA STIG compliance in containerized and Linux environments, including RHEL or Rocky Linux.
• Expertise in Infrastructure as Code tools, especially Terraform.
• Familiarity with Helm chart creation and Kubernetes deployment management.
• Experience with automated security scanning, SBOM generation, and CVE triage and remediation processes.
• Proficient in scripting with Python or Bash for pipeline and operational automation.
• Demonstrated ability to utilize AI tools to enhance engineering workflows.
• Background in contributing to application feature development while managing infrastructure tasks.
• Capability to work independently and balance workload across competing priorities within a small, agile team.
• Experience working in air-gapped or disconnected network environments.
• Experience supporting ATO through automation, documentation, and providing technical leadership.
• Active Security+ certification or equivalent IAT Level II certification.
• Familiarity with secrets management tools such as Vault, Sealed Secrets, or SOPS.
• Knowledge of observability and monitoring tools such as Prometheus or Grafana.
• Certified Kubernetes Administrator (CKA) or willingness to obtain certification upon onboarding.
• Experience applying “as code” methodologies beyond infrastructure, including configuration-as-code, policy-as-code, workflows-as-code, and documentation-as-code.
• Competitive salary and performance-based incentives.
• Comprehensive health, dental, and vision insurance plans.
• Opportunities for professional development and career advancement.
• Flexible work hours and remote work options.
• Collaborative and inclusive company culture.
Horizon3.ai
CLOUD MANTA GmbH
Stefanini LATAM
Akamai Technologies
Get handpicked remote jobs straight to your inbox weekly.