- Company Name
- SciTec, Inc.
- Job Title
- Staff / Sr Staff DevSecOps Engineer
- Job Description
-
Job title: Staff / Senior Staff DevSecOps Engineer
Role Summary: Lead design, implementation, and maintenance of secure CI/CD pipelines and Kubernetes-based deployment workflows for high‑security software builds, ensuring adherence to DoD security protocols while driving continuous integration and delivery best practices.
Expactations: • U.S. citizenship required for DoD security clearance. • Minimum 2 years professional experience in DevSecOps roles. • Strong command of Python3, Git, and CI/CD tooling (GitLab CI, GitHub Actions, or Jenkins). • Proven ability to orchestrate container stacks using Docker, Kubernetes, Helm, and Kustomize. • Demonstrated focus on secure coding, vulnerability scanning, and remediation. • Excellent verbal and written communication.
Key Responsibilities:
- Design, maintain, and continuously improve GitLab CI pipelines for secure builds and deployments.
- Automate deployments across dev, test, and prod using Kubernetes, Helm, and Helm charts.
- Integrate CI pipelines with artifact repositories, static/dynamic security scanners, and code quality tools.
- Monitor pipeline performance, troubleshoot deployment issues, and enforce performance metrics.
- Manage release processes: version promotion, branching, integration, and validation.
- Validate deployments, resolve issues, and ensure compliance with cybersecurity standards.
- Support vulnerability scanning (SAST, DAST, SCA) and remediation workflows.
- Collaborate with cross‑functional teams on secure software development and incident response.
Required Skills:
- Programming: Python3 (mandatory).
- CI/CD: GitLab CI, GitHub Actions, or Jenkins.
- Version control: Git.
- Container orchestration: Docker, Kubernetes, Helm, Kustomize.
- Linux system administration.
- Security tools: SAST/SCA (Fortify, SonarQube, Snyk, Trivy, ZAP); container security (Grype, Syft).
- Artifact repositories: JFrog Artifactory, Nexus.
- Monitoring/Observability: Prometheus, Grafana.
- Cloud: AWS (EKS, EC2, Lambda).
- Networking: Istio, NGINX, Traefik.
- Auth: Keycloak.
- Optional: C++ or Rust, advanced secure development practices.
Required Education & Certifications:
- Bachelor’s degree in a STEM discipline.
- Eligibility for DoD security clearance.