
Senior DevSecOps Engineer
Posted Sep 1

Posted Sep 1
This is a fully remote position, open to applicants in United States.
• Act as the technical lead for DevSecOps and cloud transformation within a large AWS enterprise environment that includes both commercial and GovCloud.
• Design and manage GitLab CI/CD pipelines utilizing reusable templates, shared runners, feature flags, environment gates, and DORA metrics.
• Automate SAST, DAST, SCA, secrets scanning, container scanning, registry admission controls, and runtime protection processes.
• Analyze Terraform and Kubernetes configurations and address security issues prior to deployment.
• Oversee migrations from Jenkins to GitLab CI/CD and establish consistent pipeline patterns.
• Manage containerized workloads on OpenShift (ROSA) and Amazon EKS across both AWS Commercial and GovCloud.
• Automate AWS and Kubernetes infrastructure using Terraform and employ Ansible/Ansible Tower for configuration management, hardening, and patching tasks.
• Engineer AWS services such as EC2, VPC, IAM, S3, EBS, ELB/ALB/NLB, Route 53, and CloudWatch while adhering to least-privilege IAM principles.
• Implement GitOps workflows to ensure version-controlled, reviewable, and reproducible infrastructure, application, and cluster configurations.
• Develop reusable Terraform modules and GitLab templates for self-service provisioning.
• Create self-service onboarding workflows that encompass repository creation, CI/CD setup, RBAC and quotas, as well as security-gate enrollment.
• Publish standardized GitLab pipeline templates and golden-path patterns.
• Maintain onboarding documentation and module catalogs; leverage adoption and onboarding metrics to eliminate obstacles.
• Enforce STIG, CIS, and organizational security requirements.
• Design and manage AWS and Kubernetes IAM, RBAC, admission controls, pod security, network policies, and secrets management utilizing AWS KMS and Secrets Manager.
• Assist with vulnerability management, ATO and accreditation activities, audits, and continuous compliance reporting in FedRAMP and DoD environments.
• Operate observability platforms such as Datadog, Dynatrace, Splunk, OpenTelemetry, CloudWatch, and OpenSearch.
• Lead critical incident response efforts, including diagnostics, communication with stakeholders and executives, root-cause analysis, and corrective actions.
• Facilitate cross-team root-cause reviews and implement reliability enhancements.
• Spearhead transformation initiatives related to AI, advanced analytics, and emerging technologies; translate strategy into engineering roadmaps and technical responses to RFIs.
• Establish engineering standards, review architectural designs, and mentor engineers.
• Identify and enhance inefficient processes while participating in Agile delivery.
• Must be a U.S. Citizen with the ability to obtain and maintain the necessary Public Trust level clearance.
• Bachelor's degree with 12 years of experience, a Master's degree with 10 years of experience, or a High School Diploma or equivalent with 16 years of experience.
• Over 8 years of experience with AWS, focusing on networking, IT security tools, and databases.
• Proven hands-on technical expertise in DevSecOps, security automation, application development, integration, and release management.
• Practical experience in establishing and advancing CI/CD toward progressive delivery.
• Experience in creating self-service developer onboarding or platform-as-a-product capabilities using Terraform and GitLab.
• Established track record in senior technical or advisory roles, driving strategic change and digital adoption across various business units.
• Experience supporting FedRAMP, FISMA, or DoD-accredited cloud environments.
• Leadership presence and communication skills to engage with customers at all levels and manage communication during critical incidents.
• Preferred: AWS Certified Solutions Architect — Professional.
• Preferred: AWS Certified Security — Specialty.
• Preferred: Red Hat Certified Specialist in OpenShift Administration.
• Preferred: Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD).
• Preferred: HashiCorp Certified: Terraform Associate.
• Preferred: Experience in obtaining or maintaining an ATO in a FedRAMP High environment.
• Potential eligibility for overtime.
• Shift differential may be available.
• Discretionary bonus may be available.
FourEnergy GmbH
ICF
Mastercam
C&S Informática
Get handpicked remote jobs straight to your inbox weekly.