7 hours ago
San Antonio, TX, USASenior
Responsibilities
- Design, build, and operate Kubernetes and OpenShift clusters, including Amazon EKS/Fargate, Azure, Google Cloud, and self-managed environments.
- Design network connectivity, provisioning strategies, and RBAC for secure and compliant cloud foundations.
- Maintain, configure, and monitor containers using Terraform and Helm across development, test, and production environments.
- Implement and validate security controls, security-relevant changes, and Security Impact Assessments supporting IATT, ATO, and cATO readiness.
- Perform Kubernetes risk assessments and apply STIGs, CIS Benchmarks, and hardened Iron Bank images.
- Automate control inheritance and compliance activities aligned with the Government’s Cyber Assessment Roadmap.
- Manage container vulnerabilities and coordinate remediation with engineering teams.
- Collaborate with ISSEs, ISSMs, DevSecOps engineers, COT, CPT, and Government stakeholders.
- Create implementation documentation and maintain Bodies of Evidence.
- Support Zero Trust enforcement and cloud-native security practices.
- Maintain and validate authorization and assessment evidence in eMASS.
Requirements
- U.S. citizenship and TS/SCI clearance eligibility are required; an active TS/SCI clearance is preferred.
- A bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field is required; an advanced technical degree is preferred.
- DoD 8140/8570 IAT Level II and Certified Kubernetes Administrator certifications are required; CKS, Red Hat OpenShift, or CCSP are preferred.
- At least 4 years of relevant experience is required.
- Senior-level knowledge and experience leading major technology assignments and serving as a technical expert are required.
- Demonstrated knowledge of Kubernetes, Istio, GitOps, custom Kubernetes Operators, Helm charts, Admission Controllers, CRDs, and Controllers is required.
- Extensive Linux, networking, and Kubernetes control-plane knowledge is required.
- Experience with Ansible, Terraform, Docker, and Helm-based automation and configuration management is required.
- Knowledge of Kubernetes security and compliance and experience with AWS, Azure, or OCI are required.
- Experience supporting end-user products and maintaining implementation documentation is required.
- Preferred experience includes DoD Enterprise DevSecOps Reference Design, software factories, Iron Bank, Big Bang, cATO, IL4/IL5/IL6 environments, COT/CPT or Security Control Assessors, Twistlock, Anchore, cosign/sigstore, and micro-segmentation.
Benefits
- Medical insurance with generous employee and dependent cost sharing.
- Company-paid dental, vision, short-term disability, and long-term disability insurance for employees and dependents where applicable.
- 401(k) plan with a generous match and immediate 100% vesting.
- Competitive pay, paid leave, and paid holidays.
- Tuition and training reimbursement.
- Life and AD&D insurance.
- Full-time, on-site work in San Antonio, Texas.
About AnaVation
AnaVation provides cybersecurity, software, cloud, and data engineering services to U.S. government customers, particularly the federal intelligence community. The company builds and supports cyber collection and processing systems, SOC/incident response capabilities, and big-data and cloud infrastructure used across multiple agencies, including AWS-based environments. Founded in 2013 and headquartered in Chantilly, Virginia, AnaVation is a private partnership focused on complex government programs.
