13 hours ago
Reston, VA, USASenior
Base Salary
$200k - $220k/yr
Responsibilities
- Design and implement automated technical solutions across multiple classified environments in collaboration with customers and internal teams.
- Build and maintain GitLab CI and Jenkins CI/CD pipelines with security scanning and STIG compliance validation.
- Create CloudFormation infrastructure-as-code templates for highly available and secure DevSecOps tooling across AWS environments, including GovCloud, C2S, and TC2S.
- Analyze Linux system and application logs, perform root-cause analysis, and develop mitigation strategies for complex service issues.
- Provide security guidance on secure coding, STIG compliance, vulnerability remediation, and ATO support.
- Design secure Docker images and configure, optimize, and troubleshoot OpenShift deployments and container orchestration.
- Remediate Prisma security findings, conduct code reviews, maintain technical documentation, share knowledge, and guide junior engineers.
Requirements
- Active TS/SCI security clearance with CI Poly is required.
- An IAT Level 2 certification such as Security+, GSEC, SSCP, or similar is required.
- At least 7 years of experience as a DevSecOps Engineer or in a similar role is required, including infrastructure automation, scalability, reliability, and DevSecOps delivery across classified domains such as IL5 and IL6+.
- Expert experience with DevOps practices, CI/CD pipelines, containerization, and tools such as Jenkins, GitLab CI/CD, Artifactory, SonarQube, and Prisma Cloud.
- Strong scripting experience with Python or Bash in Linux environments such as RHEL or Oracle Linux.
- Strong infrastructure-as-code experience with Terraform, CloudFormation, or Ansible.
- Experience with Tier 1-3 customer support and ticketing systems such as GitLab Service Desk or ServiceNow.
- Expert knowledge of AWS capabilities including EC2, S3, IAM, and RDS, along with secure cloud infrastructure architecture.
- Hands-on experience implementing STIG and SRG requirements and applying security best practices.
- Knowledge of vulnerabilities and security frameworks including OWASP, NIST, and OpenSCAP.
- Ability to work independently and communicate with global enterprise stakeholders and cross-functional teams.
Benefits
- Health, dental, and vision insurance.
- 401(k) retirement plan with company match.
- Paid time off and holidays.
- Parental leave and dependent care support.
- Flexible work arrangements.
- Professional development opportunities, including company-paid training and certifications.
- Employee assistance and wellness programs.
- Performance-based bonuses, referral bonuses, and possible additional incentives.
- Full-time employee benefits eligibility; applications are accepted on a rolling basis until the position is filled.
About MetroStar
MetroStar provides IT services and software solutions to U.S. federal civilian and defense agencies, focusing on digital transformation, AI/ML, application modernization, enterprise IT, and human-centered design. The company operates on government contracts to deliver secure systems and mission-support applications. Founded in 1999 and headquartered in Reston, Virginia, MetroStar is privately held and a portfolio company of Veritas Capital.
