Senior DevSecOps Engineer
Overview
In this role you will build and run the Cloud Native Platform (CNP) for NGA, delivering secure platform configuration, CI/CD integration, and automation across multi-cloud and on‑prem environments. You will lead major platform workstreams and ensure quality within time and budget, enabling Enterprise Architecture and BI capabilities. You’ll stand up and operate Kubernetes clusters with GitOps and observability tooling, while implementing Zero Trust and IAM/secrets best practices. This is a mission‑critical, defense‑focused opportunity to shape a scalable, secure digital engineering ecosystem.
Compensation / Benefitsmedical benefitsfinancial benefitsother benefitsvacation/time offretirement planstraining opportunities
ResponsibilitiesBuild and operate the Cloud Native Platform (CNP) supporting NGAConfigure platform, CI/CD integration, automation, and infrastructure management with Zero Trust architectureLead technical/engineering portions of major platform workstreams and ensure on-time, within-budget deliverablesDesign and deploy a unified Cloud Native Platform for Enterprise Architecture and BI across multi-cloud environmentsStand up and operate Kubernetes clusters (EKS, AKS, RKE2, NKP) with GitOps, service mesh, and observability toolingImplement identity and access management integration (Keycloak or Azure Entra ID) and secrets management (Vault or Key Vault)Harden platform per DoD Zero Trust guidance and enforce security policiesBuild and maintain IaC/CaC for platform componentsSupport air-gapped environment management and license toolingDeliver CI/CD pipelines and automation for telemetry, inventory, and centralized access servicesSupport onboarding, help desk integration, high availability/DR, and a unified portal as the platform scales
Key requirements10+ years of platform engineering, cloud infrastructure, or DevSecOps experienceHands-on production Kubernetes deployment (EKS, AKS, RKE2, NKP, or comparable) with GitOpsExperience implementing Zero Trust Architecture (identity federation, secrets management, policy enforcement)Strong CI/CD pipeline design, IaC (Terraform, Ansible, or comparable), and container image hardening/supply chain securityleadershipcross-functional collaborationproblem-solvingKubernetes (production experience)GitOps workflowsmulti-cloud and on‑prem deployments