Sr DevSecOps Engineer I

    • Mount Indie
  • Washington, DC
  • Posted 8 hours ago | Updated 8 hours ago

Overview

On Site
$155,000 - $200,000
Full Time

Skills

Software development methodology
Security QA
Vulnerability scanning
Regulatory Compliance
Penetration testing
Identity management
Collaboration
Documentation
FOCUS
Software development
Jenkins
GitLab
Continuous delivery
Selenium
Fortify
DevSecOps
Terraform
Ansible
Scripting
Python
Bash
OWASP
Security clearance
Continuous integration
Security+
Cloud computing
Amazon Web Services
DevOps
Orchestration
Docker
Kubernetes
Microsoft Azure
Google Cloud
Google Cloud Platform
Good Clinical Practice

Job Details

Job Description

Job Description

Mount Indie is in search of aSr.DevSecOps Engineer to join our dynamic team. As a DevSecOps Engineer, you will play a critical role in designing, implementing, and maintaining secure and efficient software development and deployment pipelines. You will collaborate with cross-functional teams to integrate security practices seamlessly into the development and operations lifecycle, ensuring the delivery of high-quality, secure, and reliable software solutions.


Responsibilities:

  • Work across development, operations, and security teams to integrate security practices into the SDLC.
  • Provide design, implementation, and maintenance efforts to CI/CD pipelines, incorporating automated security testing, vulnerability scanning, and compliance checks.
  • Provide development and support to infrastructure as code (IaC) templates and configurations, ensuring security best practices.
  • Conduct security assessments, code reviews, and penetration testing to identify and address vulnerabilities in applications, code, and infrastructure.
  • Provide monitoring and analysis of systems and applications logs to detect and respond to security incidents.
  • Implement and administer identity and access management (IAM) solutions.
  • Collaborate with software engineers to provide guidance on secure coding practices and assist in remediation of security findings.
  • Contribute to investigation and mitigation of security incidents in a timely manner.
  • Participate in the development and maintenance of security policies, procedures, and documentation.


Required Qualifications:

  • At least 6 years of experience as a DevSecOps Engineer or similar role, with a focus on integrating security into the software development lifecycle.
  • Strong experience with DevOps practices, CI/CD pipelines, and automation tools (e.g., Jenkins, GitLab CI/CD, Artifactory, SonarQube, Selenium, Fortify, Acunetix, and Prisma Cloud).
  • Strong Experience building DevSecOps solutions at scale across IL5 to IL6+ classification domains
  • Experience with infrastructure as code (IaC) tools such as Terraform, CloudFormation, or Ansible.
  • Experience with cloud platforms (e.g., AWS, Azure, GCP) and securing cloud-based applications and services.
  • Experience with scripting languages (e.g., Python, Bash) for automation and tool integration.
  • Knowledge of security best practices, common vulnerabilities, and exposure to security frameworks (e.g., OWASP, NIST).
  • Active TS/SCI Clearance with CI poly.


Desired Qualifications:

  • Current certifications to meet 8140/8570 standards (e.g. Security+ or above)
  • Cloud certifications such as AWS Solutions Architect Associate/Professional, AWS SysOps Administrator, AWS Developer, or AWS DevOps Engineer
  • Familiarity with containerization and orchestration technologies (e.g., Docker, Kubernetes, OpenShift, EKS) and securing containerized applications.
  • Experience with low-to-high development models and associated tooling
  • Experience with Microsoft Azure or Google Cloud Platform (GCP)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.