- Company Name
- Govini
- Job Title
- DevSecOps Engineer
- Job Description
-
Job Title: DevSecOps Engineer
Role Summary:
Design, build, and maintain secure CI/CD pipelines and infrastructure for federally‑accredited environments (FedRAMP, IL5). Lead automation, vulnerability management, and compliance documentation to support continuous delivery of cloud‑native applications for defense and intelligence stakeholders.
Expactations:
- U.S. citizenship and the ability to obtain or maintain a U.S. security clearance.
- Proven experience securing and operating in FedRAMP/IL5 compliant environments.
- Strong command over automation, scripting, and container orchestration.
- Ability to translate complex security requirements into actionable controls and documentation (SSPs, architecture diagrams).
Key Responsibilities:
- Deploy and manage CI/CD pipelines using GitLab, Jenkins, Helm, and Kubernetes on AWS, GCP, or Azure.
- Integrate security tools (static/dynamic scanning, IaC scanning) into the build process, remediate identified vulnerabilities, and document outcomes.
- Maintain system monitoring and alerting (Splunk, PagerDuty, Prometheus, Grafana) to ensure operational security posture.
- Produce and update System Security Plans, architecture diagrams, and other evidence artifacts for ATO governance.
- Collaborate with engineering teams to interpret security requirements and design scalable, compliant solutions.
- Act as a security SME, ensuring that delivered architectures remain within the scope of the Authorization to Operate.
Required Skills:
- Proficiency in Linux/Unix command line and shell scripting.
- Hands‑on operational experience with AWS, GCP, and/or Azure.
- Deep knowledge of FedRAMP, FISMA, DoD SRG, NIST 800‑171 frameworks.
- Experience building and maintaining CI/CD pipelines with Jenkins, GitLab CI, or similar.
- Familiarity with infrastructure‑as‑code and container orchestration (Docker, Kubernetes, Helm).
- Expertise in systems monitoring/alerting tools (Splunk, PagerDuty, Prometheus, Alertmanager, Grafana).
- Ability to produce clear, comprehensive security documentation (SSPs, architecture diagrams).
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Mathematics, or equivalent professional experience.
- Current possession of a valid U.S. security clearance, or the capability to obtain one under employer sponsorship.
Pittsburgh, United states
On site
07-12-2025