DevSecOps Engineer

Blackstone Talent Group

  • Colorado, CO
  • Today

    Highlights

    Blackstone Talent Group is a wholly owned subsidiary of Blackstone Technology Group, a global IT services and software firm that implements technological solutions across commercial industry verticals and the US Federal Government. Must have a working knowledge of security engineering principles, including identity and access management, vulnerability management, secure configuration baselines, secrets management, encryption and logging.

    Numbers & Facts

    LocationColorado, CO

    Description

    Blackstone Talent Group, an award-winning technology consulting and talent agency is seeking a DevSecOps Engineer to join our Client's team.

    Description of Duties:

    The DevSecOps Engineer supports the Missile Defense Agency (MDA).


    The DevSecOps Infrastructure Engineer designs, implements, secure and operates the cloud and on-premises infrastructure that enables reliable software delivery and mission-critical services. The role integrates security throughout the software development lifecycle, improves platform resiliency, observability and establishes repeatable infrastructure and deployment practices through automation.


    The successful candidate is a hands-on technical leader who can translate engineering and security requirements into scalable platforms capabilities. They will partner closely with software engineers, cybersecurity personnel, systems administrators, product teams and program leadership to deliver secure, maintainable and compliant infrastructure.


    Key Responsibilities

    • Design, deploy and maintain scalable, resilient and secure infrastructure across cloud, hybrid and/or on-premises environments.
    • Develop and manage Infrastructure as Code (IaC) using tools such as Terraform, Ansible, CloudFormation, Pulumi or equivalent.
    • Build, maintain and improve continuous integration and continuous delivery (CI/CD) pipelines that incorporate automated security controls, testing, artifact management and deployment approvals.
    • Integrate security practices into the development lifecycle, including code scanning, dependency scanning, secret detection, container
    • image scanning, configuration validation and vulnerability remediation workflows.
    • Engineer and operate containerized platforms using Docker, Kubernetes, OpenShift or comparable technologies.
    • Establish platform observability through centralized logging, metrics, alerting, tracing, dashboards and service-level objectives.
    • Implement identity, access, secret-management, encryption, network segmentation and least-privilege controls in partnership with cybersecurity stakeholders.
    • Support system availability, incident response, root-cause analysis, disaster recovery, backup and continuity-of-operations activities.
    • Automate routine operational activities to reduce manual effort, configuration drift, deployment risk and mean time to restore service.
    • Define and maintain technical standards, reference architectures, runbooks and operational documentation.
    • Conduct infrastructure and deployment design reviews; identify technical risks, security gaps, performance constraints and remediation options.
    • Mentor junior engineers and promote engineering practices for secure coding, operational readiness, automation and infrastructure reliability.
    • Coordinate with engineering, security, compliance and program stakeholders to prioritize platform improvements and resolve cross-functional issues.


    The successful candidate will:

    • Have strong written and verbal communication skills, including the ability to document technical decisions and brief technical and nontechnical stakeholders.


    Basic Requirements:

    • Must have 6, or more, years of general (full-time) work experience
      • May be reduced with completion of advanced education
    • Must have 4, or more, years of experience in systems engineering, cloud infrastructure, site reliability engineering, platform engineering, DevOps, DevSecOps or a related technical discipline.
    • Must have 6, or more, months of experience working in a management or leadership role
    • Must have demonstrated experience designing and operating production infrastructure in AWS, Microsoft Azure, Google Cloud Platform, private cloud and/or hybrid environments.
    • Must have strong proficiency with Infrastructure as Code and configuration-management tools.
    • Must have experience designing, implementing and maintaining CI/CD pipelines using platforms such as GitLab CI/CD, Jenkins, GitHub Actions, Azure DevOps or equivalent.
    • Must have experience with Linux administration, networking fundamentals, scripting and automation using Python, Bash, PowerShell, Go, or similar languages.
    • Must have experience operating container and orchestration technologies, including Kubernetes and OpenShift.
    • Must have a working knowledge of security engineering principles, including identity and access management, vulnerability management, secure configuration baselines, secrets management, encryption and logging.
    • Must have experience with monitoring and observability tooling such as Prometheus, Grafana, Elastic Stack, Splunk, Datadog, CloudWatch or equivalent.
    • Must be able to troubleshoot complex distributed-system, infrastructure, networking, deployment and security issues.
    • Must have a current DoW 8570 IAT Level II certification (ex: Security+ or equivalent)
    • Must have an active DoW Secret Security Clearance


    Desired Requirements:

    • Have a Bachelor’s degree, or higher, in computer science, information systems, engineering, cybersecurity or a related field; equivalent relevant experience may be considered.
    • Have experience supporting regulated, government, defense or other high-assurance environments.
    • Relevant certifications, such as AWS Certified Solutions Architect, AWS Certified DevOps Engineers, Microsoft Azure
    • Administrator/DevOps Engineer, Certified Kubernetes Administrator, Red Hat Certified Specialist, CISSP, CCSP or equivalent.
    • Have experience implementing policy-as-code and security-as-code practices using tools such as Open Policy Agent, Kyverno, Checkov, tfsec, Trivy, Snyk, SonarQube or equivalent.
    • Have experience with Zero Trust architecture concepts and implementation.
    • Knowledge of secure software supply-chain practices, including software bill of materials, artifact signing, provenance and dependency management.
    • Have experience with high-availability design, disaster recovery, capacity planning and performance engineering.
    • Be familiar with Agile delivery, product management and technical program execution.
    • Have an active DoW Top Secret Security Clearance



    Security Clearance Required: Secret


    Blackstone Talent Group is a wholly owned subsidiary of Blackstone Technology Group, a global IT services and software firm that implements technological solutions across commercial industry verticals and the US Federal Government. Blackstone's global talent augmentation practice was founded in 1998. Blackstone Talent Group has offices in San Francisco, Denver, Houston, Colorado Springs, and Washington, DC. We specialize in providing clients the best talent across a variety of industries and sectors.

    EOE of Minorities/Females/Veterans/Disabilities

    Similar Jobs

    See more jobs