{"schemaVersion":"jobsearcher.job.v1","id":"f9752e615b7b097ad3df92de","url":"https://jobsearcher.com/jobs/f9752e615b7b097ad3df92de","canonicalUrl":"https://jobsearcher.com/jobs/f9752e615b7b097ad3df92de","title":"DevOps Transformation Architect - GitHub Actions","description":"Summary\n\nWe are looking for a Pillar Resource / Architect-Lead to drive an enterprise-scale CI/CD modernization program, migrating a large Jenkins ecosystem to GitHub Actions across multiple applications, platforms, and technology stacks. The program objective is to migrate and standardize pipelines, implement reusable workflow patterns, define the GitHub Actions operating model, and ensure secure, compliant, and scalable execution with measurable improvements to developer velocity and release reliability.\n\nThis role is both strategic and hands-on: you will define the migration approach and standards, and also guide (and unblock) teams through real pipeline conversions.\n\nKey Responsibilities\n\nProgram & Architecture Leadership\n\nOwn the end-to-end Jenkins GitHub Actions migration architecture and execution plan for large-scale pipeline migration.\nDefine a migration factory approach: pipeline inventory, complexity scoring, wave planning, automation, and cutover strategy.\nCreate and maintain reference architectures for GitHub Actions across major stacks (Java, .NET, Node.js, Python, containerized workloads, etc.).\nEstablish an operating model: standards, governance, onboarding playbooks, and platform support processes.\n\nGitHub Actions Platform & Standardization\n\nDesign and implement reusable workflows and composite actions for common CI/CD patterns: Build/test/package, security scans, artifact publishing, deploy/promote, approvals, rollback hooks\nDrive org-wide best practices for: Branch protections, required checks, environments, approvals, CODEOWNERS, repo standards\nBuild self-service onboarding: templates, documentation, developer enablement sessions.\n\nRunners, Scalability & Reliability\n\nDefine and implement runner strategy:\nGitHub-hosted vs self-hosted runners\nrunner groups, isolation boundaries, network controls, scaling strategy (VM/Kubernetes)\nEstablish reliability and observability:\nmonitoring, alerting, queue/latency management, incident runbooks\n\nSecurity, Compliance & Audit Readiness\n\nIntegrate enterprise security controls into pipelines:\nSecrets governance (Vault/Secrets Manager), OIDC auth, least privilege\nSAST/SCA/DAST integration, SBOM generation, artifact signing and provenance (where applicable)\nEnsure pipelines meet compliance/audit expectations:\nApprovals, segregation of duties, traceability, immutable logs/evidence\n\nRequired Qualifications\n\n10+ years in DevOps / CI/CD / Platform Engineering roles, with architect/lead ownership.\nProven experience leading enterprise Jenkins migrations or large CI/CD transformations.\nDeep expertise in GitHub Actions: Workflow design, reusable workflows, composite actions, secrets, environments, approvals, policy controls\nStrong understanding of CI/CD for multiple stacks (at least 2–3 of: Java, .NET, Node, Python, containers).\nExperience with self-hosted runners (VM or Kubernetes) and scaling/operationalization.\nStrong scripting/automation skills: Bash/Python/PowerShell, YAML, GitHub APIs (REST/GraphQL is a plus).\nStrong communication and stakeholder management across engineering + security + leadership.\n\nPreferred Qualifications (Nice to Have)\n\nExperience with regulated enterprise environments (BFSI strongly preferred).\nExperience implementing:\nOIDC-based auth to cloud providers\nSBOM/provenance, artifact signing, supply-chain security (SLSA concepts)\nFamiliarity with:\nTerraform/Ansible, Kubernetes, ArgoCD/GitOps\nArtifactory/Nexus, container registries\nSonarQube/CodeQL, dependency scanning tools\nExperience setting up CI/CD governance: standards, templates, enablement, documentation, and adoption programs.","company":"Cloudfulcrum","rawCompany":"cloudfulcrum","city":"Reston","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-04-12T20:03:11.039Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1211.00","title":"Computer Systems Analysts","slug":"computer-systems-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevOps Transformation Architect - GitHub Actions","description":"Summary\n\nWe are looking for a Pillar Resource / Architect-Lead to drive an enterprise-scale CI/CD modernization program, migrating a large Jenkins ecosystem to GitHub Actions across multiple applications, platforms, and technology stacks. The program objective is to migrate and standardize pipelines, implement reusable workflow patterns, define the GitHub Actions operating model, and ensure secure, compliant, and scalable execution with measurable improvements to developer velocity and release reliability.\n\nThis role is both strategic and hands-on: you will define the migration approach and standards, and also guide (and unblock) teams through real pipeline conversions.\n\nKey Responsibilities\n\nProgram & Architecture Leadership\n\nOwn the end-to-end Jenkins GitHub Actions migration architecture and execution plan for large-scale pipeline migration.\nDefine a migration factory approach: pipeline inventory, complexity scoring, wave planning, automation, and cutover strategy.\nCreate and maintain reference architectures for GitHub Actions across major stacks (Java, .NET, Node.js, Python, containerized workloads, etc.).\nEstablish an operating model: standards, governance, onboarding playbooks, and platform support processes.\n\nGitHub Actions Platform & Standardization\n\nDesign and implement reusable workflows and composite actions for common CI/CD patterns: Build/test/package, security scans, artifact publishing, deploy/promote, approvals, rollback hooks\nDrive org-wide best practices for: Branch protections, required checks, environments, approvals, CODEOWNERS, repo standards\nBuild self-service onboarding: templates, documentation, developer enablement sessions.\n\nRunners, Scalability & Reliability\n\nDefine and implement runner strategy:\nGitHub-hosted vs self-hosted runners\nrunner groups, isolation boundaries, network controls, scaling strategy (VM/Kubernetes)\nEstablish reliability and observability:\nmonitoring, alerting, queue/latency management, incident runbooks\n\nSecurity, Compliance & Audit Readiness\n\nIntegrate enterprise security controls into pipelines:\nSecrets governance (Vault/Secrets Manager), OIDC auth, least privilege\nSAST/SCA/DAST integration, SBOM generation, artifact signing and provenance (where applicable)\nEnsure pipelines meet compliance/audit expectations:\nApprovals, segregation of duties, traceability, immutable logs/evidence\n\nRequired Qualifications\n\n10+ years in DevOps / CI/CD / Platform Engineering roles, with architect/lead ownership.\nProven experience leading enterprise Jenkins migrations or large CI/CD transformations.\nDeep expertise in GitHub Actions: Workflow design, reusable workflows, composite actions, secrets, environments, approvals, policy controls\nStrong understanding of CI/CD for multiple stacks (at least 2–3 of: Java, .NET, Node, Python, containers).\nExperience with self-hosted runners (VM or Kubernetes) and scaling/operationalization.\nStrong scripting/automation skills: Bash/Python/PowerShell, YAML, GitHub APIs (REST/GraphQL is a plus).\nStrong communication and stakeholder management across engineering + security + leadership.\n\nPreferred Qualifications (Nice to Have)\n\nExperience with regulated enterprise environments (BFSI strongly preferred).\nExperience implementing:\nOIDC-based auth to cloud providers\nSBOM/provenance, artifact signing, supply-chain security (SLSA concepts)\nFamiliarity with:\nTerraform/Ansible, Kubernetes, ArgoCD/GitOps\nArtifactory/Nexus, container registries\nSonarQube/CodeQL, dependency scanning tools\nExperience setting up CI/CD governance: standards, templates, enablement, documentation, and adoption programs.","datePosted":"2026-04-12T20:03:11.039Z","dateModified":"2026-04-12T20:03:11.039Z","hiringOrganization":{"@type":"Organization","name":"Cloudfulcrum","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Reston","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"f9752e615b7b097ad3df92de"},"url":"https://jobsearcher.com/jobs/f9752e615b7b097ad3df92de"}}