onsite
DevSecOps Engineer - Innovative Defense Technologies
Security Engineer
DevSecOps Engineer responsible for building and securing CI/CD pipelines, automating infrastructure on AWS, and integrating security tooling across cloud and classified environments.
About the role
Key Responsibilities
- Design, implement, and maintain CI/CD pipelines that embed automated security testing and compliance checks.
- Develop and manage infrastructure-as-code using Terraform to provision and govern resources in AWS and hybrid environments.
- Containerize applications with Docker and orchestrate deployments on Kubernetes clusters, ensuring secure configurations and runtime hardening.
- Integrate static and dynamic application security scanning tools (SAST, DAST, SBOM) into the development workflow.
- Collaborate with development and security teams to define security policies, remediate findings, and promote a DevSecOps culture.
- Monitor, troubleshoot, and continuously improve platform performance, reliability, and security posture.
Requirements
- 3+ years of hands‑on experience in DevOps/DevSecOps roles, preferably in mission‑critical or regulated environments.
- Proficiency with AWS services (EC2, S3, IAM, CloudWatch) and infrastructure‑as‑code tools such as Terraform.
- Strong knowledge of container technologies (Docker) and orchestration platforms (Kubernetes).
- Experience integrating security scanning tools (e.g., SonarQube, Checkmarx, Trivy) into CI/CD pipelines.
- Solid scripting skills in Python or Bash and familiarity with Git‑based version control and CI systems (Jenkins, GitLab CI, GitHub Actions).
Skills
awsterraformkubernetesdockercicd