6 hours ago
Washington, DC, USASenior
Responsibilities
- Deploy, update, and secure Kubernetes workloads through ArgoCD and GitOps workflows.
- Build and maintain secure CI/CD pipelines that enforce policy, scan for vulnerabilities, and generate auditable build artifacts.
- Maintain and harden shared services including GitLab, Artifactory, and container registries.
- Implement and enforce controls aligned with CMMC Level 2, NIST 800-171, and other ATO-related frameworks.
- Secure the software supply chain through image signing, SBOM generation, dependency scanning, and provenance tracking.
- Conduct threat modeling to identify architectural risks before incidents occur.
- Detect, investigate, and respond to security incidents across infrastructure and applications.
- Partner with product teams to ensure workloads meet security and compliance requirements before and after deployment.
- Support secure hosting of ML/AI workloads, including model training environments and sensitive data handling.
Requirements
- At least five years of experience in DevSecOps, security engineering, or infrastructure engineering with a security focus.
- Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related field.
- Deep experience deploying, networking, troubleshooting, and securing Kubernetes environments, including RBAC, pod security, and cluster security.
- Proficiency with ArgoCD or similar GitOps tooling and strong experience writing and maintaining Helm charts.
- Proficiency in Python and Bash for automating security and compliance workflows.
- Experience with software supply chain security, container image hardening, FIPS-validated cryptography, vulnerability scanning, SBOM generation, and artifact signing.
- Hands-on experience implementing controls from NIST 800-171, NIST 800-53, CMMC, or similar frameworks.
- Experience designing CI/CD pipelines with security gates, policy-as-code, and automated compliance checks.
- Working knowledge of AWS and the ability to collaborate on infrastructure decisions.
- U.S. citizenship and eligibility to obtain a security clearance.
- Preferred experience includes Go or other systems programming languages, ATO processes, DISA STIGs, RMF, Terraform, Nix or NixOS, SIEM platforms, security monitoring, incident response, ML/AI workload security, red teaming, or penetration testing.
- Preferred certifications include CKS, Security+, or CISSP.
- Experience in defense, intelligence, or other regulated environments is preferred.
Benefits
- Insurance coverage including medical and travel insurance, flexible paid time off, and paid holidays.
- Remote and/or hybrid work is available depending on the position.
- Outcome-focused work environment without time-tracking.
- Mission-driven work contributing to defense and democratic protection.
About Helsing
Helsing was founded to provide Artificial Intelligence to protect our democracies. Helsing works with partners in governments and across industry. Together, we develop systems that leverage AI and autonomy to provide autonomous mass that is sovereign, scalable and affordable. We’re looking for people with their heart in the right place, who share our conviction that liberal democratic values are worth protecting, for ourselves and for future generations.
