Software Engineer I-II - DevSecOps Engineer
Listed on 2026-08-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Systems Engineer
Software Engineer I-II - Dev Sec Ops Engineer
Req Number: 011-2025
GBL Systems is a leading system engineering and software development firm located in Camarillo, CA, with a 30+ year history of developing tomorrow’s Electronic Warfare capability today. GBL specializes in the areas of Systems and Software Engineering, Electronic Warfare, Network Centric Warfare, Modeling/ Simulation and Avionics Development.
As part of a dynamic team, GBL Engineers contribute to all aspects of the software development process, which includes requirements definition, design, development, test and evaluation, acquisition, and in-service support to various US and Foreign Military customers. The Frontend Developer role focuses on developing visually appealing interfaces and maintaining interactive dashboards using React and Python, alongside ensuring quality through unit tests and version control.
Proficiency in React, Java script, Python, testing frameworks, and visual reporting tools like Grafana is important along with effective collaboration skills within cross-functional teams to implement UI features and stay updated with industry trends.
Qualified applicants must be U.S. Citizens. Current active SECRET clearance is desired.
We are seeking a skilled Dev Sec Ops Engineer to support Department of Defense (DoD) programs by integrating security automation, compliance enforcement, and custom tool development across secure Dev Ops environments. This position focuses on building and maintaining automated security tooling within CI/CD pipelines, supporting RMF-based ATO efforts, and enabling secure cloud and hybrid DoD infrastructures. The ideal candidate brings experience developing Dev Sec Ops solutions in classified or controlled environments, with deep familiarity in STIGs, DoD Cloud Computing SRG, and continuous compliance.
Roles & Responsibilities :- Design, develop, and deploy custom Dev Sec Ops tooling to automate security testing, compliance validation, and infrastructure deployment in accordance with DoD policies.
- Integrate static code analysis (SAST), dynamic analysis (DAST), container security, SBOM generation, and dependency scanning into secure CI/CD workflows.
- Automate enforcement and reporting of compliance controls such as DISA STIGs, NIST 800-53, and DoD Cloud Computing SRG.
- Support and contribute to the RMF process, including security documentation, vulnerability scanning, POA&Ms, and achieving/maintaining Authority to Operate (ATO).
- Develop Infrastructure-as-Code (IaC) templates and pipelines (e.g., Terraform, Ansible, Cloud Formation) with embedded security guardrails.
- Collaborate with cross-functional teams, including system administrators, software developers, ISSOs, and SCA teams, to ensure continuous security integration.
- Monitor pipeline activity and infrastructure logs for anomalous behavior, threats, or misconfigurations, and respond to incidents as needed.
- Develop dashboards, scripts, and APIs to support internal security workflows, audit readiness, and data visualization for leadership.
- Stay informed on the latest DoD cybersecurity mandates, emerging threats, and approved tools/technologies under DoD policy and FedRAMP.
- U.S. Citizenship and active DoD Secret clearance (Top Secret preferred or ability to obtain).
- Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related technical field—or equivalent practical experience.
- Minimum 3–5 years supporting DoD or federal IT programs with Dev Ops or cybersecurity automation.
- Experience designing secure CI/CD pipelines using Git Lab CI/CD, Jenkins, Git Hub Actions, or similar.
- Proficient in at least one programming/scripting language (e.g., Python, Bash, Power Shell).
- Familiarity with DoD Risk Management Framework (RMF) and security documentation.
- Strong understanding of DISA STIGs, ACAS/Nessus scanning, SCAP compliance, and audit traceability.
- Experience with secure cloud environments, preferably AWS Gov Cloud, Azure Government, or mil Cloud.
- Experience supporting Continuous ATO, Dev Sec Ops Reference Design, or Platform One / Iron Bank tool chains.
- Familiarity with container orchestration and security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).