Senior DevSecOps Engineer

DevOps EngineerDevOps EngineerFull TimeRemoteSeniorTeam 2-10

Location

United States

Posted

51 days ago

Salary

$150K - $200K / year

Seniority

Senior

No structured requirement data.

Job Description

Senior DevSecOps Engineer

IntelliTech LLC

Location: Remote Clearance: Active DoD Secret clearance required Employment Type: Full-Time (W-2) Citizenship: U.S. Citizenship required IntelliTech is seeking a Senior DevSecOps Engineer to lead the infrastructure modernization, security hardening, authorization pathway, and production promotion of a Government-owned digital twin application deployed in an Army cloud environment. The application is a supply chain simulation platform built on Python, FastAPI, React, and MongoDB and currently operates as a monolithic Docker deployment. This role will help transition it into a production-grade, containerized, split-service architecture aligned to Army cloud platform requirements, DevSecOps delivery practices, and production promotion gates. This is a hands-on role on a lean, senior team. The ideal candidate will architect deployment infrastructure, build CI/CD pipelines, harden the application for production, support authorization evidence development, and help lead promotion from development through production. This individual will work directly with Army platform teams, security stakeholders, and identity management teams to ensure the application is secure, scalable, supportable, and ready for operational use. Key Responsibilities Infrastructure and Deployment Architecture - Transition the application from a single-host Docker deployment to a split-service containerized architecture using Amazon EKS, ECS, or another approved orchestration model. - Design and implement multi-tier environment separation across development, test/staging, and production. - Package frontend, backend API, and simulation worker services as independently deployable container artifacts. - Implement infrastructure-as-code using Terraform, CloudFormation, or approved equivalents for repeatable provisioning and configuration management. - Design the distributed execution model allowing simulation workers to scale independently from the API tier with bounded concurrency and isolation controls. - Configure managed platform services for persistence, caching, object storage, secrets management, and observability. CI/CD and Release Engineering - Build and maintain CI/CD pipelines using approved toolchains such as GitLab CI, GitHub Actions, or government-provided platform tooling. - Integrate automated build, test, container scanning, dependency scanning, SAST, and DAST into the delivery pipeline. - Implement promotion workflows with quality and security gates for development-to-staging and staging-to-production transitions. - Generate and maintain software bill of materials (SBOM) and dependency inventories as part of the build process. - Design rollback and recovery procedures for failed deployments, including restoration of prior known-good versions. Security Hardening and Compliance - Harden container images and dependency baselines in alignment with STIG requirements and approved security standards. - Implement managed secrets storage, encryption in transit and at rest, least-privilege IAM policies, and appropriate network segmentation. - Integrate vulnerability scanning into release workflows and support remediation tracking. - Support closure of security findings through remediation, compensating controls, and evidence updates. - Ensure artifact retention and traceability sufficient to support promotion approval and auditability. Identity and Access Management - Integrate the application with CAC-enabled SSO and the identity provider required by the target environment using SAML, OIDC, or platform-specific approaches. - Replace local account models with externalized authentication through approved identity services. - Implement role-based access controls for analyst, administrator, and system functions. - Ensure user actions are traceable to authenticated identities. Authorization and Production Promotion - Support the application-specific authorization effort from evidence planning through submission and remediation. - Produce and maintain authorization artifacts such as architecture diagrams, data flows, SBOMs, scan evidence, logging and monitoring descriptions, and operational runbooks. - Align evidence to the platform’s inheritance model where applicable rather than building a fully standalone compliance package. - Coordinate with government security stakeholders on evidence expectations, findings, and remediation. - Lead technical execution for promotion from development into production through approved DevSecOps pipelines and release gates. Operations and Sustainment - Implement centralized logging, metrics, alarms, and service health monitoring across all application components. - Develop operational runbooks for deployment, monitoring, incident response, scaling, and maintenance. - Produce administrator and operator documentation, troubleshooting guides, and sustainment handoff materials. - Support training and transition activities at the conclusion of the implementation period. Required Qualifications - Bachelor’s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or a related technical discipline and 8+ years of relevant experience; or Master’s degree in a related field and 6+ years of relevant experience. - Active DoD Secret clearance. - 8+ years of professional experience in DevOps, platform engineering, infrastructure engineering, or cloud engineering roles. - Hands-on experience supporting ATO or cATO-related processes, including authorization evidence development, security findings remediation, and working with assessors or platform security stakeholders. - Experience deploying and operating applications in DoD or other accredited government cloud environments such as Army ECMA. - Strong experience with container orchestration using Amazon EKS, ECS, Kubernetes, or similar platforms. - Strong experience with infrastructure as code, including Terraform, CloudFormation, Helm, or similar tooling. - Experience designing and maintaining CI/CD pipelines with integrated automated testing, scanning, and promotion controls. - Experience with security hardening, including STIG-aligned practices, vulnerability remediation, SBOM generation, and secure container/image management. - Experience with AWS services such as EC2, EKS/ECS, S3, IAM, KMS, Secrets Manager, SSM, CloudWatch, VPC/networking, Redis/ElastiCache, and document or relational persistence services. - Experience integrating identity and access management solutions such as SSO, SAML, OIDC, RBAC, or CAC-enabled access patterns. - Strong communication skills and the ability to work directly with technical, operational, and security stakeholders. Preferred Qualifications - Direct experience supporting Army cloud environments or similar government-managed enterprise cloud platforms. - Experience with RMF, eMASS, and inherited authorization models. - Experience operating in IL4 / IL5 or similarly regulated environments. - Experience with container security and vulnerability scanning tools such as Prisma Cloud, Anchore, Twistlock, or similar platforms. - Familiarity with Docker Compose to Kubernetes migration patterns. - Experience with MongoDB to DocumentDB migration or similar managed database transition efforts. - Experience supporting Python / FastAPI application deployment and performance tuning. - Prior experience supporting Army, logistics, manufacturing, industrial base, or enterprise platform modernization programs. - Certifications such as Security+, CISSP, or relevant cloud / Kubernetes certifications. Tech Stack - Orchestration: Amazon EKS or ECS, Kubernetes, Helm - IaC: Terraform, CloudFormation - CI/CD: GitLab CI, GitHub Actions, or government-approved tooling - Cloud: AWS services including EC2, EKS/ECS, S3, IAM, KMS, Secrets Manager, SSM, CloudWatch, Redis/ElastiCache, and managed persistence services - Containers: Docker, multi-stage builds, hardened base images - Security: STIG-aligned hardening, vulnerability scanning, SBOM generation, DAST / SAST - Identity: CAC / SSO, SAML, OIDC, RBAC - Monitoring: CloudWatch, Prometheus / Grafana where approved, centralized logging - Authorization: RMF, eMASS, inherited authorization packages, ATO / cATO evidence support - Application: Python 3.11+, FastAPI, React, MongoDB / DocumentDB Interview Process Video interview required and may include a technical assessment. Candidates should be prepared to discuss: - their experience designing and operating secure cloud infrastructure and CI/CD pipelines - how they have supported authorization, compliance, or security evidence efforts - examples of applications they have containerized, hardened, and promoted to production - their experience with AWS, Kubernetes, IaC, scanning, and release automation - how they have handled identity integration, observability, and secure operations in regulated environments Compensation and Benefits IntelliTech is committed to fair and equitable compensation practices. The salary range for this position is $150,000 - $200,000. Actual compensation packages are based on several factors unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on these factors, IntelliTech utilizes the full width of the salary range. IntelliTech provides a comprehensive benefits package designed to support employees’ well-being and professional growth, including health, dental, and vision insurance, a 401(k), paid time off, professional development opportunities, and flexible work arrangements to support work-life balance. About IntelliTech IntelliTech is a dynamic and forward-thinking small business specializing in Full Stack Engineering, Data Analytics, Cloud Solutions, and DevSecOps services. Our mission is to empower government and commercial clients to solve complex technical challenges through practical, innovative, and mission-focused engineering solutions. Equal Opportunity Employer At IntelliTech, we are committed to building a diverse and inclusive workplace. We believe that a variety of perspectives and backgrounds leads to stronger teams and better solutions. IntelliTech is an Equal Opportunity Employer and does not discriminate on the basis of race, religion, gender, age, disability, or veteran status. We encourage all qualified candidates to apply.

Related Categories

Related Job Pages

More DevOps Engineer Jobs

Coderio logo

Senior DevOps Engineer – Azure

Coderio

Accelerate Your Digital Transformation

DevOps Engineer51 days ago
ContractRemoteTeam 201-500Since 2017H1B No Sponsor

• Design, implement, and maintain highly available, scalable, and secure Azure cloud architectures. • Build and manage CI/CD pipelines to ensure reliable and continuous software delivery. • Implement and maintain Infrastructure as Code (IaC) for automated and reproducible environments. • Ensure compliance with security standards and regulations (e.g., HIPAA, PHI), applying best practices. • Define monitoring, logging, alerting, and cost optimization strategies across Azure environments. • Collaborate with engineering and data teams, acting as a cloud subject matter expert.

Argentina
Job Closed
FIS - Fidelity National Information Services logo

Software Engineer Seniors – DevOps Engineer

FIS - Fidelity National Information Services

FIS, short for Fidelity National Information Services, is a global financial technology leader and Fortune 500 company. The company provides the global banking

DevOps Engineer51 days ago

Job Description FIS Management Services, LLC seeks Software Engineer Seniors – DevOps Engineer in Jacksonville, FL to contribute to the design and development of FIS’s next-generation pipeline deployment infrastructure to ensure scalability and reliability for enterprise applications. Develop, maintain, and enhance automation solutions that streamline the build and deployment of environments for client-focused testing and implementation teams. Oversee environment deployments in close collaboration with release management, with a strong emphasis on automating promotion processes. Monitor, diagnose, and resolve build and deployment issues to minimize downtime and ensure operational continuity. Engage with development teams to optimize commit-based build pipelines, providing advanced debugging and technical support as required. Design and implement Jenkins Groovy shared libraries and automation scripts using Ansible and related tools. Configure and execute Maven build jobs to support continuous integration and delivery objectives. Support the enhancement of iOS and Android build and distribution pipelines, driving improvements in mobile application delivery. Automate the execution of quality assurance test suites to ensure robust software validation and reporting. Facilitate comprehensive metrics collection and dashboarding to provide actionable insights into pipeline performance. Integrate and execute information security (InfoSec) tests within the deployment pipeline to uphold security standards. Administer and maintain Git and Artifactory repository structures, ensuring version control and artifact management best practices. Provision and configure Kubernetes and OpenShift namespaces to support scalable, containerized application deployments. Manage package releases using Helm charts for efficient and reliable software distribution. Perform database automation using Flyway, collaborating with DBA teams to ensure consistent and controlled schema changes. Advocate for best practices in DevOps processes, culture, and 12-factor application design. REQUIREMENTS: Bachelor’s degree or foreign equivalent in Information Science, Computer Engineering, Electrical Engineering or related field and five (5) years of progressively responsible experience in the job offered or a related occupation: utilizing agile software methodologies; working with DevSecOps automation tools including Jenkins, GitHub Actions, GitLab CI, and Harness; employing Jira or Rally agile management tools to link user stories and tasks to sprints and track progress; utilizing Kubernetes and Docker for building, deploying, and managing containerized workflows; working with CI/CD, platform engineering, public cloud environments, and modern engineering practices based on a “you build it, you run it” model; and utilizing Agile software development methodologies to design, build, and implement DevSecOps capabilities and automated CI/CD pipelines. In the alternative, the employer will accept a Master’s degree in the above listed fields and three (3) years of experience in the above listed skills. Telecommuting and/or working from home may be permissible pursuant to company policies. QUALIFIED APPLICANTS: Please apply directly through our website by clicking on “Apply Now.” Privacy Statement FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice. EEOC Statement FIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available here For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis. Sourcing Model Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company. #pridepass

United States
CVS Health logo

Senior DevSecOps Engineer - Mobile Applications

CVS Health

Bringing our heart to every moment of your health.

DevOps Engineer51 days ago
Full TimeRemoteTeam 10,001+Since 1963H1B No Sponsor

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Who You Are: - A seasoned security leader with the ability to develop and review code when necessary, and with a deep understanding of foundational software‑engineering paradigms—specifically the distinctions and appropriate use cases for objects (runtime instances), classes (architectural blueprints), and functions (discrete units of logic). - Strong passion and thorough understanding of what it takes to build and operate secure, reliable systems at scale. - Strong passion and technical expertise to automate security functions via code, including pipeline and workflow automation. - Strong technical expertise with Application, Cloud, Data, and Network Security best practices. - Strong technical expertise with multi-cloud environments, including container/serverless and other microservice architectures. - Strong technical expertise with older technology stacks, including mainframes and monolithic architectures. - Strong technical expertise with SDLC, CI/CD tools, Deployment Automation, and pipeline orchestration. - Strong technical expertise with operating security for Windows Server and Linux Server systems. - Strong technical expertise with configuration management, version control, and DevOps operational support. - Strong experience with implementing security measures for both applications and data, with an understanding of the unique security requirements of data warehouse technologies. - Experience with reporting and visualization tools such as Power BI, BigQuery, Tableau, or similar platforms. - Ability to create and deliver executive-level reporting and dashboards for leadership visibility. Role Responsibilities: Development & Enforcement - Develop and enforce engineering security policies and standards. - Develop and enforce data security policies and standards. - Drive security awareness across the organization. Collaboration & Expertise - Collaborate with Engineering and Business teams to develop secure engineering practices. - Serve as the Subject Matter Expert for Application Security. - Work with cross-functional teams to ensure security is considered throughout the software development lifecycle. Automation & Optimization - Design and implement automated workflows for security processes across CI/CD pipelines, reducing manual intervention and improving consistency. - Automate manual reporting tasks by building scripts, dashboards, and integrations that provide real-time visibility into security posture, vulnerability status, and compliance metrics. - Integrate security controls into CI/CD pipelines (e.g., automated scanning, policy enforcement, and remediation workflows) to ensure security gates are embedded in the development lifecycle. - Develop orchestration strategies for pipeline automation using tools like GitHub Actions, Jenkins, or Azure DevOps, ensuring security checks are triggered automatically during build and deployment phases. - Develop and maintain executive-level reporting dashboards using tools like Power BI, Tableau, or BigQuery to provide actionable insights to leadership. Analysis & Configuration - Analyze, develop, and configure security solutions across multi-cloud, on-premises, and colocation environments, ensuring application security, integrity, confidentiality, and availability of data. - Lead security testing, vulnerability analysis, and documentation. Operational Support - Participate in operational on-call duties to support infrastructure across multiple regions and environments (cloud, on-premises, colocation). - Develop incident response and recovery strategies. Required Qualifications: - 5+ years of experience in developing and deploying security technologies. - 5+ years with modern SDLC and CI/CD practices, emphasizing pipeline automation and security integration. - 3+ years remediating vulnerabilities from Static Analysis, Open-Source Scanning, Mobile Scanning (DataTheorem or similar platform), and API Scanning (Apiiro, Koi Security). - 3+ years of experience with Docker, Kubernetes, Security-as-Code, and Infrastructure-as-Code. - 3+ years of experience with one or more general-purpose programming/script languages including but not limited to: Java, C/C++, C#, Python, JavaScript, Shell Script, PowerShell. - 1+ year of experience building reports and dashboards using visualization tools (Power BI, Tableau, BigQuery, or similar). Preferred Qualifications: - Proficiency in Public Cloud (AWS/Azure/GCP) & Network Security. - Strong experience with implementing and managing data protection measures and compliance with data protection regulations (e.g., GDPR, CCPA). - Strong technical expertise with Architecting Public Cloud solutions and processes. - Strong technical expertise with Networking and Software-Defined Networking (SDN) principles. - Strong technical expertise with developing and interpreting Network, Sequence, and Dataflow diagrams. - Familiarity with OWASP Application Security Verification Standard. - Experience with direct, remote, and virtual teams. - Understanding of at least one compliance framework (HIPAA, HITRUST, PCI, NIST, CSA). - Strong technical expertise with Static Analysis, Open Source Scanning, Mobile Scanning, and API Scanning security solutions for data warehouses and big data platforms, particularly with technologies like Snyk, Apiiro, Koi Security, jFrog Curation. - Strong technical expertise in defining and implementing cyber resilience standards, policies, and programs for distributed cloud and network infrastructure, ensuring robust redundancy and system reliability. - Experience creating executive-level reporting and presenting security metrics to leadership. - Experience building automated reporting solutions using APIs, scripting, and visualization tools (e.g., Power BI, Grafana, or custom dashboards). - Experience with pipeline orchestration tools and CI/CD automation frameworks to embed security gates and compliance checks. Education - A Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience) Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $83,430.00 - $222,480.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 04/28/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

United States + 1 moreAll locations: United States | Canada
$83.4K - $222K / year
Travelers logo

Senior Software Engineer – DevOps, Security

Travelers

Travelers – taking care of our customers, communities and each other.

DevOps Engineer51 days ago
Full TimeRemoteTeam 10,001+Since 1853H1B Sponsor

• Design and enforce security best practices across infrastructure, cloud environments, and CI/CD pipelines. • Implement and manage vulnerability management, patching, access controls, and threat monitoring. • Lead security incident response and post-incident reviews. • Establish reporting and metrics that provide visibility into security posture and risk management. • Oversee cloud and network infrastructure to ensure secure, resilient, and scalable operations. • Manage networking components including routing, connectivity, firewalls, and load balancing. • Support engineering teams with reliable platform services and deployment infrastructure. • Establish comprehensive monitoring, logging, and alerting across infrastructure and services. • Build operational dashboards and reporting that provide visibility into system health, performance, and availability. • Develop metrics and reporting for leadership related to incidents, uptime, operational performance, and security risks. • Act as a technology advocate, independently seeking opportunities where technology can be utilized to improve the business. • Provide technical guidance and mentorship while fostering a team environment. • Apply knowledge of current industry trends and techniques to formulate solutions within the context of assigned efforts. • Seek opportunities to expand technical knowledge and capabilities. • Perform other responsibilities as assigned.

Massachusetts
$139.4K - $230K / year
Job Closed