Job Closed
This listing is no longer active.
Mission Driven, Customer Focused, Innovative Services & Solutions GSA MAS, ISO9001, 20000, 27001, & CMMI SVC/DEV Lvl 3
DevOps Lead (Contractor)
Location
United States
Posted
81 days ago
Salary
0
Seniority
Lead
No structured requirement data.
Job Description
DevOps Lead (Contractor)
Steel Point Solutions
Steel Point Solutions is an amazing SBA Certified (8a), HUBZone, Small Disadvantaged Business (SDB) and a Woman Owned Small Business (WOSB) company. Established in 2013 with a vision of offering world class, integrated business solutions for all levels of Government and commercial enterprises. We are represented by a team of talented and qualified professionals who know how essential efficient, cost-effective integrated solutions are to your organization’s success. Leveraging these resources, we strive daily to lead the industry in program management and service delivery. Role Summary The DevSecOps Transformation Engineer at Steel Point Solutions is responsible for leading the transformation of DevOps practices by integrating security and Geographic Information Systems (GIS) into the software development lifecycle. This role focuses on implementing and optimizing DevSecOps processes, tools, and practices to enhance security, automation, and GIS functionality. The Engineer collaborates with development, operations, security, and GIS teams to ensure that security and GIS capabilities are integrated seamlessly into CI/CD pipelines, fostering a culture of continuous security improvement, automation, and resilience. Key Roles & Responsibilities - DevSecOps and GIS Strategy Implementation: Develop and execute strategies to integrate security and GIS into DevOps practices, ensuring that both are embedded throughout the software development lifecycle. - Pipeline Security and GIS Integration: Design and implement security controls and GIS data processing workflows within CI/CD pipelines, automating security checks, vulnerability assessments, and compliance verifications along with GIS data integrity validations. - Tooling & Automation: Evaluate, select, and deploy DevSecOps and GIS tools that enhance automation, security, GIS data management, and overall efficiency, including static and dynamic analysis, vulnerability scanning, and compliance management with a focus on GIS environments. - Process Optimization: Analyze and optimize existing DevOps processes to incorporate both security and GIS best practices, improving the effectiveness and efficiency of software development and delivery processes. - Collaboration & Training: Work closely with development, operations, security, and GIS teams to foster collaboration, provide training on DevSecOps and GIS practices, and promote a shared responsibility for security and spatial data management. - Incident Response & Management: Lead efforts to identify, manage, and mitigate security incidents and vulnerabilities in both the DevSecOps and GIS environments, ensuring rapid resolution and minimal impact. - Continuous Improvement: Stay informed about the latest trends, tools, and techniques in DevSecOps, GIS technologies, and security, continuously refining processes and practices to address emerging security challenges and improve overall performance. Required Qualifications - Bachelor’s degree in Computer Science, Cybersecurity, GIS, or a related field. - 5+ years of experience in DevOps, security engineering, or related roles, with a focus on integrating security into DevOps practices and processes, - 2+ years of experience working with GIS technologies. - Certifications: - Relevant certifications such as Certified DevSecOps Engineer, AWS Certified Security, GIS Professional (GISP), or equivalent required - Proficient in DevOps tools (e.g., Jenkins, GitLab CI, Docker), GIS tools (e.g., ArcGIS, QGIS), and security testing tools (e.g., OWASP ZAP, Snyk). - Strong understanding of cloud security best practices and GIS data management in cloud environments (e.g., AWS, Azure, GCP). Preferred Qualifications - Master’s degree in Computer Science, Cybersecurity, GIS, or a related field preferred Skills & Competencies - DevSecOps & GIS Expertise: In-depth knowledge of DevSecOps principles, practices, and GIS technologies, with experience integrating both into CI/CD pipelines. - Security & GIS Automation: Expertise in automating security controls and GIS data validation workflows, including vulnerability scanning, spatial data analysis, and compliance management. - Cloud & Infrastructure Security: Strong understanding of cloud security principles and practices, including securing cloud-based GIS environments, containers, and microservices architectures. - Process Optimization: Ability to analyze and optimize DevOps processes to enhance both security and GIS data management, ensuring seamless integration. - Collaboration & Training: Proven ability to collaborate with cross-functional teams (development, security, GIS) and provide training on both DevSecOps and GIS best practices. - Incident Management: Strong skills in managing and mitigating security and GIS-related incidents, with experience leading incident response efforts. Candidates from Historically Underutilized Business Zones (HUBZone) are strongly encouraged to apply. To determine whether you reside in a HUBZone, visit: https://maps.certify.sba.gov/hubzone/map.
Job Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, GIS, or a related field.
- 5+ years of experience in DevOps, security engineering, or related roles, with a focus on integrating security into DevOps practices and processes.
- 2+ years of experience working with GIS technologies.
- Relevant certifications such as Certified DevSecOps Engineer, AWS Certified Security, GIS Professional (GISP), or equivalent required.
- Proficient in DevOps tools (e.g., Jenkins, GitLab CI, Docker), GIS tools (e.g., ArcGIS, QGIS), and security testing tools (e.g., OWASP ZAP, Snyk).
- Strong understanding of cloud security best practices and GIS data management in cloud environments (e.g., AWS, Azure, GCP).
- Preferred Qualifications
- Master’s degree in Computer Science, Cybersecurity, GIS, or a related field preferred.
- Skills & Competencies
- DevSecOps & GIS Expertise: In-depth knowledge of DevSecOps principles, practices, and GIS technologies, with experience integrating both into CI/CD pipelines.
- Security & GIS Automation: Expertise in automating security controls and GIS data validation workflows, including vulnerability scanning, spatial data analysis, and compliance management.
- Cloud & Infrastructure Security: Strong understanding of cloud security principles and practices, including securing cloud-based GIS environments, containers, and microservices architectures.
- Process Optimization: Ability to analyze and optimize DevOps processes to enhance both security and GIS data management, ensuring seamless integration.
- Collaboration & Training: Proven ability to collaborate with cross-functional teams (development, security, GIS) and provide training on both DevSecOps and GIS best practices.
- Incident Management: Strong skills in managing and mitigating security and GIS-related incidents, with experience leading incident response efforts.
- Candidates from Historically Underutilized Business Zones (HUBZone) are strongly encouraged to apply. To determine whether you reside in a HUBZone, visit: HUBZone Map .
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
DevSecOps – Fully Remote
TiimeLe compte pro qui simplifie votre compta. L'app tout-en-un pour entreprendre.
• Ensure implementation of security practices within products • Operationally manage security indicators on Cloud infrastructures (vulnerabilities, remediations, exceptions) • Liaise with the Risk Manager to monitor execution of action plans and report risks related to Cloud infrastructures • Contribute to the deployment of security solutions across our infrastructures; administer and maintain some of these solutions (e.g., CSPM, DLP, GW, IAM, xAST) • Promote cybersecurity monitoring and cultivate a security-first mindset within Platform Engineering and across Tech & Product teams on SecOps topics • Actively participate in incident management • Contribute to continuous improvement and increase visibility of security operations on Cloud infrastructures
• Support our clients in their digital evolution to achieve maximum efficiency in their businesses • Solve complex technological challenges with high-performance teams • Address technology challenges that have a significant impact on business • Combine technologies quickly and effectively
• Take ownership of cloud infrastructure across Azure and AWS - with responsibility for uptime, performance, security, and scalability. • Build Infrastructure as Code (IaC) using tools like Terraform, Pulumi, CloudFormation, ARM/Bicep, or similar. • Design and maintain CI/CD pipelines enabling safe, fast, and repeatable deployments. • Implement SRE best practices: monitoring, alerting, observability, incident response, root-cause analysis, and ongoing reliability improvements. • Automate operational tasks to reduce manual work, improve reliability, and increase engineering velocity. • Perform environment hardening, secret management, identity and access management, network configuration, and secure cloud patterns. • Proactively identify risks, gaps, and bottlenecks and fix them before they become incidents. • Collaborate with engineering teams to architect cloud solutions that balance reliability, speed, and cost efficiency. • Participate in on-call rotations (sensible, fair, and well-scoped) as needed for reliability-sensitive projects. • Communicate clearly with internal stakeholders and occasionally with clients, explaining technical decisions, tradeoffs, and mitigation plans.
• Take ownership of cloud infrastructure across Azure and AWS - with responsibility for uptime, performance, security, and scalability. • Build Infrastructure as Code (IaC) using tools like Terraform, Pulumi, CloudFormation, ARM/Bicep, or similar. • Design and maintain CI/CD pipelines enabling safe, fast, and repeatable deployments. • Implement SRE best practices: monitoring, alerting, observability, incident response, root-cause analysis, and ongoing reliability improvements. • Automate operational tasks to reduce manual work, improve reliability, and increase engineering velocity. • Perform environment hardening, secret management, identity and access management, network configuration, and secure cloud patterns. • Proactively identify risks, gaps, and bottlenecks and fix them before they become incidents. • Collaborate with engineering teams to architect cloud solutions that balance reliability, speed, and cost efficiency. • Participate in on-call rotations (sensible, fair, and well-scoped) as needed for reliability-sensitive projects. • Communicate clearly with internal stakeholders and occasionally with clients, explaining technical decisions, tradeoffs, and mitigation plans.



