DevSecOps Engineer
Listed on 2026-07-08
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations
Job Summary
EverforthECS is seeking a Dev Sec Ops Engineer to work in a hybrid remote/onsite capacity, with a minimum of three business days onsite at our Fairfax, VA corporate office and/or our Ashburn, VA customer site. This role will architect, operate, and optimize Dev Sec Ops pipelines that deliver Everforth ECS products across NIPRNet pipelines, ensuring mission alignment and operational resilience.
Job Responsibilities- Architect, operate, and optimize advanced Dev Sec Ops pipelines supporting enterprise delivery across NIPRNet for Department of Homeland Security missions and Senior Executive Service leadership.
- Design core pipeline architectures, cross‑domain artifact flow patterns, and security tool integrations using Git Lab, Jenkins, Sonar Qube, Nexus, Harbor, Kubernetes, Terraform, and container orchestration platforms.
- Lead continuous development of pipeline architecture, author detailed process documentation, and coordinate extensively with software engineering, cybersecurity, and platform infrastructure teams to maintain mission alignment and operational resilience.
- Act as the primary escalation point for complex pipeline failures, zero‑day vulnerability triage, and classification boundary issues affecting multi‑network delivery.
- Maintain expert‑level mastery of continuous integration tooling, static and dynamic security scanning platforms, software composition analysis systems, and compliance automation capabilities used across the CBP Outrider integration ecosystem.
- Author technical standards including pipeline YAML and domain‑specific DSL, policy‑as‑code modules, artifact signing procedures, and automated authorization workflows governing software factory operations.
- Pilot advanced security‑as‑code techniques such as policy‑driven guardrails, automated risk scoring, and cross‑domain validation prototypes within controlled lab environments prior to production adoption.
- Integrate scanning, software bill of materials generation, compliance validation, and automated security gates using Anchore, Trivy, OpenSCAP, and Sysdig to maintain vulnerability reduction and configuration discipline.
- Monitor pipeline performance indicators—including success rates, deployment frequency, restoration times, defect recurrence, and integration stability—to identify reliability risks and accelerate delivery velocity.
- Produce technical assessments, architecture updates, optimization recommendations, and leadership reports that strengthen automation coverage, operational readiness, and mission execution across the CBP Outrider integration enterprise.
- Perform other duties as assigned.
Salary Range: $,000
Required Skills- Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or Information Technology.
- U.S. Citizen; must be able to obtain and maintain a Public Trust determination.
- IATIII‑level security certifications (CompTIA CASP+CE, ISC² CISSP or Associate, GIAC GSED, GIAC GCIH, or Cisco CCNP Security).
- Minimum five years of experience designing, implementing, and maintaining enterprise‑scale Dev Sec Ops pipelines across multi‑domain and classified environments.
- Proven expertise in integrating CI/CD tools such as Git Lab, Jenkins, Sonar Qube, Nexus, Harbor, Kubernetes, and Terraform with security‑as‑code frameworks.
- Demonstrated ability to lead cross‑functional teams, author process documentation, and provide escalation for complex pipeline failures and vulnerability triage.
- Strong problem‑solving and decision‑making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
- Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders—from peers to end‑users to executive management.
- Active SECRET Clearance.
- Experience pioneering policy‑as‑code and automated risk‑scoring mechanisms in production Dev Sec Ops environments.
- Knowledge of DHS security frameworks and ability to translate them into pipeline governance and compliance controls.
- Track record of driving automation coverage to exceed 90% of build‑time security checks without impacting delivery velocity.
- Leadership in cross‑domain certification coordination (ATO/POA&M) for multi‑enclave pipeline deployments.
ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis of any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).