{"schemaVersion":"jobsearcher.job.v1","id":"26867dd190f04be5a62bc7d9","url":"https://jobsearcher.com/jobs/26867dd190f04be5a62bc7d9","canonicalUrl":"https://jobsearcher.com/jobs/26867dd190f04be5a62bc7d9","title":"DevSecOps Engineer","description":"Fortreum is a trusted leader in cloud and cybersecurity services, ranked among the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling organizations to better understand, measure, and communicate risk. Together, we deliver independent, third-party, vendor-agnostic regulatory assessment and advisory services, alongside advanced cybersecurity offensive and compliance technical solutions. Our comprehensive service portfolio spans regulatory compliance frameworks including FedRAMP, CMMC, FISMA, SOC, PCI, ISO, and HIPAA.\n\nWorking with Fortune 500 companies and leading cloud service providers, we’ve built our reputation on service-delivery excellence and an unwavering commitment to client success. Our continued rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry—guided by our core values: quality above all, a customer-driven mindset, autonomy, and personal accountability.\n\nFortreum is transforming how compliance gets done through the Kovr AI Platform — our AI-native compliance automation solution. In the age of agentic AI, Kovr applies intelligent, autonomous workflows to the assessment and authorization lifecycle, turning slow, manual, evidence-heavy compliance work into a faster, repeatable, and more reliable process. By automating artifact generation, evidence and control mapping, and continuous validation across frameworks such as FedRAMP, CMMC, SOC, ISO, and HIPAA, the platform dramatically compresses assessment timelines and is setting a new standard for how organizations achieve and sustain compliance.\n\nThe Opportunity\n\nOn our team, you will have the opportunity to work with industry-leading experts who’ve supported the world’s most security-conscious organizations. As a DevSecOps Engineer, you will embed with enterprise and federal customers to deploy, integrate, and operationalize the Kovr AI Platform within their environments—building integrations with their DevSecOps toolchains, automating evidence collection and continuous monitoring, and configuring compliance workflows that accelerate Authority to Operate (ATO). You will serve as the hands-on technical bridge between our customers and Kovr’s engineering team, solving complex deployment challenges across cloud, hybrid, and classified National Security and Intelligence Community (IC) environments..\n\nKey Responsibilities\n\nDesign, build, and maintain CI/CD pipelines supporting rapid, secure software delivery\n\nManage cloud infrastructure (AWS, with exposure to Azure/GCP) using Infrastructure as Code (Terraform), including module design and reusable patterns for the broader team\n\nAdminister and scale containerized workloads (Kubernetes/EKS, Helm, ArgoCD)\n\nImplement and maintain security controls and monitoring aligned to NIST 800-53 and OSCAL-based frameworks\n\nDesign observability strategy (logging, metrics, alerting, SLOs) to support production reliability at scale\n\nIntegrate DevOps tooling (GitHub, JIRA, Splunk, Snyk) into automated compliance and remediation workflows\n\nCollaborate with existing engineering and compliance teams to ensure infrastructure changes maintain continuous authorization posture\n\nSupport continuous monitoring and audit-readiness activities, including evidence collection and control mapping\n\nTroubleshoot production issues and drive continuous improvement in deployment reliability\n\nBuild and maintain documentation, runbooks, and architecture decision records\n\nRepresent infrastructure/security in cross-functional planning, including customer-facing technical conversations when needed\n\nBasic Qualifications\n\n7+ years of DevOps, Platform Engineering, or Site Reliability Engineering experience\n\nHands-on experience architecting AWS infrastructure using Terraform at scale\n\nStrong production experience with Kubernetes (EKS or similar), including cluster design, Helm Charts, and GitHub/GitOps workflows\n\nDirect experience with FedRAMP, CMMC, NIST 800-53/800-171, or DoD SRG compliance environments\n\nFamiliarity with OSCAL or other machine-readable compliance/documentation frameworks\n\nExperience integrating SAST/DAST or IaC security scanning into a pipeline\n\nScripting/automation proficiency (Python, Bash, or similar)\n\nU.S. Citizenship, with the ability to obtain and maintain a Top Secret clearance\n\nComfortable working in a fast-moving startup-within-a-company environment\n\nLocal to Washington, DC metro area\n\nPreferred Qualifications\n\nExisting security or cloud certifications (Security+, AWS Certified Security, CYSA+, CISSP)\n\nExperience integrating LLM coding agents, MCPs, and automations into DevOps workflows\n\nPrior experience holding or maintaining a Top Secret security clearance\n\nBackground supporting federal DevSecOps deployments or highly regulated commercial clients Charts\n\nPosted Salary Range\n\n$155,000 - $205,000 annual salary\n\nWhat Fortreum Offers\n\nWe offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. Our benefits package includes medical insurance, dental insurance, vision insurance, 401K plan with a 4% match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.\n\nAn Affirmative Action and Equal Opportunity Employer\n\nFortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you’d like to view a copy of the company’s affirmative action plan or policy statement, please email hr@fortreum.com. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail hr@fortreum.com or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.\n\nIn compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.\n\nCompensation Range: $155K - $205K","company":"Fortreum","rawCompany":"fortreum","city":"Reston","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-19T12:53:23.987Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"Fortreum is a trusted leader in cloud and cybersecurity services, ranked among the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling organizations to better understand, measure, and communicate risk. Together, we deliver independent, third-party, vendor-agnostic regulatory assessment and advisory services, alongside advanced cybersecurity offensive and compliance technical solutions. Our comprehensive service portfolio spans regulatory compliance frameworks including FedRAMP, CMMC, FISMA, SOC, PCI, ISO, and HIPAA.\n\nWorking with Fortune 500 companies and leading cloud service providers, we’ve built our reputation on service-delivery excellence and an unwavering commitment to client success. Our continued rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industry—guided by our core values: quality above all, a customer-driven mindset, autonomy, and personal accountability.\n\nFortreum is transforming how compliance gets done through the Kovr AI Platform — our AI-native compliance automation solution. In the age of agentic AI, Kovr applies intelligent, autonomous workflows to the assessment and authorization lifecycle, turning slow, manual, evidence-heavy compliance work into a faster, repeatable, and more reliable process. By automating artifact generation, evidence and control mapping, and continuous validation across frameworks such as FedRAMP, CMMC, SOC, ISO, and HIPAA, the platform dramatically compresses assessment timelines and is setting a new standard for how organizations achieve and sustain compliance.\n\nThe Opportunity\n\nOn our team, you will have the opportunity to work with industry-leading experts who’ve supported the world’s most security-conscious organizations. As a DevSecOps Engineer, you will embed with enterprise and federal customers to deploy, integrate, and operationalize the Kovr AI Platform within their environments—building integrations with their DevSecOps toolchains, automating evidence collection and continuous monitoring, and configuring compliance workflows that accelerate Authority to Operate (ATO). You will serve as the hands-on technical bridge between our customers and Kovr’s engineering team, solving complex deployment challenges across cloud, hybrid, and classified National Security and Intelligence Community (IC) environments..\n\nKey Responsibilities\n\nDesign, build, and maintain CI/CD pipelines supporting rapid, secure software delivery\n\nManage cloud infrastructure (AWS, with exposure to Azure/GCP) using Infrastructure as Code (Terraform), including module design and reusable patterns for the broader team\n\nAdminister and scale containerized workloads (Kubernetes/EKS, Helm, ArgoCD)\n\nImplement and maintain security controls and monitoring aligned to NIST 800-53 and OSCAL-based frameworks\n\nDesign observability strategy (logging, metrics, alerting, SLOs) to support production reliability at scale\n\nIntegrate DevOps tooling (GitHub, JIRA, Splunk, Snyk) into automated compliance and remediation workflows\n\nCollaborate with existing engineering and compliance teams to ensure infrastructure changes maintain continuous authorization posture\n\nSupport continuous monitoring and audit-readiness activities, including evidence collection and control mapping\n\nTroubleshoot production issues and drive continuous improvement in deployment reliability\n\nBuild and maintain documentation, runbooks, and architecture decision records\n\nRepresent infrastructure/security in cross-functional planning, including customer-facing technical conversations when needed\n\nBasic Qualifications\n\n7+ years of DevOps, Platform Engineering, or Site Reliability Engineering experience\n\nHands-on experience architecting AWS infrastructure using Terraform at scale\n\nStrong production experience with Kubernetes (EKS or similar), including cluster design, Helm Charts, and GitHub/GitOps workflows\n\nDirect experience with FedRAMP, CMMC, NIST 800-53/800-171, or DoD SRG compliance environments\n\nFamiliarity with OSCAL or other machine-readable compliance/documentation frameworks\n\nExperience integrating SAST/DAST or IaC security scanning into a pipeline\n\nScripting/automation proficiency (Python, Bash, or similar)\n\nU.S. Citizenship, with the ability to obtain and maintain a Top Secret clearance\n\nComfortable working in a fast-moving startup-within-a-company environment\n\nLocal to Washington, DC metro area\n\nPreferred Qualifications\n\nExisting security or cloud certifications (Security+, AWS Certified Security, CYSA+, CISSP)\n\nExperience integrating LLM coding agents, MCPs, and automations into DevOps workflows\n\nPrior experience holding or maintaining a Top Secret security clearance\n\nBackground supporting federal DevSecOps deployments or highly regulated commercial clients Charts\n\nPosted Salary Range\n\n$155,000 - $205,000 annual salary\n\nWhat Fortreum Offers\n\nWe offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. Our benefits package includes medical insurance, dental insurance, vision insurance, 401K plan with a 4% match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.\n\nAn Affirmative Action and Equal Opportunity Employer\n\nFortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you’d like to view a copy of the company’s affirmative action plan or policy statement, please email hr@fortreum.com. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail hr@fortreum.com or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.\n\nIn compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.\n\nCompensation Range: $155K - $205K","datePosted":"2026-08-19T12:53:23.987Z","dateModified":"2026-08-19T12:53:23.987Z","hiringOrganization":{"@type":"Organization","name":"Fortreum","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Reston","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"26867dd190f04be5a62bc7d9"},"url":"https://jobsearcher.com/jobs/26867dd190f04be5a62bc7d9"}}