{"schemaVersion":"jobsearcher.job.v1","id":"21ddcab4974e68965a919784","url":"https://jobsearcher.com/jobs/21ddcab4974e68965a919784","canonicalUrl":"https://jobsearcher.com/jobs/21ddcab4974e68965a919784","title":"DevSecOps Engineer","description":"The Opportunity\nWe are seeking a DevSecOps Engineer with deep Kubernetes expertise to design, implement, and maintain secure, scalable cloud-native platforms. This role bridges development, security, and operations to embed security throughout the software delivery lifecycle while enabling high-velocity engineering teams.\nU.S. Citizenship Requirement: Due to contractual requirements and the nature of our work supporting U.S. Government customers, this position requires U.S. citizenship.\n\nKey Responsibilities (Principal Duties and Accountabilities *Essential Functions)\nPlatform & Infrastructure\nDesign, provision, and maintain production Kubernetes clusters (RKE2 / EKS / GKE / AKS) across cloud and on-premises environments\nManage cluster lifecycle: upgrades, node pool scaling, multi-tenancy, and namespace governance\nImplement and maintain CNI solutions (Calico, Cilium, Multus) including advanced networking topologies such as macvlan and SR-IOV\nOperate GitOps workflows (e. g. ArgoCD) for declarative, auditable cluster state management\nDevelop and maintain Helm charts for platform and application services\n\nDevSecOps & CI/CD\nBuild and maintain CI/CD pipelines in GitLab CI (and/or GitHub Actions) with integrated security scanning and artifact signing\nIntegrate SAST, DAST, SCA, and container image scanning (Trivy, Grype, Semgrep) into pipeline gates\nImplement supply-chain security controls: SBOM generation, cosign image signing, and Sigstore policy enforcement\nAutomate OS image builds using Packer (QEMU, vSphere) targeting RHEL, AlmaLinux, Debian/Ubuntu, and Windows\nManage secrets at scale using Vault, External Secrets Operator, or equivalent solutions\n\nSecurity & Compliance\nEnforce runtime security through admission controllers (Kyverno / OPA Gatekeeper), Pod Security Standards, and network policies\nOwn vulnerability management processes including scheduled scanning, triage, and remediation SLAs\nSupport compliance initiatives (SOC 2, FedRAMP, NIST 800-53) by maintaining audit-ready infrastructure-as-code and evidence artifacts\nConduct threat modeling and security architecture reviews for new platform capabilities\nRespond to and lead post-mortems for security incidents and infrastructure outages\n\nObservability & Reliability\nDeploy and operate observability stacks: Prometheus, Grafana, Loki, and OpenTelemetry collectors\nDefine and track SLOs/SLAs; build alerting and on-call runbooks to drive reliability improvements\nImplement cost observability and right-sizing workflows for cloud and on-prem workloads\n\nCollaboration & Developer Enablement\nPartner with development teams to design deployment patterns, resource quotas, and autoscaling strategies\nProduce clear documentation, runbooks, and internal training materials for platform capabilities\nMentor junior engineers and participate in architecture decision records (ADRs)\nFluency in English (written and spoken)\nActive Secret Security clearance preferred; the eligibility to obtain a secret clearance required. Preference will be given to those who have an active security clearance.\n\nEducation\nHigh School Diploma Required\nCertified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS) Certification Preferred\n\nRequired Skills, Experience & Abilities\n5+ years of hands-on experience in a DevOps, Platform Engineering, or SRE role\n3+ years managing production Kubernetes clusters at scale\nDeep proficiency with GitLab CI or GitHub Actions, including advanced pipeline patterns (DAGs, dynamic child pipelines, matrix builds)\nStrong scripting skills in Bash and at least one higher-level language (Python, Go, or similar)\nSolid understanding of Linux internals, networking (TCP/IP, DNS, BGP basics), and container runtimes (containerd, CRI-O)\nExperience with infrastructure-as-code tools: Terraform / OpenTofu and Helm\nDemonstrated experience integrating security tooling into CI/CD pipelines\nFamiliarity with cloud platforms: AWS, GCP, or Azure\n\nPreferred Qualifications\nExperience with GPU workloads on Kubernetes (NVIDIA / Intel device plugins, GStreamer / FFmpeg hardware acceleration pipelines)\nFamiliarity with Multus CNI and SR-IOV networking for high-throughput edge or media workloads\nExperience building images with Packer targeting multiple hypervisors (QEMU, Hyper-V, VMware)\nWorking knowledge of service mesh technologies (Istio, Linkerd)\nExposure to FedRAMP, CMMC, or other regulated-environment compliance frameworks\nContributions to open-source infrastructure or security projects\n\nPhysical Demands & Work Environment\nThe physical demands and work environment described are representative of those that an employee encounters while performing the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.\nProlonged periods of sitting at a desk and working on a computer.\nAbility to lift up to 15 pounds on occasion (e.g., transporting laptop, presentation materials, or small equipment).\nFrequent use of hands and fingers for typing, writing, and handling documents.\nClear vision and hearing required for meetings, presentations, and communication.\nAbility to travel domestically to 15% of the time, which may include extended periods of standing, walking, or navigating airports and government facilities.\nAbility to sit or stand for long periods of time\nFrequent interaction with clients, executives, and government officials in both in-person and virtual settings.\nOccasional travel to customer sites, government facilities, and industry events.\nTravel requirements come in waves and are not known more than a few weeks/months in advance.\nFast-paced, deadline-driven environment requiring adaptability and responsiveness.\nWork may occasionally be performed in secure government facilities, requiring adherence to security protocols.\nWork may be conducted in laboratory, workshop, office, and field environments with varying conditions.\nThis is a remote position within the United States. Due to the requirement to obtain and maintain a U.S. Government security clearance, applicants must be U.S. citizens.\n\nCompensation:\nThe anticipated base salary range for this position is up to $165,000.00 - $185,000.00 dependent on geographic location and experience. Actual compensation will be determined based on factors including relevant experience, qualifications, skills, location, and internal equity.\n\nBenefits:\nNexTech Solutions offers a comprehensive benefits package designed to support employees and their families, including competitive health, dental, and vision coverage, retirement savings options, paid time off, and additional employee benefits.\n\nExciting opportunities like this are better when shared. Send this role to someone you know: DevSecOps Engineer - REMOTE US\n\nEqual Opportunity\nAll qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. NTS will also consider qualified applicants with criminal histories consistent with relevant laws for employment.\nFor individuals with disabilities that need additional assistance at any point in the application and interview process, please email recruiting@nextechsol.com","company":"Nextech Solutions","rawCompany":"nextech solutions","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-03T23:33:06.942Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"The Opportunity\nWe are seeking a DevSecOps Engineer with deep Kubernetes expertise to design, implement, and maintain secure, scalable cloud-native platforms. This role bridges development, security, and operations to embed security throughout the software delivery lifecycle while enabling high-velocity engineering teams.\nU.S. Citizenship Requirement: Due to contractual requirements and the nature of our work supporting U.S. Government customers, this position requires U.S. citizenship.\n\nKey Responsibilities (Principal Duties and Accountabilities *Essential Functions)\nPlatform & Infrastructure\nDesign, provision, and maintain production Kubernetes clusters (RKE2 / EKS / GKE / AKS) across cloud and on-premises environments\nManage cluster lifecycle: upgrades, node pool scaling, multi-tenancy, and namespace governance\nImplement and maintain CNI solutions (Calico, Cilium, Multus) including advanced networking topologies such as macvlan and SR-IOV\nOperate GitOps workflows (e. g. ArgoCD) for declarative, auditable cluster state management\nDevelop and maintain Helm charts for platform and application services\n\nDevSecOps & CI/CD\nBuild and maintain CI/CD pipelines in GitLab CI (and/or GitHub Actions) with integrated security scanning and artifact signing\nIntegrate SAST, DAST, SCA, and container image scanning (Trivy, Grype, Semgrep) into pipeline gates\nImplement supply-chain security controls: SBOM generation, cosign image signing, and Sigstore policy enforcement\nAutomate OS image builds using Packer (QEMU, vSphere) targeting RHEL, AlmaLinux, Debian/Ubuntu, and Windows\nManage secrets at scale using Vault, External Secrets Operator, or equivalent solutions\n\nSecurity & Compliance\nEnforce runtime security through admission controllers (Kyverno / OPA Gatekeeper), Pod Security Standards, and network policies\nOwn vulnerability management processes including scheduled scanning, triage, and remediation SLAs\nSupport compliance initiatives (SOC 2, FedRAMP, NIST 800-53) by maintaining audit-ready infrastructure-as-code and evidence artifacts\nConduct threat modeling and security architecture reviews for new platform capabilities\nRespond to and lead post-mortems for security incidents and infrastructure outages\n\nObservability & Reliability\nDeploy and operate observability stacks: Prometheus, Grafana, Loki, and OpenTelemetry collectors\nDefine and track SLOs/SLAs; build alerting and on-call runbooks to drive reliability improvements\nImplement cost observability and right-sizing workflows for cloud and on-prem workloads\n\nCollaboration & Developer Enablement\nPartner with development teams to design deployment patterns, resource quotas, and autoscaling strategies\nProduce clear documentation, runbooks, and internal training materials for platform capabilities\nMentor junior engineers and participate in architecture decision records (ADRs)\nFluency in English (written and spoken)\nActive Secret Security clearance preferred; the eligibility to obtain a secret clearance required. Preference will be given to those who have an active security clearance.\n\nEducation\nHigh School Diploma Required\nCertified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS) Certification Preferred\n\nRequired Skills, Experience & Abilities\n5+ years of hands-on experience in a DevOps, Platform Engineering, or SRE role\n3+ years managing production Kubernetes clusters at scale\nDeep proficiency with GitLab CI or GitHub Actions, including advanced pipeline patterns (DAGs, dynamic child pipelines, matrix builds)\nStrong scripting skills in Bash and at least one higher-level language (Python, Go, or similar)\nSolid understanding of Linux internals, networking (TCP/IP, DNS, BGP basics), and container runtimes (containerd, CRI-O)\nExperience with infrastructure-as-code tools: Terraform / OpenTofu and Helm\nDemonstrated experience integrating security tooling into CI/CD pipelines\nFamiliarity with cloud platforms: AWS, GCP, or Azure\n\nPreferred Qualifications\nExperience with GPU workloads on Kubernetes (NVIDIA / Intel device plugins, GStreamer / FFmpeg hardware acceleration pipelines)\nFamiliarity with Multus CNI and SR-IOV networking for high-throughput edge or media workloads\nExperience building images with Packer targeting multiple hypervisors (QEMU, Hyper-V, VMware)\nWorking knowledge of service mesh technologies (Istio, Linkerd)\nExposure to FedRAMP, CMMC, or other regulated-environment compliance frameworks\nContributions to open-source infrastructure or security projects\n\nPhysical Demands & Work Environment\nThe physical demands and work environment described are representative of those that an employee encounters while performing the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.\nProlonged periods of sitting at a desk and working on a computer.\nAbility to lift up to 15 pounds on occasion (e.g., transporting laptop, presentation materials, or small equipment).\nFrequent use of hands and fingers for typing, writing, and handling documents.\nClear vision and hearing required for meetings, presentations, and communication.\nAbility to travel domestically to 15% of the time, which may include extended periods of standing, walking, or navigating airports and government facilities.\nAbility to sit or stand for long periods of time\nFrequent interaction with clients, executives, and government officials in both in-person and virtual settings.\nOccasional travel to customer sites, government facilities, and industry events.\nTravel requirements come in waves and are not known more than a few weeks/months in advance.\nFast-paced, deadline-driven environment requiring adaptability and responsiveness.\nWork may occasionally be performed in secure government facilities, requiring adherence to security protocols.\nWork may be conducted in laboratory, workshop, office, and field environments with varying conditions.\nThis is a remote position within the United States. Due to the requirement to obtain and maintain a U.S. Government security clearance, applicants must be U.S. citizens.\n\nCompensation:\nThe anticipated base salary range for this position is up to $165,000.00 - $185,000.00 dependent on geographic location and experience. Actual compensation will be determined based on factors including relevant experience, qualifications, skills, location, and internal equity.\n\nBenefits:\nNexTech Solutions offers a comprehensive benefits package designed to support employees and their families, including competitive health, dental, and vision coverage, retirement savings options, paid time off, and additional employee benefits.\n\nExciting opportunities like this are better when shared. Send this role to someone you know: DevSecOps Engineer - REMOTE US\n\nEqual Opportunity\nAll qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. NTS will also consider qualified applicants with criminal histories consistent with relevant laws for employment.\nFor individuals with disabilities that need additional assistance at any point in the application and interview process, please email recruiting@nextechsol.com","datePosted":"2026-08-03T23:33:06.942Z","dateModified":"2026-08-03T23:33:06.942Z","hiringOrganization":{"@type":"Organization","name":"Nextech Solutions","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"21ddcab4974e68965a919784"},"url":"https://jobsearcher.com/jobs/21ddcab4974e68965a919784"}}