More jobs:
DevSecOps Engineer
Job in
Washington, District of Columbia, 20022, USA
Listed on 2026-01-27
Listing for:
IMAGINEEER LLC
Full Time
position Listed on 2026-01-27
Job specializations:
-
IT/Tech
Cybersecurity, Cloud Computing, IT Support, Systems Engineer
Job Description & How to Apply Below
Benefits:
- 401(k) matching
- Competitive salary
- Health insurance
- Paid time off
We are seeking a Dev Sec Ops Engineer with strong federal experience to lead secure CI/CD pipeline design, implementation, and operations—centered on Git Lab and modern cloud-native practices. This role will drive security-by-design across the software delivery lifecycle, working closely with development, security, and infrastructure teams to ensure compliant, automated, and repeatable deployments for federal customers.
Key Responsibilities:- CI/CD Pipeline Engineering (Git Lab-focused)
- Design, build, and maintain Git Lab CI/CD pipelines for multiple applications and services (microservices, APIs, infrastructure-as-code).
- Implement standardized pipeline templates and reusable jobs to support consistent delivery across programs.
- Integrate automated build, test, security scanning, and deployment steps into Git Lab pipelines.
- Optimize pipeline performance (caching, parallelization, artifact management) to reduce build and deploy times.
- Dev Sec Ops & Automation
- Embed security controls early and continuously in the pipeline (SAST, DAST, SCA, container scanning, IaC scanning).
- Automate compliance checks, policy-as-code, and configuration drift detection.
- Implement and support infrastructure-as-code (IaC) solutions (Terraform, Ansible, Cloud Formation, etc.) to provision and manage cloud and on-prem environments.
- Integrate CI/CD with monitoring, logging, and alerting tools to provide full visibility across the delivery pipeline.
- Federal Environment & Compliance
- Design and operate pipelines aligned with federal security and compliance requirements (e.g., FISMA, NIST 800‑53, FedRAMP, Zero Trust principles).
- Work with ISSOs, AO teams, and security/compliance stakeholders to provide pipeline and environment documentation supporting ATO packages.
- Ensure secure configuration of build agents, runners, secrets management, and artifact repositories in compliance with agency policies.
- Collaboration & Technical Leadership
- Partner with development teams to define branching strategies, code review workflows, and release management practices in Git Lab.
- Collaborate with cybersecurity teams to respond to vulnerabilities, findings, and audits, and to implement remediations in code and pipelines.
- Provide guidance, documentation, and training to engineers and stakeholders on Dev Sec Ops best practices and Git Lab usage.
- Contribute to and enforce standards for coding, configuration management, and deployment processes.
- 5+ years of hands‑on experience in Dev Ops/Dev Sec Ops roles.
- 3+ years of experience designing and managing Git Lab CI/CD pipelines at scale (Git Lab SaaS or self‑managed).
- Demonstrated experience supporting federal or public sector programs (civilian, DoD, or health agencies) with understanding of federal security expectations.
- Strong experience with:
- CI/CD tools:
Git Lab CI, runners, Git Lab registry. - Languages / frameworks: at least one of Python, Java, JavaScript/Type Script, .NET, Go.
- Containers & orchestration:
Docker, Kubernetes (EKS/AKS/GKE or on‑prem equivalents). - Infrastructure-as-Code:
Terraform and/or Ansible (or equivalent). - Security tooling: SAST, DAST, SCA, container image scanning, secrets scanning.
- Hands‑on experience deploying to cloud environments (AWS, Azure, GCP) and/or federal on‑prem/private cloud environments.
- Familiarity with NIST, FedRAMP, Zero Trust
, and common federal security control families (access control, configuration management, incident response, audit & accountability). - Strong scripting and automation skills (Bash, Python, or similar).
- Excellent communication skills with the ability to explain complex technical concepts to non‑technical stakeholders.
- CI/CD tools:
- Must be a U.S. Citizen and able to obtain a public trust clearance.
Competencies:
- Prior experience working directly with HHS, NIH, CMS, ACF, DoD, or similar federal agencies.
- Experience supporting ATO processes, security assessments, and remediation of audit findings.
- Hands‑on experience integrating Git Lab with:
- Issue tracking (Jira, Git Lab issues)
- Artifact repositories (Git Lab registry, Nexus, Artifactory)
- SIEM / logging…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×