{"schemaVersion":"jobsearcher.job.v1","id":"57b6072f80cd8708829b77eb","url":"https://jobsearcher.com/jobs/57b6072f80cd8708829b77eb","canonicalUrl":"https://jobsearcher.com/jobs/57b6072f80cd8708829b77eb","title":"DevSecOps Engineer, Basic","description":"Description:\n\nContingent Upon Contract Award\n\nRemote with occasional on-site support\n\nConnected Logistics is seeking a DevSecOps Engineer to support the Cybersecurity Architecture and Engineering Services supporting the Department of Veterans Affairs (VA) Office of Information Security (OIS) Cybersecurity Operations Systems Engineering (COSE) program.\n\nThe DevSecOps Engineer provides specialized cybersecurity and DevSecOps expertise supporting the design, development, integration, deployment, and operation of secure applications and information systems. The DevSecOps Engineer integrates security throughout the software development lifecycle (SDLC), evaluates security requirements and technology capabilities, identifies and mitigates cybersecurity risks, and develops solutions that enable secure and reliable delivery of mission-critical capabilities. The DevSecOps Engineer works with development, security, operations, and engineering teams to incorporate automated security controls, continuous monitoring, vulnerability management, and compliance activities into development and deployment processes. The position also supports technical risk analysis, including risk assessments, and provides technical direction and daily supervision to assigned staff.\n\nKey Responsibilities\n\nAnalyze and define cybersecurity and system security requirements for applications, platforms, infrastructure, and development environments.\nDesign, develop, engineer, and implement secure solutions that address application, infrastructure, cloud, container, and DevSecOps security requirements.\nIntegrate security controls and testing throughout the SDLC and CI/CD pipeline.\nImplement and support automated security testing, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), dependency scanning, container scanning, and infrastructure-as-code security scanning, as applicable.\nEvaluate security products, platforms, and tools to determine suitability for technical and mission requirements.\nIdentify vulnerabilities, security deficiencies, and technical risks and coordinate remediation activities with development and operations teams.\nPerform cybersecurity risk analysis, including risk identification, assessment, prioritization, mitigation, and tracking.\nSupport secure configuration, vulnerability management, continuous monitoring, and security compliance activities across development, test, staging, and production environments.\nGather and organize technical information regarding organizational mission objectives, system requirements, existing security capabilities, architectures, products, and ongoing cybersecurity initiatives.\nCollaborate with developers, system engineers, security engineers, architects, and operations personnel to embed security into application and infrastructure engineering processes.\nDevelop and maintain security-related technical documentation, engineering artifacts, procedures, implementation guidance, and risk assessment information.\nSupport investigation / resolution of security findings identified through automated testing, vulnerability assessments, security reviews, or compliance activities.\nPromote consistent application of secure coding, secure configuration, least privilege, secrets management, identity and access management, and other cybersecurity engineering practices.\nProvide technical guidance, daily supervision, direction to assigned technical staff.\nCommunicate cybersecurity risks, technical recommendations, remediation priorities, and implementation considerations to technical and program stakeholders.\nRequirements:\nPublic Trust: T4 or T5 (TS)\nBachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Information Systems, Risk Management or a related technical discipline or an Associate's degree in the above discipline with an additional 2 years of experience.\nMinimum of five (5) years of relevant professional experience in cybersecurity, information security, DevSecOps, systems security engineering, application security, or a related technical field.\nDemonstrated experience analyzing cybersecurity requirements and implementing technical security solutions.\nExperience supporting DevSecOps processes and integrating cybersecurity activities into application development and deployment workflows.\nExperience performing cybersecurity risk assessments and identifying appropriate technical risk mitigation approaches.\nKnowledge of security principles, vulnerability management, security testing, access control, secure configuration, and continuous monitoring.\nAbility to collaborate effectively with software development, security, engineering, and IT operations teams.\nAbility to develop clear technical documentation and communicate security requirements and risks to technical and non-technical stakeholders.\nExperience providing technical direction, supervision, or leadership to technical personnel.\n\nPreferred Qualifications:\n\nExperience implementing DevSecOps practices within federal government environments.\nExperience designing or operating secure CI/CD pipelines.\nExperience with automated application and infrastructure security testing technologies.\nExperience securing cloud-native applications, containers, Kubernetes environments, microservices, APIs, and infrastructure-as-code deployments.\nExperience with source-code management, build automation, artifact repositories, container registries, and automated deployment technologies.\nFamiliarity with federal cybersecurity requirements, security controls, risk management, and continuous monitoring practices.\nExperience supporting security authorization, assessment, remediation, and compliance activities.\nExperience implementing security gates and automated compliance checks within CI/CD pipelines.\nKnowledge of secure software development practices, supply-chain security, secrets management, identity and access management, and zero-trust security principles.\nRelevant cybersecurity, cloud, DevSecOps, or technical certifications are desirable.\n\nTotal Rewards Statement\n\nWe believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $100,000.00-$110,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.\n\nBeyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!\n\nConnected Logistics respects the need for confidentiality for all applicants.\n\nConnected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.\n\nConnected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.\n\nEOE/Disability/Veterans","company":"Connectedlogistics","rawCompany":"connectedlogistics","city":"Fairfax","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-09-25T11:33:37.731Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Engineer, Basic","description":"Description:\n\nContingent Upon Contract Award\n\nRemote with occasional on-site support\n\nConnected Logistics is seeking a DevSecOps Engineer to support the Cybersecurity Architecture and Engineering Services supporting the Department of Veterans Affairs (VA) Office of Information Security (OIS) Cybersecurity Operations Systems Engineering (COSE) program.\n\nThe DevSecOps Engineer provides specialized cybersecurity and DevSecOps expertise supporting the design, development, integration, deployment, and operation of secure applications and information systems. The DevSecOps Engineer integrates security throughout the software development lifecycle (SDLC), evaluates security requirements and technology capabilities, identifies and mitigates cybersecurity risks, and develops solutions that enable secure and reliable delivery of mission-critical capabilities. The DevSecOps Engineer works with development, security, operations, and engineering teams to incorporate automated security controls, continuous monitoring, vulnerability management, and compliance activities into development and deployment processes. The position also supports technical risk analysis, including risk assessments, and provides technical direction and daily supervision to assigned staff.\n\nKey Responsibilities\n\nAnalyze and define cybersecurity and system security requirements for applications, platforms, infrastructure, and development environments.\nDesign, develop, engineer, and implement secure solutions that address application, infrastructure, cloud, container, and DevSecOps security requirements.\nIntegrate security controls and testing throughout the SDLC and CI/CD pipeline.\nImplement and support automated security testing, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), dependency scanning, container scanning, and infrastructure-as-code security scanning, as applicable.\nEvaluate security products, platforms, and tools to determine suitability for technical and mission requirements.\nIdentify vulnerabilities, security deficiencies, and technical risks and coordinate remediation activities with development and operations teams.\nPerform cybersecurity risk analysis, including risk identification, assessment, prioritization, mitigation, and tracking.\nSupport secure configuration, vulnerability management, continuous monitoring, and security compliance activities across development, test, staging, and production environments.\nGather and organize technical information regarding organizational mission objectives, system requirements, existing security capabilities, architectures, products, and ongoing cybersecurity initiatives.\nCollaborate with developers, system engineers, security engineers, architects, and operations personnel to embed security into application and infrastructure engineering processes.\nDevelop and maintain security-related technical documentation, engineering artifacts, procedures, implementation guidance, and risk assessment information.\nSupport investigation / resolution of security findings identified through automated testing, vulnerability assessments, security reviews, or compliance activities.\nPromote consistent application of secure coding, secure configuration, least privilege, secrets management, identity and access management, and other cybersecurity engineering practices.\nProvide technical guidance, daily supervision, direction to assigned technical staff.\nCommunicate cybersecurity risks, technical recommendations, remediation priorities, and implementation considerations to technical and program stakeholders.\nRequirements:\nPublic Trust: T4 or T5 (TS)\nBachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Information Systems, Risk Management or a related technical discipline or an Associate's degree in the above discipline with an additional 2 years of experience.\nMinimum of five (5) years of relevant professional experience in cybersecurity, information security, DevSecOps, systems security engineering, application security, or a related technical field.\nDemonstrated experience analyzing cybersecurity requirements and implementing technical security solutions.\nExperience supporting DevSecOps processes and integrating cybersecurity activities into application development and deployment workflows.\nExperience performing cybersecurity risk assessments and identifying appropriate technical risk mitigation approaches.\nKnowledge of security principles, vulnerability management, security testing, access control, secure configuration, and continuous monitoring.\nAbility to collaborate effectively with software development, security, engineering, and IT operations teams.\nAbility to develop clear technical documentation and communicate security requirements and risks to technical and non-technical stakeholders.\nExperience providing technical direction, supervision, or leadership to technical personnel.\n\nPreferred Qualifications:\n\nExperience implementing DevSecOps practices within federal government environments.\nExperience designing or operating secure CI/CD pipelines.\nExperience with automated application and infrastructure security testing technologies.\nExperience securing cloud-native applications, containers, Kubernetes environments, microservices, APIs, and infrastructure-as-code deployments.\nExperience with source-code management, build automation, artifact repositories, container registries, and automated deployment technologies.\nFamiliarity with federal cybersecurity requirements, security controls, risk management, and continuous monitoring practices.\nExperience supporting security authorization, assessment, remediation, and compliance activities.\nExperience implementing security gates and automated compliance checks within CI/CD pipelines.\nKnowledge of secure software development practices, supply-chain security, secrets management, identity and access management, and zero-trust security principles.\nRelevant cybersecurity, cloud, DevSecOps, or technical certifications are desirable.\n\nTotal Rewards Statement\n\nWe believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $100,000.00-$110,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.\n\nBeyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!\n\nConnected Logistics respects the need for confidentiality for all applicants.\n\nConnected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.\n\nConnected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.\n\nEOE/Disability/Veterans","datePosted":"2026-09-25T11:33:37.731Z","dateModified":"2026-09-25T11:33:37.731Z","hiringOrganization":{"@type":"Organization","name":"Connectedlogistics","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Fairfax","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"57b6072f80cd8708829b77eb"},"url":"https://jobsearcher.com/jobs/57b6072f80cd8708829b77eb"}}