JOBSEARCHER

Jr. DevSecOps Engineer

Series A GovTech Compliance Startup ONSITE in Arlington, VARole Focus & Technical Matrix:Zero Trust & Identity: Monitoring Zscaler connectors, HashiCorp & Vault basic secret updates.Infrastructure as Code: Running pre-written Terraform plans, Git PR workflows, fundamental CloudFormation playbooks.Security & Compliance: FedRAMP baselines, sorting Wiz/Qualys vulnerability alerts, basic CrowdStrike endpoint checksObservability & Ops: Grafana dashboard upkeep, CloudWatch metrics, ServiceNow ticketing, shadow on-call protocolsKey Responsibilities:Zero Trust & Identity Operations● Assist in monitoring Zero Trust Network Access tools (Zscaler ZPA / PRA), verifyingapplication connectors and remote access pathways remain operational.● Support secrets management workflows within HashiCorp Vault, including basiccredential generation, entry updates, and confirming automated rotations execute withouterror.● Review basic IAM permissions and cloud role policies to ensure alignment with least-privilege models under senior engineering review.Infrastructure & Automation Support● Run, test, and troubleshoot pre-defined Terraform modules across development andstaging environments in AWS, Azure, or GCP.● Identify and log configuration drift or environment resource issues, assisting seniorengineers with standard infrastructure patching and remediation tasks.● Review cloud security groups, public endpoint configurations, and basic network routes to cross-check them against compliance baselines.CI/CD & Pipeline Maintenance● Monitor and triage failing CI/CD pipeline runs within GitHub Actions, GitLab CI, or AzureDevOps, escalating systemic errors to the team.● Review automated security scan readouts (SAST, SCA, and container scans) embeddedin the pipeline.● Assist in updating, building, and running security base-image layers for containers(Docker) destined for managed Kubernetes clusters (EKS, AKS, GKE).Compliance Monitoring & Change Administration● Assist compliance with the programmatic gathering of audit evidence for ongoingFedRAMP Continuous Monitoring (ConMon) cycles, specifically targeting CM-2, CM-6,AU-2, and SC-12 controls.● Assist with Plan of Action and Milestones (POA&M) ticket creation, tracking remediationdeadlines across the platform.● Draft and submit technical change requests within ServiceNow, ensuring correct structural documentation for review by the Change Advisory Board (CAB).Observability & Incident Support● Maintain and adjust basic Grafana and CloudWatch dashboards, ensuring alertnotifications are mapped accurately to operational notification streams.● Monitor standard system health indicators, performing low-severity alert triaging toprevent production fatigue.● Maintain open telemetry operations for ongoing application monitoring● Participate in a shadow on-call rotation capacity (PagerDuty) alongside senior engineersto develop live diagnostic and real-time incident resolution skills.QualificationsRequired Experience & Core Aptitude● Experience: 1–2 years of experience in an entry-level technical role (e.g., IT Support,Junior Systems Administrator, Helpdesk/NOC, Cyber Operations, or relevant cloudengineering internship/bootcamp).● Location: Must be able to work fully on-site at our Washington, DC office.● Linux Fundamentals: Comfortable navigating the Linux command line (Bash), managingfile permissions, viewing system logs, and executing basic terminal commands.● Networking Core: Solid grasp of foundational networking concepts (DNS, TCP/IP,HTTP/HTTPS, SSH, Subnets, and basic firewall/security group rules).● Cloud & Version Control Exposure: Foundational exposure to public cloud concepts(AWS preferred) and basic Git workflows (cloning, branching, commits, Pull Requests).● Basic Scripting: Ability to read and write fundamental scripts in Python or Bash toautomate repetitive tasks, parse logs, or interact with simple APIs.● Security Mindset: Strong conceptual understanding of core security principles (LeastPrivilege, Multi-Factor Authentication, IAM basics, Encryption).● Soft Skills & Growth Mindset: High technical curiosity, excellent written documentationhabits, and a strong eagerness to learn directly from senior engineers on-siteNice to Have (Bonus Experience / Technologies You Will Learn)Exposure to Infrastructure as Code concepts (Terraform or CloudFormation).Familiarity with container basics (Docker) or CI/CD pipelines (GitHub Actions, GitLab CI)Basic experience using ticketing or monitoring tools (Jira, ServiceNow, CloudWatch,Grafana)Conceptual awareness of federal security or compliance frameworks (FedRAMP, NIST800-53, or SOC 2).Desirable CertificationsCompTIA Security+ or Linux+AWS Certified Cloud Practitioner or Solutions Architect (Associate)HashiCorp Certified: Terraform Associate (or actively pursuing)Certified: Terraform Associate (or actively pursuing)Microsoft Certified: Azure Fundamentals