JOBSEARCHER

DevSecOps Engineer- 3629921

Overview In this DevSecOps role, you will support the Agency’s engineering team to automate and secure cloud infrastructure and delivery pipelines. You’ll enhance IaC, CI/CD, and container orchestration while aligning with federal security standards. The position sits within a collaborative, growth‑minded federal projects environment that values reliability and secure delivery. You will help shape secure, automated cloud deployments that scale in a high‑tempo setting. Compensation / Benefitscompetitive base salarycomprehensive benefitsbonus/award programsroom for growthopportunity to work on federal contractson-site in Washington, DC (onsite requirement) ResponsibilitiesIntegrate with the Agency’s engineering team and contribute to infrastructure automation, CI/CD capabilities, container orchestration, and secure delivery practicesMaintain and enhance Terraform and OpenTofu codebases for cloud and hybrid infrastructure managementDevelop and maintain Ansible playbooks and roles for configuration, compliance, patch management, and deploymentBuild and improve GitHub Actions workflows for build, test, security scanning, and deployment pipelinesSupport containerized delivery using Docker and KubernetesIncorporate security throughout the software lifecycle (SAST/DAST, CIS benchmarks, NIST SP 800-53, FISMA, audit docs)Follow Agency policies for version control, change management, peer review, documentation, and security workflowsParticipate in stand-ups, sprint planning, and technical reviews Key requirementsFive years of relevant experienceBachelor's degree or equivalent experienceHands-on Infra as Code with Terraform and OpenTofu (modules, remote state, workspace)Configuration as Code with Ansible (playbooks, roles, dynamic inventories, Ansible Vault)CI/CD with GitHub Actions (reusable workflows, matrix builds, security gates)Containers with Docker and Kubernetes (Helm, image hardening, security scanning)Security integration (SAST: Semgrep/Checkov/tfsec; secrets scanning: Gitleaks/Detect-Secrets; policy-as-code: OPA/Rego)Git-based workflows (branching, PR reviews, protected branches)Public Trust Tier 2 clearance and background checkCollaborative team player in fast-paced environmentsStrong communication and cross-team coordinationDetail‑oriented and security‑mindedTerraformOpenTofuAnsible