This position is posted by Jobgether on behalf of a partner company. We are currently looking for a DevSecOps Engineer - Clearance Required in the United States.
The DevSecOps Engineer will play a critical role in integrating security, automation, and compliance throughout the Software Development Lifecycle for mission-critical systems. You will design, implement, and optimize CI/CD pipelines while embedding security testing tools and practices into cloud-based environments. This role requires close collaboration with development, cybersecurity, and operations teams to ensure applications meet strict federal security standards. The ideal candidate is hands-on with cloud automation, containerization, and secure software practices, and thrives in a fast-paced, Agile environment supporting DoD systems. This position offers the opportunity to shape the security posture of cutting-edge government applications while advancing your technical expertise.
Accountabilities:
- Design, extend, and implement CI/CD pipelines using tools such as GitLab CI, Jenkins, Terraform, and CloudFormation.
- Integrate and maintain security testing tools (SAST, DAST, SCA, IAST) within CI/CD workflows.
- Build and maintain AWS GovCloud environments following DevSecOps best practices.
- Provide guidance and training to development teams on secure coding practices and effective use of security tools.
- Participate in threat modeling, security architecture reviews, and continuous monitoring for compliance with DoD RMF, NIST SP 800-53, and STIG requirements.
- Develop automated gates to enforce security policies, vulnerability scanning, and compliance checks before deployment.
- Facilitate the automation of DoD Security Technical Implementation Guides (STIGs) for operating systems, middleware, and application stacks.
- Support rapid response and surge operations for additional systems as needed.
Requirements
- Active Secret security clearance.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent professional experience).
- 6+ years of experience in AWS cloud engineering, CI/CD automation, and secure DevOps practices.
- Proficiency in scripting languages such as Python, PowerShell, or Bash.
- Experience with containerization and orchestration (Docker, Kubernetes, OpenShift) and securing containerized applications.
- Hands-on knowledge of DoD RMF, NIST SP 800-53, STIG compliance, and government ATO processes.
- Familiarity with logging and monitoring tools for security event analysis (e.g., ELK Stack, Splunk, Prometheus).
- Relevant certifications preferred, such as AWS Certified Security – Specialty, CISSP, or Azure Security Engineer Associate.
- Experience in secure software supply chain management, artifact validation, and Agile frameworks (SAFe certification preferred).
Benefits
- Competitive salary range of $131,987 - $227,328.
- Comprehensive healthcare coverage including medical, dental, and vision.
- Flexible paid time off and wellness programs.
- Professional development and training opportunities.
- Collaborative and mission-focused work environment supporting federal programs.
- Occasional travel to program events, PI planning, and stakeholder engagement sessions.
Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching.
When you apply, your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly.
🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience, and achievements.
📊 It compares your profile to the job’s core requirements and past success factors to determine your match score.
🎯 Based on this analysis, we automatically shortlist the three candidates with the highest match to the role.
🧠 When necessary, our human team may perform an additional manual review to ensure no strong profile is missed.
The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role. Once the shortlist is completed, we share it directly with the company that owns the job opening. The final decision and next steps (such as interviews or additional assessments) are then made by their internal hiring team.
Thank you for your interest!
#LI-CL1