Sorry, this listing is no longer accepting applications. Don’t worry, we have more awesome opportunities and internships for you.

DevSecOps Engineer

Oteemo, Inc

DevSecOps Engineer

Manassas, VA
Full Time
Paid
  • Responsibilities

    Job Description

    Lead the security transformation of submarine combat systems through innovative DevSecOps practices. As the DevSecOps Engineer, you'll design and implement secure, automated delivery pipelines that fundamentally transform how tactical capabilities reach our warfighters at the speed of relevance.

    You'll architect the security frameworks and processes that bridge legacy submarine applications to modern containerized environments within the submarine ecosystem. Your expertise in secure CI/CD and container security will establish the foundation for continuous Authority to Operate (cATO) while ensuring compliance with the most stringent defense requirements.

    A critical aspect of your role will be embedding security throughout the entire software lifecycle while focusing on software build optimizations. You'll develop automated testing pipelines, security validation pipelines, implement policy-as-code frameworks, and establish the guardrails that enable development teams to deliver secure capabilities with unprecedented speed and confidence.

    You'll champion the adoption of DevSecOps culture across teams, fostering collaboration between development, security, and operations to create a seamless delivery model that directly enhances submarine combat readiness and effectiveness.

    Join our team in Manassas, VA, with a flexible hybrid work arrangement. This role offers the opportunity to make a meaningful impact on national security while advancing your expertise in secure software delivery within classified defense environments.

    Key Responsibilities:

    Strategic Leadership & Security Integration

    • Architect Secure Delivery Pipelines - Design and implement secure CI/CD pipelines for tactical submarine applications that incorporate security at every stage, from code commit to production deployment

    • Drive Containerization Strategy - Develop comprehensive strategies for containerizing legacy applications following Modular Open Systems Architecture (MOSA) principles

    • Provide Technical Leadership - Deliver security architecture guidance while mentoring teams on DevSecOps best practices and container security approaches

    • Foster Cross-Team Collaboration - Work closely with application teams to optimize containerization approaches and implementation strategies

    Technical Implementation & Security Automation

    • Orchestrate Container Security - Configure and manage policy frameworks for Kubernetes using tools like Open Policy Agent/Gatekeeper

    • Enable Secure Application Transformation - Support the strategic migration of legacy submarine applications to secure containerized environments

    • Implement Enhanced Security Controls - Develop and implement SELinux policies for container security while establishing comprehensive security controls throughout the deployment pipeline

    • Optimize Build Processes - Continuously refine and optimize build pipelines to improve delivery speed without compromising security

    Compliance & Security Validation

    • Design Automated Compliance - Establish security monitoring and compliance validation for container workloads

    • Champion Continuous Authorization - Automate security validation processes to achieve continuous Authority to Operate (cATO)

    • Create Testing Frameworks - Develop and maintain automated testing frameworks for complex submarine systems

    Platform Support & Knowledge Transfer

    • Provide Technical Guidance - Support application teams with container best practices and troubleshooting assistance

    • Manage Platform Tools - Maintain and optimize PaaS supporting tools and services

    • Develop Monitoring Solutions - Design and implement visualizations and dashboards using monitoring tools based on customer requirements

    • Enable Team Success - Provide comprehensive PaaS service training for development, DevSecOps and integration teams

  • Qualifications

    Qualifications

    Required:

    • Active Secret or Top-Secret Clearance.

    • 10+ years of experience designing, implementing, and maintaining enterprise infrastructure solutions.

    • Have in-depth, hands-on experience with building cloud-native platforms at scale for containerized workloads.

    • Perform and support day2 operations and troubleshooting on Kubernetes environments.

    • Leverage Kubernetes management and container orchestration tools. (RKE2)

    • Experience with orchestration deployment tools with automation and GitOps.

    • Ability to develop multi-stage CI/CD processes and pipelines to help accelerate software delivery.

    • Understanding of DoD security requirements and RMF processes.

    • Hands on experience with Kubernetes, Ansible, Vault, Jenkins, GitLab and Grafana/Loki stack.

    • Experience working in Agile environments with Business Analysts, Scrum masters, and sprint cycles leveraging tools like Jira or Rally.

    • Ability to effectively communicate with different level stakeholders (both technical and nontechnical) and provide solutions and presentations as needed.

    • Proven experience of delivering complex project engagements leveraging DevSecOps and cloud-native technologies and concepts.

    Preferred:

    • Experience with software development in C++ and/or Java a plus.

    • Experience with software build optimization.

    • CKS, CKA, and/or CKAD is a plus.

    Additional Information

    We Value:

    • Drive: Passion and energy to implement quality technical solutions. Self-motivation and intellectual curiosity
    • Commitment to Quality: Passion to conceive and produce world-class solutions that drive real-world value for the customer
    • Customer Focus: Consultative approach to solving problems for customers. Expectations management.
    • Communication: Superior communication skills. Ability to clearly articulate problems, solutions, risks, rewards etc. (written and verbal)
    • Technical Skills: Love for technology. You have to be inherently passionate about technology.
    • Business Acumen: Technology ultimately is used to enable the business. We look for people who understand how the businesses can be enabled through their technical solutions

    What we offer:

    • Ability to make a noticeable difference for the organization and our customers
    • Tremendous growth opportunity by becoming part of a rapidly growing organization. It’s not your tenure but what you can bring to the table that defines how your career will be shaped. You control your growth.
    • Complex but interesting challenges to improve the depth and breadth of your technical and business skills. Our consultants are business technologists and understand how technology drives business.
    • Competitive pay and benefits

    Work authorization requirement: US Citizen

    Oteemo is an equal employment and affirmative action employer. We evaluate qualified applicants on merit and business needs and not on race, color, religion, creed, gender, sexual orientation, national origin, ancestry, age, disability, genetic information, marital status, veteran status or any other factor protected by law. Oteemo complies with the law regarding reasonable accommodations for handicapped and disabled employees.