ENS Solutions
Posted 5d ago

Sr. DevSecOps Engineer - Active TS/SCI with CI Poly

ENS Solutions
Reston, Virginia, United States
OnsiteFull Time
Responsibilities
  • designing pipelines
  • architecting infrastructure
  • troubleshooting systems
Requirements
  • Requires active TS/SCI with CI poly
  • 7+ years of DevSecOps experience
  • IAT Level 2 certification, AWS, CI/CD, IaC, Linux
  • Containerization
  • Security compliance, and scripting expertise
Technical tools mentioned
JenkinsGitLab CI/CDArtifactorySonarQubePrisma CloudPythonBashLinuxRHELOracle LinuxTerraformCloudFormationAnsibleGitLab Service DeskServiceNowAWSEC2S3IAMRDSDockerOpenShiftOWASPNISTOpenSCAPSTIGSRGGovCloudC2STC2S

Job description

As a Sr. DevSecOps Engineer, you’ll play a critical role in designing, implementing, and maintaining secure and efficient software development and deployment pipelines. You will collaborate with cross-functional teams to integrate security practice seamlessly into the development and operations lifecycle, ensuring the delivery of high-quality, secure, and reliable software solutions.

What you’ll do:

  • Collaborate with customers and internal teams to design and implement automatic technical solutions across multiple classification environments, working independently or as part of the team to address complex technical requirements.
  • Develop CI/CD pipelines from scratch in GitLab CI and Jenkins with integrated security scanning and STIG compliance validation, providing expert guidance to development teams on pipeline troubleshooting and implementing DevSecOps best practices.
  • Create and maintain Infrastructure as Code (IaC) templates primarily using CloudFormation to architect highly available, resilient, and secure DevSecOps tool infrastructure across AWS environments (GovCloud, C2S, TC2S) while ensuring STIG compliance and guiding junior engineers on IaC best practices.
  • Lead advanced troubleshooting efforts by analyzing system and application logs using Linux command-line tools, conducting root cause analysis for complex issues, and developing mitigation strategies for service degradation.
  • Provide expert security guidance to development teams on secure coding practices, STIG compliance, vulnerability remediation, and other best practices in support of their ATO efforts.
  • Architect and build secure containerized solutions by designing Docker images with security best practices, implementing and optimizing OpenShift deployments and configurations, remediating Prisma security findings, and providing guidance to development teams on container orchestration and best practices.
  • Perform code reviews and knowledge sharing while maintaining technical documentation, promoting best practices, and fostering continuous team improvement.

Requirements

  • Active TS/SCI Clearance with CI poly.
  • 7+ years of experience as a DevSecOps Engineer or similar role, with a strong focus on infrastructure automation, scalability, and reliability across the software development lifecycle.
  • Expert experience with DevOps practices, CI/CD pipelines, containerization, and other automation tools (e.g., Jenkins, GitLab CI/CD, Artifactory, SonarQube, and Prisma Cloud).
  • Strong experience with scripting languages (e.g., Python, Bash), in a Linux environment (RHEL, Oracle Linux, or similar)
  • Strong experience with infrastructure as code (IaC) tools such as Terraform, CloudFormation, or Ansible.
  • Experience with Tier 1- 3 customer support and ticketing systems such as GitLab Service Desk and ServiceNow
  • Expert experience delivering DevSecOps services across multiple classified domains
  • Expert understanding of AWS capabilities (EC2, S3, IAM, RDS, etc) and architecting secure cloud-based infrastructure and services. (familiarity with other cloud platforms a plus)
  • Hands-on experience configuring applications and systems to comply with Secure Technical Implementation Guides (STIG), Security Requirements Guide (SRG) by implementing security best practices.
  • Knowledge of security best practices, common vulnerabilities, and exposure to security frameworks (e.g., OWASP, NIST, OpenSCAP)
  • Ability to work independently and communicate with stakeholders across a global enterprise and cross-functional teams to drive project completion.
  • Experience within the US Government/Intelligence Community a plus.
  • Minimum IAT Level 2 Certification (CompTIA Security+, GSEC, SSCP, ETC.)

Benefits

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance

Candidate AI Usage Policy

AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.

About ENS Solutions

Provides cybersecurity and identity management solutions to government agencies.

Similar jobs

DevSecOps Engineer roles near Reston, Virginia
8h
Save
Mark Applied
Hide
Junior DevSecOps Engineer – AWS
Reston or Washington
HybridContract
BizTech Fusion
BizTech Fusion: An IT professional services and consulting firm delivering technology solutions to public- and private-sector clients.
3+ YOERequires 3+ years of DevOps/DevSecOps experience, AWS, CodePipeline, CodeBuild, CDK or CloudFormation, scripting, security integration, U.S. citizenship, clearance eligibility, and active AWS DevOps or Security certification.
AWS, AWS CodePipeline, AWS CodeBuild, AWS CDK, CloudFormation, SAST, DAST, SCA, Python, Bash, FedRAMP, NIST, Agile, Scrum
13h
Save
Mark Applied
Hide
Mid-level DevSecOps Engineer
Arlington, Virginia, United States
$100k-$140k/yr OnsiteFull Time
Decision Technologies
Decision Technologies: Provides engineering and technical support for defense programs.
3+ YOERequires strong knowledge of containers, Terraform, Kubernetes, DoD cloud networks, firewalls, and security requirements; eligibility for a DoD Secret clearance. Python or SQL and DoD software experience preferred.
Terraform, Kubernetes, Python, SQL
19h
Save
Mark Applied
Hide
DevSecOps Engineer - Leesburg
Leesburg or Washington
$155k-$205k/yr HybridFull Time
Fortreum
Fortreum: Provides cybersecurity compliance and technical auditing services for regulated industries.
7+ YOERequires 7+ years in DevOps, platform engineering, or SRE; AWS and Terraform expertise; production Kubernetes experience; regulated compliance experience; scripting; U.S. citizenship; and ability to obtain Top Secret clearance.
AWS, Azure, GCP, Terraform, Kubernetes, EKS, Helm, ArgoCD, NIST 800-53, OSCAL, GitHub, JIRA, Splunk, Snyk, Python, Bash, Security+, AWS Certified Security, CYSA+, CISSP, LLM, MCP
1d
Save
Mark Applied
Hide
Sr. DevSecOps Engineer I
Washington, District of Columbia, United States
$170k-$220k/yr OnsiteFull Time
M9 Solutions
M9 Solutions: Provides IT modernization and technology services to federal agencies.
5+ YOERequires active TS/SCI clearance, BA/BS in an IT-related field or equivalent experience, DoD 8140 certification, and 5+ years of DevSecOps experience with enterprise CI/CD and security platforms.
.NET, CI/CD
1d
Save
Mark Applied
Hide
Senior DevSecOps Engineer
Chantilly or Herndon
$150k-$170k/yr OnsiteFull Time
Dark Wolf Solutions
Dark Wolf Solutions: Provides cybersecurity and software development services to defense agencies.
7+ YOEBachelor's degree and 7+ years building CI/CD pipelines, including 3+ years in infrastructure automation. Requires US citizenship, active TS/SCI clearance with Full-Scope Polygraph, and expertise in DevSecOps tools and cloud platforms.
Jenkins, GitLab CI/CD, Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Kubernetes, Open Policy Agent (OPA), Kyverno, Falco, HashiCorp Vault, AWS Secrets Manager, ArgoCD, Flux, Prometheus, Grafana, ELK, OpenSearch, OpenTelemetry, Python, Go, Bash, C/C++, Docker, Podman, AWS, Azure, GCP, SonarQube, Snyk, Trivy, OWASP ZAP, Git, Jira, Linux, Agile, Scrum
1d
Save
Mark Applied
Hide
DevSecOps Engineer
Chantilly, Virginia, United States
$62k-$141k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
DevSecOps, CI/CD, container, AWS or OpenShift, Kubernetes, and infrastructure/configuration-as-code experience; TS/SCI clearance, high school diploma/GED, and DoD 8570 IAT certification eligibility required.
CI/CD, Amazon Web Services (AWS), OpenShift, Kubernetes, Terraform, Ansible, EKS, AKS, Azure, Flux, Argo CD, Kustomize, Linux, UNIX
2d
Save
Mark Applied
Hide
DevSecOps Engineer
Chantilly or Dayton or El Segundo or Aurora or Colorado Springs
$62k-$141k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
DevSecOps experience with CI/CD pipelines, containerized applications, AWS or OpenShift, Kubernetes, Terraform or Ansible, Linux or UNIX, TS/SCI clearance, high school diploma/GED, and DoD IAT certification eligibility.
CI/CD, Amazon Web Services (AWS), OpenShift, Kubernetes, Terraform, Ansible, EKS, AWS, AKS, Azure, GitOps, Flux, Argo CD, Kustomize, Linux, UNIX
2d
Save
Mark Applied
Hide
DevSecOps Engineer
Arlington or Rosslyn
HybridFull Time
SAIC
SAICNASDAQ: SAIC: Provides government and defense clients with technology and engineering services.
5+ YOEBachelor's with 5+ years or master's with 3+ years, or equivalent experience; DevSecOps, CI/CD, cloud security, infrastructure as code, automated security testing, compliance, US citizenship, and active secret clearance required.
Terraform, CloudFormation, Ansible, Kubernetes, CI/CD