DevSecOps Engineer
Job in
Malibu, Los Angeles County, California, 90263, USA
Listed on 2026-06-26
Listing for:
SOC LLC
Full Time
position Listed on 2026-06-26
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, Network Security
Job Description & How to Apply Below
1 week ago Be among the first 25 applicants
This range is provided by SOC LLC. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range$65.00/hr - $85.00/hr
Direct message the job poster from SOC LLC
Technical Recruiter at SOC LLC, Expert in #Technical Recruiting #Security Clearance Talent #Federal Services #CybersecurityDev Sec Ops Engineer needed for a contract to hire opportunity with SOC’s client to work onsite in Malibu, CA
* Active TS/SCI is required for the role*
RESPONSIBILITIES:
- Design, implement, and maintain advanced cybersecurity controls and solutions directly within Dev Sec Ops pipelines and associated tool chains (e.g., Git Lab, Artifactory, Ansible, Sonar Qube)
- Configure, integrate, and optimize security tools such as Git Lab's SAST/DAST, Artifactory X-Ray, Tenable, Cortex XSIAM, and Sonar Qube to automate vulnerability detection, code quality analysis, and artifact security
- Translate complex security requirements, including those derived from Risk Management Framework (RMF) and Information Assurance (IA) policies, into actionable technical designs and implementation strategies for software systems
- Provide expert-level technical guidance and hands-on assistance to Dev Sec Ops engineers and software developers on secure coding practices, vulnerability remediation, threat modeling, and building security into CI/CD workflows
- Develop and implement automated security testing procedures (e.g., unit tests, integration tests, fuzzing, penetration testing) to ensure continuous security validation
- Conduct technical deep dives into software architectures and development practices to identify security weaknesses and propose effective mitigation strategies across multi-classification networks
- Collaborate with ISSOs to ensure technical security implementations align with overall security policy, accreditation requirements, and compliance standards
- Manage security configurations of development, test, and production environments, ensuring adherence to baselines and addressing configuration drift
- Research, evaluate, and recommend new security technologies, tools, and best practices to enhance the security posture of our Dev Sec Ops ecosystem
- Develop custom security scripts, automation, and integrations to streamline security processes and improve operational efficiency
- Participate in incident response activities related to software vulnerabilities and security breaches within the development and deployment pipelines
- Document technical security implementations, architectural designs, and standard operating procedures for secure Dev Sec Ops practices
REQUIRED QUALIFICATIONS:
- Active Top Secret (TS/SCI) security clearance
- Minimum of 7 years of experience in a highly technical cybersecurity role, such as Security Engineer, Dev Sec Ops Engineer, or Software Security Engineer
- Minimum of 3 years of hands-on, in-depth experience securing Dev Sec Ops pipelines and integrating security tools
- Demonstrable expertise with Git Lab, including extensive experience configuring and utilizing its SAST and DAST capabilities
- Proven experience with Artifactory, specifically leveraging Artifactory X-Ray for software composition analysis (SCA) and vulnerability management
- Deep technical knowledge and hands-on experience with Sonar Qube for static code analysis and code quality gates
- Expertise in implementing and enforcing the Secure Software Development Framework (SSDF) and secure SDLC principles
- Strong understanding of secure coding practices, common vulnerabilities (e.g., OWASP Top 10), and remediation techniques
- Proficiency in scripting and automation using languages such as Python, Bash, Power Shell, or similar
- Experience securing systems operating on multiple government networks with varying classification levels and understanding of data diode security implications
- Comprehensive technical understanding of the Risk Management Framework (RMF) and Information Assurance (IA) principles as they apply to system implementation and security control mapping
- Familiarity with containerization technologies (e.g., Docker, Kubernetes) and their security best practices
- Excellent problem-solving skills, with the ability to diagnose and resolve complex technical security issues
- Strong collaboration and communication skills, capable of working effectively with development, operations, and security teams
PREFFERED QUALIFICATIONS:
- A current Top Secret/SCI security clearance
- Experience with other security testing tools (e.g., dynamic application security testing (DAST) tools, penetration testing tools, fuzzing tools)
- Background in software development or system administration is a plus, providing a stronger foundation for Dev Sec Ops integration
- Experience with Infrastructure as Code (IaC) and its security implications
- Knowledge of supply chain security best practices for software
EDUCATION:
- Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related technical discipline. (Relevant…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×