{"schemaVersion":"jobsearcher.job.v1","id":"5222128dc563564d3d6ff37a","url":"https://jobsearcher.com/jobs/5222128dc563564d3d6ff37a","canonicalUrl":"https://jobsearcher.com/jobs/5222128dc563564d3d6ff37a","title":"DevSecOps Engineer","description":"Electrosoft Services, LLC is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. While cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent automation. We always seek to delight our customers, so we retain highly qualified employees and offer them meaningful work, growth opportunities, and work-life balance. What sets us apart from all other contractors is the sense of teamwork our employees feel – and the knowledge that outstanding effort is recognized and rewarded. The camaraderie we share emanates from Lunch & Learn sessions where we explore new ideas together, fun group activities ranging from escape rooms to miniature golf, and much, much more. If we've described you and your dream workplace, please apply and share in the many benefits and opportunities we offer.\nDevSecOps Engineer\nResponsibilities and Duties:\nDesign, implement, and maintain secure DevSecOps pipelines that integrate security throughout the Software Development Lifecycle (SDLC).\nLead the implementation of security controls and automation solutions supporting Digital Solution Development, Automation, and Infrastructure Support initiatives.\nDevelop and maintain Continuous Integration/Continuous Delivery (CI/CD) pipelines to support rapid and secure software delivery.\nIntegrate automated security testing tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and container security scanning.\nCollaborate with application developers, architects, cybersecurity personnel, and infrastructure teams to embed security requirements into system designs and development processes.\nEstablish and enforce secure coding practices, vulnerability management procedures, and DevSecOps best practices.\nSupport cloud security architecture and automation efforts across cloud-hosted and hybrid environments.\nDesign and implement Infrastructure as Code (IaC) solutions using modern automation tools and frameworks.\nConduct security assessments, code reviews, architecture reviews, and risk analyses for applications and infrastructure platforms.\nMonitor, analyze, and remediate security vulnerabilities identified through automated scanning and assessment tools.\nDevelop and maintain security baselines, secure configuration standards, and deployment templates.\nSupport containerization and orchestration technologies, including security hardening and compliance monitoring activities.\nLead security-related technical projects and provide technical guidance to project teams and stakeholders.\nCollaborate with system administrators, network engineers, and developers to ensure secure deployment and operation of enterprise systems.\nSupport Authority to Operate (ATO), FISMA, NIST, FedRAMP, and other compliance-related activities as applicable.\nDevelop security automation capabilities to improve detection, response, monitoring, and reporting functions.\nParticipate in incident response, root cause analysis, and corrective action planning activities.\nMentor junior engineers and provide technical leadership on information security initiatives.\nCreate and maintain technical documentation, architecture diagrams, operational procedures, and security implementation guides.\nEvaluate emerging DevSecOps, cloud, and security technologies and recommend improvements to organizational security posture.\nSupport enterprise modernization, automation, and digital transformation initiatives by ensuring security is integrated from design through deployment.\nDevelop security metrics, dashboards, and reports to communicate program health, risk posture, and compliance status to leadership.\nBasic Qualifications\nBachelor's Degree in Computer Science, Information Technology, Cybersecurity, Computer Engineering, or a related field.\nMinimum of eight (8) years of progressive experience in information security, cybersecurity engineering, or related disciplines. Minimum of two (2) years of experience providing technical leadership for information security projects.\nExperience supporting DoD information systems and Security Technical Implementation Guide (STIG) compliance programs.\nDevelop and maintain automation scripts and Infrastructure as Code (IaC) templates to enforce STIG-compliant configurations across enterprise environments.\nExperience implementing DevSecOps practices within Agile, DevSecOps, or CI/CD environments.\nExperience with security automation tools, vulnerability management platforms, and secure software development methodologies.\nKnowledge of secure coding standards, application security principles, and security testing methodologies.\nExperience with CI/CD platforms such as Azure DevOps, Jenkins, GitLab, GitHub Actions, or similar technologies.\nExperience supporting cloud environments, including Microsoft Azure, AWS, or Google Cloud Platform (GCP).\nFamiliarity with Infrastructure as Code (IaC) technologies such as Terraform, Ansible, CloudFormation, or ARM Templates.\nKnowledge of containerization and orchestration technologies such as Docker, Kubernetes, and OpenShift.\nStrong understanding of NIST Cybersecurity Framework, NIST 800-53, RMF, FISMA, and related federal security standards.\nExperience identifying, assessing, and mitigating application and infrastructure security risks.\nStrong analytical, troubleshooting, and problem-solving skills.\nExcellent written, verbal, and presentation communication skills.\nAbility to work effectively across multidisciplinary technical and business teams.\nU.S. Citizen, and ability to get the clearance.\nPreferred Qualifications\nExperience supporting Department of Homeland Security (DHS) and/or Cybersecurity and Infrastructure Security Agency (CISA) programs.\nExperience designing and implementing Zero Trust architectures and modern cloud security solutions.\nKnowledge of Infrastructure Automation, Platform Engineering, and Site Reliability Engineering (SRE) practices.\nExperience supporting FedRAMP, Continuous Diagnostics and Mitigation (CDM), or enterprise cybersecurity programs.\nHands-on experience with SIEM, SOAR, and security monitoring technologies.\nRelevant certifications such as CISSP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, GIAC certifications, Certified DevSecOps Professional, Security+, or equivalent.\nExperience supporting enterprise modernization, application transformation, and infrastructure automation programs.\nElectrosoft is an Equal Opportunity Employer/Veterans/Disabled","company":"Electrosoft","rawCompany":"electrosoft","city":"Arlington","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-04T10:31:35.095Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer","description":"Electrosoft Services, LLC is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. While cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent automation. We always seek to delight our customers, so we retain highly qualified employees and offer them meaningful work, growth opportunities, and work-life balance. What sets us apart from all other contractors is the sense of teamwork our employees feel – and the knowledge that outstanding effort is recognized and rewarded. The camaraderie we share emanates from Lunch & Learn sessions where we explore new ideas together, fun group activities ranging from escape rooms to miniature golf, and much, much more. If we've described you and your dream workplace, please apply and share in the many benefits and opportunities we offer.\nDevSecOps Engineer\nResponsibilities and Duties:\nDesign, implement, and maintain secure DevSecOps pipelines that integrate security throughout the Software Development Lifecycle (SDLC).\nLead the implementation of security controls and automation solutions supporting Digital Solution Development, Automation, and Infrastructure Support initiatives.\nDevelop and maintain Continuous Integration/Continuous Delivery (CI/CD) pipelines to support rapid and secure software delivery.\nIntegrate automated security testing tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and container security scanning.\nCollaborate with application developers, architects, cybersecurity personnel, and infrastructure teams to embed security requirements into system designs and development processes.\nEstablish and enforce secure coding practices, vulnerability management procedures, and DevSecOps best practices.\nSupport cloud security architecture and automation efforts across cloud-hosted and hybrid environments.\nDesign and implement Infrastructure as Code (IaC) solutions using modern automation tools and frameworks.\nConduct security assessments, code reviews, architecture reviews, and risk analyses for applications and infrastructure platforms.\nMonitor, analyze, and remediate security vulnerabilities identified through automated scanning and assessment tools.\nDevelop and maintain security baselines, secure configuration standards, and deployment templates.\nSupport containerization and orchestration technologies, including security hardening and compliance monitoring activities.\nLead security-related technical projects and provide technical guidance to project teams and stakeholders.\nCollaborate with system administrators, network engineers, and developers to ensure secure deployment and operation of enterprise systems.\nSupport Authority to Operate (ATO), FISMA, NIST, FedRAMP, and other compliance-related activities as applicable.\nDevelop security automation capabilities to improve detection, response, monitoring, and reporting functions.\nParticipate in incident response, root cause analysis, and corrective action planning activities.\nMentor junior engineers and provide technical leadership on information security initiatives.\nCreate and maintain technical documentation, architecture diagrams, operational procedures, and security implementation guides.\nEvaluate emerging DevSecOps, cloud, and security technologies and recommend improvements to organizational security posture.\nSupport enterprise modernization, automation, and digital transformation initiatives by ensuring security is integrated from design through deployment.\nDevelop security metrics, dashboards, and reports to communicate program health, risk posture, and compliance status to leadership.\nBasic Qualifications\nBachelor's Degree in Computer Science, Information Technology, Cybersecurity, Computer Engineering, or a related field.\nMinimum of eight (8) years of progressive experience in information security, cybersecurity engineering, or related disciplines. Minimum of two (2) years of experience providing technical leadership for information security projects.\nExperience supporting DoD information systems and Security Technical Implementation Guide (STIG) compliance programs.\nDevelop and maintain automation scripts and Infrastructure as Code (IaC) templates to enforce STIG-compliant configurations across enterprise environments.\nExperience implementing DevSecOps practices within Agile, DevSecOps, or CI/CD environments.\nExperience with security automation tools, vulnerability management platforms, and secure software development methodologies.\nKnowledge of secure coding standards, application security principles, and security testing methodologies.\nExperience with CI/CD platforms such as Azure DevOps, Jenkins, GitLab, GitHub Actions, or similar technologies.\nExperience supporting cloud environments, including Microsoft Azure, AWS, or Google Cloud Platform (GCP).\nFamiliarity with Infrastructure as Code (IaC) technologies such as Terraform, Ansible, CloudFormation, or ARM Templates.\nKnowledge of containerization and orchestration technologies such as Docker, Kubernetes, and OpenShift.\nStrong understanding of NIST Cybersecurity Framework, NIST 800-53, RMF, FISMA, and related federal security standards.\nExperience identifying, assessing, and mitigating application and infrastructure security risks.\nStrong analytical, troubleshooting, and problem-solving skills.\nExcellent written, verbal, and presentation communication skills.\nAbility to work effectively across multidisciplinary technical and business teams.\nU.S. Citizen, and ability to get the clearance.\nPreferred Qualifications\nExperience supporting Department of Homeland Security (DHS) and/or Cybersecurity and Infrastructure Security Agency (CISA) programs.\nExperience designing and implementing Zero Trust architectures and modern cloud security solutions.\nKnowledge of Infrastructure Automation, Platform Engineering, and Site Reliability Engineering (SRE) practices.\nExperience supporting FedRAMP, Continuous Diagnostics and Mitigation (CDM), or enterprise cybersecurity programs.\nHands-on experience with SIEM, SOAR, and security monitoring technologies.\nRelevant certifications such as CISSP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, GIAC certifications, Certified DevSecOps Professional, Security+, or equivalent.\nExperience supporting enterprise modernization, application transformation, and infrastructure automation programs.\nElectrosoft is an Equal Opportunity Employer/Veterans/Disabled","datePosted":"2026-08-04T10:31:35.095Z","dateModified":"2026-08-04T10:31:35.095Z","hiringOrganization":{"@type":"Organization","name":"Electrosoft","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Arlington","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"5222128dc563564d3d6ff37a"},"url":"https://jobsearcher.com/jobs/5222128dc563564d3d6ff37a"}}