onsite
DevSecOps Engineer - Integral Federal
Security Engineer
Lead DevSecOps Engineer driving secure, automated CI/CD pipelines and maintaining FedRAMP High/DoD IL5 compliant cloud infrastructure for a federal data analytics environment.
About the role
Key Responsibilities
- Design, deploy, and operate data and application workloads in a FedRAMP High/DoD IL5 cloud environment, ensuring continuous compliance and Authority to Operate (ATO) status.
- Build and maintain automated CI/CD pipelines using industry‑standard tools, integrating security checks, code quality gates, and automated testing.
- Implement infrastructure as code (IaC) with Terraform, managing secure configuration, version control, and drift detection.
- Collaborate with security, compliance, and development teams to embed security controls, vulnerability scanning, and threat modeling into the development lifecycle.
- Monitor, troubleshoot, and optimize cloud performance, cost, and security posture, providing proactive incident response and root cause analysis.
Requirements
- 5+ years of experience in DevSecOps, cloud security, and CI/CD pipeline development.
- Proficiency with AWS services, Terraform, and security tooling (e.g., Snyk, Aqua, or similar).
- Deep understanding of FedRAMP High and DoD Impact Level 5 compliance requirements.
- Strong scripting skills (Python, Bash) and experience with container orchestration (Kubernetes or ECS).
- Excellent communication skills and ability to work cross‑functionally in a federal environment.