DevSecOps Engineer - Senior Level
Listed on 2026-08-31
-
IT/Tech
Cloud Computing: Infrastructure & Operations, Systems Engineer, Cybersecurity, SRE/Site Reliability
Tangram Flex is seeking a Senior Dev Sec Ops / Platform Engineer with 5+ years of experience to lead and advance our cloud-native platform infrastructure, secure software delivery pipelines, and Dev Sec Ops strategy. In this role, you will architect, optimize, and scale cloud-native application build environments and CI/CD pipelines supporting critical internal products and customer deployments across unclassified and classified domains.
As a Senior Engineer, you will serve as a technical anchor—mentoring engineers, driving platform architecture decisions, and collaborating closely with cross-functional software teams to accelerate Continuous Authority to Operate (cATO) processes and integrate robust, shift-left security practices.
What We Do:
Our team and products provide solutions to enable innovators to design, develop, verify, and advance critical systems, while accelerating innovation that advances our nation's security. By accelerating delivery of critical systems, Tangram is transforming the way our nation solves complex software challenges.
- Lead the architecture, design, and continuous optimization of enterprise CI/CD pipelines using Git Lab CI or alternative deployment platforms.
- Architect and mature Git Ops workflows using FluxCD or ArgoCD to manage multi-cluster state across complex environments.
- Establish automated testing, automated vulnerability gates, caching strategies, and performance benchmarks to dramatically shorten build and release cycles.
- Provide tier-3 escalation support and root-cause analysis for build, deployment, or automation pipeline failures.
- Drive technical standards, best practices, and code reviews across Dev Ops/Dev Sec Ops practices within the engineering organization.
- Architect, deploy, and maintain secure, highly available Cloud-Native infrastructure using AWS Gov Cloud and Kubernetes.
- Design scalable Infrastructure-as-Code (IaC) frameworks (e.g., Terraform, Open Tofu) for automated provisioning of cloud, on-premises, and air-gapped environments.
- Establish containerization standards, custom Helm chart templates, and orchestration patterns across multi-tenant Kubernetes clusters.
- Lead deployment architectures and secure baseline configurations across multiple security enclaves (NIPRNet, SIPRNet, JWICS, C2S/SC2S).
- Architect end-to-end "Shift-Left" security controls into the delivery workflow, including automated SAST/DAST, container scanning, software bill of materials (SBOM) generation, and dependency tracking.
- Lead compliance-as-code initiatives to enforce DoD Cybersecurity directives, STIGs, and NIST SP 800-53 controls to accelerate cATO approval frameworks.
- Champion the integration and adoption of DoD Enterprise Dev Sec Ops reference architectures (e.g., Platform One, Big Bang) and hardened container pipelines using Iron Bank.
- Architect enterprise observability and telemetry stacks (Prometheus, Grafana, Loki, Jaeger) to enable proactive system health monitoring, alert automation, and operational insights.
- Lead disaster recovery, high-availability, and business continuity strategy, including automated backup and restore procedures for core Kubernetes clusters and stateful services.
- Evaluate, pilot, and introduce emerging cloud-native and Dev Sec Ops technologies to elevate overall team capabilities and platform efficiency.
- Education:
Bachelor’s degree in Computer Science, Computer Engineering, IT, Cybersecurity, or equivalent practical experience. - Experience:
5+ years of hands‑on experience in software deployment, cloud platform engineering, Dev Ops, or Dev Sec Ops role in an enterprise or DoW environment. - Clearance: U.S. Citizenship required; must possess an active Secret security clearance, or possess the ability to obtain and maintain a U.S. Government Top Secret/SCI Security Clearance.
- Core Technical Capabilities:
Expert-level proficiency with AWS / AWS Gov Cloud, Kubernetes architecture, Docker/container runtimes, and Linux enterprise administration/scripting (Bash, Python, Go).
- Advanced experience designing enterprise-grade Git Lab CI/CD pipelines and infrastructure orchestration with Terraform.
- DoD 8570/8140 Compliance:
Active IAT Level II or IAM Level II/III certification (e.g., Security+ CE, CySA+, CISSP, CISM) - Willingness and ability to travel up to 20% to client sites, customer locations, and industry conferences as required.
- Deep expertise in container security scanning and governance tools (e.g., Anchore, Trivy, Sonar Qube, Neu Vector, Sysdig).
- Strong experience with central authentication and identity providers (Okta, Keycloak, OIDC/SAML).
- Proven experience mentoring mid-level and junior engineers on cloud-native practices, secure coding guidelines, and operational excellence.
- Strong…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).