
DevSecOps Engineer - Senior Level
Tangram Flex7 days ago
Remote, United States or Dayton, OH, USASenior
Responsibilities
- Lead architecture and continuous optimization of enterprise CI/CD pipelines using GitLab CI or alternative deployment platforms.
- Architect GitOps workflows with FluxCD or ArgoCD for multi-cluster environments.
- Design, deploy, and maintain secure cloud-native infrastructure using AWS GovCloud and Kubernetes.
- Develop infrastructure-as-code frameworks with Terraform or OpenTofu across cloud, on-premises, and air-gapped environments.
- Establish containerization standards, Helm chart templates, and orchestration patterns for multi-tenant Kubernetes clusters.
- Integrate shift-left security controls including SAST, DAST, container scanning, SBOM generation, and dependency tracking.
- Lead compliance-as-code and cATO initiatives aligned with DoD directives, STIGs, and NIST SP 800-53.
- Architect observability and telemetry using Prometheus, Grafana, Loki, and Jaeger.
- Lead disaster recovery, high availability, backup, restore, and business continuity strategies.
- Provide tier-3 escalation support, root-cause analysis, technical standards, code reviews, and mentorship.
- Support customer and industry travel of up to 20% and frequent or weekly meetings in Dayton, Ohio and WPAFB.
Requirements
- Bachelor’s degree in Computer Science, Computer Engineering, IT, Cybersecurity, or equivalent practical experience.
- At least 5 years of hands-on experience in software deployment, cloud platform engineering, DevOps, or DevSecOps in an enterprise or DoD environment.
- U.S. citizenship and an active Secret clearance or the ability to obtain and maintain a U.S. Government Top Secret/SCI clearance.
- Expert proficiency with AWS or AWS GovCloud, Kubernetes architecture, Docker or container runtimes, and Linux enterprise administration or scripting.
- Advanced experience designing enterprise GitLab CI/CD pipelines and orchestrating infrastructure with Terraform.
- Active IAT Level II or IAM Level II/III certification, such as Security+ CE, CySA+, CISSP, or CISM.
- Preferred experience with Anchore, Trivy, SonarQube, NeuVector, Sysdig, Okta, Keycloak, OIDC/SAML, Platform One, Big Bang, Iron Bank, AWS C2S/SC2S, and cATO accreditation.
- Experience mentoring engineers, authoring architecture and compliance documentation, and communicating with software teams, product managers, and government stakeholders.
- Willingness to support high-priority deployment windows and mission-critical outage resolutions.
Benefits
- Hybrid work options and flexible working hours.
- 10 paid holidays and generous paid time off.
- Employer-paid medical, dental, vision, and short- and long-term disability insurance.
- Access to group-rated life insurance plans and employer contributions to a Health Savings Account.
- Competitive 401(k) employer match.
- Internal technical community events including Lightning Talks and Integration Events.
- Up to 20% travel to client sites, customer locations, and industry conferences, with frequent or weekly presence required in Dayton, Ohio and WPAFB.