- Company Name
- Guidehouse
- Job Title
- Cloud DevSecOps Engineer
- Job Description
-
**Job Title**
Cloud DevSecOps Engineer
**Role Summary**
Design, implement, and maintain secure, test‑driven CI/CD pipelines using Harness and AWS native tools. Govern and automate cloud infrastructure with infrastructure‑as‑code and configuration‑as‑code, ensuring compliance with federal DevSecOps policies. Orchestrate deployment of microservices across development, test, staging, and production environments in AWS (EKS, ECS, API Gateway, Lambda, RDS). Collaborate with development and architecture teams to align pipeline design with system architecture and security best practices.
**Expectations**
- U.S. citizenship; ability to obtain Public Trust clearance.
- Minimum 10 years (Bachelor’s) or 8 years (Master’s) of relevant experience in DevOps/cloud engineering.
- Proven ability to work independently and communicate effectively with technical teams.
**Key Responsibilities**
1. Build and maintain gated, CI/CD pipelines in Harness with AWS services (Lambda, RDS, API Gateway, ECR).
2. Apply infrastructure‑as‑code (Terraform, CloudFormation) and configuration‑as‑code to automate cloud provisioning.
3. Automate build, test, and deployment of backend microservices, React front‑end, and APIs.
4. Integrate automated testing, static code analysis, and security scanning (SonarQube, Checkmarx, Prisma Cloud, Sonatype Lifecycle).
5. Manage deployments across Dev, Test, Staging, and Prod environments in AWS; administer EKS, ECS, and API Gateway.
6. Configure and administer cloud components (RDS, Lambda, API Gateway).
7. Use GitHub Enterprise for source control, branch protection, and build administration.
8. Implement least‑privilege service accounts and credential management via HashiCorp Vault.
9. Ensure logging, monitoring, and vulnerability management using Splunk, CrowdStrike, Tenable Nessus, Flexera.
10. Maintain compliance with USCIS DevSecOps policies, governance standards, and federal or regulated environment requirements.
**Required Skills**
- DevOps and cloud engineering experience, primarily in AWS.
- Strong proficiency with AWS services: Lambda, RDS, API Gateway, ECR, EKS, ECS.
- Expertise in CI/CD tooling (Harness, GitHub Enterprise) and scripting.
- Containerization and Kubernetes (EKS) administration.
- Automated testing and static analysis tools: SonarQube, Checkmarx.
- Artifact management: Nexus Repository, Sonatype Lifecycle.
- Credential management with HashiCorp Vault.
- Agile methodologies and Git feature‑branch workflows.
- Experience with gated releases and production deployments.
- Familiarity with monitoring tools (Splunk, New Relic, Prometheus, Grafana) and security tools (CrowdStrike, Tenable Nessus, Flexera).
- Knowledge of infrastructure‑as‑code (Terraform, CloudFormation).
- Service account management and RBAC in Kubernetes.
**Required Education & Certifications**
- Bachelor’s degree + 10 years of experience **or** Master’s degree + 8 years of experience in software development, DevOps, or cloud engineering.
- Preferred (optional) certifications:
- AWS Certified DevOps Engineer – Professional
- AWS Certified Solutions Architect – Associate
- Certified Kubernetes Administrator (CKA) or Kubernetes Administrator (CKA)
- HashiCorp Certified: Vault Associate
- AWS Certified CloudOps Engineer
---
Andrews afb, United states
On site
08-12-2025