Senior DevSecOps Engineer

Posted Sep 1

This is a fully remote position, open to applicants in United States.

📋 Description

• Act as the technical lead for DevSecOps and cloud transformation within a large AWS enterprise environment that includes both commercial and GovCloud.

• Design and manage GitLab CI/CD pipelines utilizing reusable templates, shared runners, feature flags, environment gates, and DORA metrics.

• Automate SAST, DAST, SCA, secrets scanning, container scanning, registry admission controls, and runtime protection processes.

• Analyze Terraform and Kubernetes configurations and address security issues prior to deployment.

• Oversee migrations from Jenkins to GitLab CI/CD and establish consistent pipeline patterns.

• Manage containerized workloads on OpenShift (ROSA) and Amazon EKS across both AWS Commercial and GovCloud.

• Automate AWS and Kubernetes infrastructure using Terraform and employ Ansible/Ansible Tower for configuration management, hardening, and patching tasks.

• Engineer AWS services such as EC2, VPC, IAM, S3, EBS, ELB/ALB/NLB, Route 53, and CloudWatch while adhering to least-privilege IAM principles.

• Implement GitOps workflows to ensure version-controlled, reviewable, and reproducible infrastructure, application, and cluster configurations.

• Develop reusable Terraform modules and GitLab templates for self-service provisioning.

• Create self-service onboarding workflows that encompass repository creation, CI/CD setup, RBAC and quotas, as well as security-gate enrollment.

• Publish standardized GitLab pipeline templates and golden-path patterns.

• Maintain onboarding documentation and module catalogs; leverage adoption and onboarding metrics to eliminate obstacles.

• Enforce STIG, CIS, and organizational security requirements.

• Design and manage AWS and Kubernetes IAM, RBAC, admission controls, pod security, network policies, and secrets management utilizing AWS KMS and Secrets Manager.

• Assist with vulnerability management, ATO and accreditation activities, audits, and continuous compliance reporting in FedRAMP and DoD environments.

• Operate observability platforms such as Datadog, Dynatrace, Splunk, OpenTelemetry, CloudWatch, and OpenSearch.

• Lead critical incident response efforts, including diagnostics, communication with stakeholders and executives, root-cause analysis, and corrective actions.

• Facilitate cross-team root-cause reviews and implement reliability enhancements.

• Spearhead transformation initiatives related to AI, advanced analytics, and emerging technologies; translate strategy into engineering roadmaps and technical responses to RFIs.

• Establish engineering standards, review architectural designs, and mentor engineers.

• Identify and enhance inefficient processes while participating in Agile delivery.


⛳️ Requirements

• Must be a U.S. Citizen with the ability to obtain and maintain the necessary Public Trust level clearance.

• Bachelor's degree with 12 years of experience, a Master's degree with 10 years of experience, or a High School Diploma or equivalent with 16 years of experience.

• Over 8 years of experience with AWS, focusing on networking, IT security tools, and databases.

• Proven hands-on technical expertise in DevSecOps, security automation, application development, integration, and release management.

• Practical experience in establishing and advancing CI/CD toward progressive delivery.

• Experience in creating self-service developer onboarding or platform-as-a-product capabilities using Terraform and GitLab.

• Established track record in senior technical or advisory roles, driving strategic change and digital adoption across various business units.

• Experience supporting FedRAMP, FISMA, or DoD-accredited cloud environments.

• Leadership presence and communication skills to engage with customers at all levels and manage communication during critical incidents.

• Preferred: AWS Certified Solutions Architect — Professional.

• Preferred: AWS Certified Security — Specialty.

• Preferred: Red Hat Certified Specialist in OpenShift Administration.

• Preferred: Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD).

• Preferred: HashiCorp Certified: Terraform Associate.

• Preferred: Experience in obtaining or maintaining an ATO in a FedRAMP High environment.


🏝️ Benefits

• Potential eligibility for overtime.

• Shift differential may be available.

• Discretionary bonus may be available.

People also viewed

FourEnergy GmbH11 hours ago

Senior DevOps Engineer – Operations

DE flagGermany OnlyFull-timeDevOps & Site Reliability Engineer (SRE)
ApplyView job
ICF14 hours ago

Lead DevOps Engineer

US flagVirginia OnlyFull-timeDevOps & Site Reliability Engineer (SRE)$131.3k – $223.1k/year
ApplyView job
Mastercam18 hours ago

DevSecOps Engineer

US flagUnited States OnlyFull-timeDevOps & Site Reliability Engineer (SRE)
ApplyView job
C&S Informática22 hours ago

DevOps Engineer – Freelance/Contract, Mid-Level/Senior

US flagUnited States OnlyFull-timeDevOps & Site Reliability Engineer (SRE)
ApplyView job
Convene1 day ago

Support and Deployment Engineer

SA flagSaudi Arabia OnlyFull-timeDevOps & Site Reliability Engineer (SRE)
ApplyView job
Verity Group1 day ago

SRE Engineer

BR flagBrazil OnlyFull-timeDevOps & Site Reliability Engineer (SRE)
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers