- Company Name
- webAI
- Job Title
- DevSecOps Engineer
- Job Description
-
**Job Title:**
DevSecOps Engineer
**Role Summary:**
Designs, builds, and secures scalable AI infrastructure for federal and regulated environments. Integrates DevOps practices with NIST, FedRAMP, and DISA STIG compliance, automates infrastructure, and supports MLOps pipelines for secure model deployment.
**Expectations:**
- Deliver fully compliant, auditable AI workloads on cloud and edge platforms.
- Maintain continuous security posture through automated monitoring, logging, and CI/CD pipelines.
- Collaborate cross‑functionally with security, legal, and public‑sector stakeholders to meet federal standards.
**Key Responsibilities:**
- Design, implement, and maintain secure cloud/edge infrastructure for government AI workloads.
- Manage containerization (Docker) and orchestration (Kubernetes) with performance, isolation, and compliance focus.
- Develop IaC using Terraform, Ansible, or Pulumi for secure, repeatable provisioning.
- Build and secure CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins) with encryption and vulnerability scanning.
- Ensure compliance with NIST SP 800‑53, FedRAMP, and DISA STIGs; produce audit‑ready evidence.
- Package and deliver containers, binaries, and configurations for restricted or air‑gapped environments.
- Configure monitoring, logging, and observability (Prometheus, Grafana, ELK, CloudWatch).
- Support MLOps workflows: model packaging, deployment, versioning, and governance.
- Document best practices and share knowledge on infrastructure and compliance.
**Required Skills:**
- 5+ years in DevOps, Site Reliability, or Infrastructure Engineering.
- Proficiency in Docker, Kubernetes, and cloud‑native deployment.
- Expertise in IaC with Terraform, Ansible, or Pulumi.
- Strong knowledge of NIST SP 800‑53, FedRAMP, and DISA STIG compliance.
- Experience with MLOps tools and model deployment pipelines.
- Programming/scripting in Python, Bash, or Go.
- CI/CD pipeline security integration (GitHub Actions, GitLab CI, Jenkins).
- Familiarity with observability platforms (Prometheus, Grafana, ELK, CloudWatch).
- Understanding of Zero Trust architecture and secure identity management.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Systems, or related field, or equivalent professional experience.
- Active U.S. security clearance or eligibility to obtain one.
- (Preferred) Professional certifications such as AWS Certified DevOps Engineer, Certified Kubernetes Administrator, or Cloud Security Professional.