Mid-Level DevSecOps Engineer
*Company Overview*
Embedded Alliance is an enterprise solutions company dedicated to enhancing customer workflows through innovative geospatial, data storage, analytics, development, and dissemination services. We are passionate about fostering a collaborative environment that promotes personal growth and work/life balance for our team members.
*Job Summary*
The successful candidate will play a critical role in the integration of security into all stages of the software development lifecycle, ensuring mission-critical systems are secure, scalable, and rapidly deployable. This position supports our customer mission to provide timely, relevant, and accurate geospatial intelligence in support of national security.
We are seeking a skilled DevSecOps Engineer to support the design, implementation, and maintenance of secure development and deployment pipelines. This role focuses on integrating security best practices into CI/CD workflows, supporting containerized environments, and maintaining cloud infrastructure within classified and unclassified environments.
The ideal candidate has hands-on experience with CI/CD automation, container orchestration, and cloud infrastructure, along with a strong understanding of secure deployment practices. This individual will collaborate closely with software engineers, security teams, and system administrators to ensure secure and reliable system delivery.
*Clearance Level Required:*
Active Top Secret/SCI with the ability to successfully pass a Polygraph examination.
*Responsibilities*
* *CI/CD Pipelines:* Design, implement, and maintain secure CI/CD pipelines supporting microservices and container-based deployments.
* *Containerization & Orchestration:* Support containerized environments using Docker and orchestration platforms such as Kubernetes or OpenShift.
* *Infrastructure as Code (IaC):* Manage and monitor infrastructure using tools such as Terraform or CloudFormation.
* *Cloud Infrastructure:* Support secure provisioning, configuration, and monitoring of cloud environments (e.g., AWS, Azure).
* *Shift-Left Security:* Integrate security tools and best practices into development workflows, including static and dynamic code analysis.
* *Environment Hardening:* Collaborate with engineering and security teams to harden environments and secure cloud-native architectures.
* *Troubleshooting & Support:* Diagnose and resolve issues related to builds, deployments, and system performance.
* *Compliance Support:* Conduct vulnerability assessments and assist in compliance activities aligned with RMF, STIGs, or related security frameworks.
* *Documentation & Process Improvement:* Document configurations and contribute to continuous improvement of DevSecOps processes and tooling. .
*Basic Qualifications:*
* *US citizenship is required per contract.*
* Bachelor’s degree in Computer Science, Engineering, or related discipline with 4–8 years of relevant experience; or Master’s degree with 2–6 years of relevant experience.
* *CI/CD Tools:* Hands-on experience with tools such as Jenkins, GitLab CI, GitHub Actions, or similar platforms.
* *Scripting & Automation:* Proficiency in scripting languages such as Python, Bash, or PowerShell.
* *Infrastructure as Code:* Experience using Terraform, CloudFormation, or similar tools.
* *Cloud Platforms:* Experience working within AWS, Azure, or similar cloud environments.
* *AWS CDK:* Hands-on experience deploying and managing AWS infrastructure using CDK.
* *Containerization:* Experience with Docker.
* *GitLab* *CI/CD:* Build, maintain, and troubleshoot automated GitLab pipelines.
* *Integration:* Experience integrating CDK, GitLab, Docker, and ECS for automated deployments.
* *AWS* *ECS:* Deploy, manage, and troubleshoot containerized applications using ECS.
* *Orchestration:* Experience with Kubernetes, OpenShift, or similar platforms.
* *Secure Engineering Practices:* Working knowledge of secure coding practices, vulnerability management, and code scanning tools.
*Preferred Qualifications:*
* Knowledge of Zero Trust Architecture principles.
* Industry certifications such as AWS Certified DevOps Engineer, CKA, Security+, or GIAC certifications.
Pay: $100,000.00 - $140,000.00 per year
Benefits:
* 401(k)
* 401(k) matching
* Dental insurance
* Health insurance
* Life insurance
* Paid time off
* Parental leave
* Vision insurance
Experience:
* Relevant: 4 years (Preferred)
Security clearance:
* Top Secret (Required)
Work Location: In person