DevSecOps Engineer IV

PlanIT Group

Reston, VA

JOB DETAILS
SKILLS
Agile Programming Methodologies, Amazon Web Services (AWS), Analysis Skills, Ansible, Application Integration, Application Programming Interface (API), Applications Security, Artificial Intelligence (AI), Artificial Intelligence (AI) Programming Languages, Automation, Best Practices, Business Support, Cloud Applications, Cloud Architecture, Cloud Computing, Coding Standards, Communication Skills, CompTIA Security+, Computer Science, Computer Security, Configuration Management, Continuous Deployment/Delivery, Continuous Integration, Database Administration, DevOps, Docker, GCP (Good Clinical Practices), Git, GitHub, Government, HIPAA (Health Insurance Portability and Accountability Act), ISO (International Organization for Standardization), Identify Issues, Incident Response, Industry Standards, Information Technology & Information Systems, Infrastructure Software, Internet Security, Java, Jenkins, Laptop PC, Maintain Compliance, Microservices, Microsoft SQL Server, Microsoft Windows Azure, MySQL, Network Security, NoSQL, Open Source, Operations Processes, Operations Security (OPSEC), Oracle Database, PCI-DSS, Performance Management, Platform as a Service (PaaS), PostgreSQL, Problem Solving Skills, Process Improvement, Production Systems, Protective Services, Public Cloud, Python Programming/Scripting Language, REST (Representational State Transfer), Regression Testing, Regulations, Release Management/Engineering, Reliability Engineering, Resource Management, SQL (Structured Query Language), Sales Management, Sales Pipeline, Scripting (Scripting Languages), Secure Coding, Security Information and Event Management (SIEM), Service-Oriented Architecture (fka Distributed Object Architecture), Software Development, Software Development Lifecycle (SDLC), Software Engineering, Software Patches, Software Testing, Software as a Service (SaaS), Standards Development, Systems Reliability, Team Player, Technical Leadership, Test Tools, Training/Teaching, U.S. National Institute of Standards and Technology (NIST), United States Citizen, User Interface/Experience (UI/UX), VMWare, Virtualization, Web Services, Willing to Travel
LOCATION
Reston, VA
POSTED
1 day ago
Job Title: DevSecOps Engineer (Remote) IV:

Description:
US Government Client is seeking a DevSecOps Engineer to strengthen our software development lifecycle by embedding security practices into every stage of delivery. This role will work across development, operations, and security teams to ensure applications and infrastructure are secure, compliant, and resilient, while maintaining speed and efficiency in deployment.
The ideal candidate will be responsible for streamlining our development and operational processes, ensuring efficient deployment and management of applications in cloud environments. This role requires a strong understanding of cloud computing, IT infrastructure, and software development practices. You will work closely with development teams to implement CI/CD pipelines, manage cloud resources, and enhance system performance.

Key Responsibilities:
• 10 years' experience in the performance of Release management in DEV/SIT/CAT/PROD environments for major/minor releases, patches and upgrades
• Ability to Create/ manage/support Continuous Integration/Continuous Delivery (CI/CD) pipeline;
• 10 years' experience in the support of and to provide code promotion and monitoring; and Support data fixes as required.
• 3 years' experience with Copilot and /or any AI-enabled tasks to convert manual tasks into automated workflows
• Demonstrated expertise in AI technologies, methodologies, frameworks, tools, and enterprise AI implementation practices.
• Integrate existing automation frameworks with AI-based solutions to improve coverage, reliability, and efficiency.
• Ensure all AI scripts and programs are fully executable on postal-issued laptops within approved security and environment constraints.
• 5 years' experience in the design, implementing, and maintaining secure CI/CD pipelines with automated security checks.
• Knowledge of Integration application security testing tools (SAST, DAST, SCA) into development workflows.
• Ability to collaborate with developers to enforce secure coding practices
• 3 year's Expertise Secure Coding Standards enforced during development
• Static and Dynamic Application Security Testing (SAST/DAST), integrated into pipelines.
• Automate compliance checks, code analysis in CI/CD Pipelines.
• Hands on experience with Jenkins, GitLab CI/CD, Azure DevOps, or CircleCI to embed security checks.
• Deep knowledge of AWS, Azure, or GCP security services and configurations.
• Experience securing Docker and Kubernetes workloads.
• Proficiency in languages like Python, Java, to automate security tasks
• Familiarity with Terraform, Ansible, or CloudFormation, with emphasis on secure configurations.
• Collaborate with software developers and IT staff to oversee code releases and deployments.
• Design and implement scalable cloud architecture using platforms such as AWS, Google Cloud Platform, or Azure.
• Manage containerization technologies such as Docker and orchestration tools like Kubernetes.
• Utilize Infrastructure as Code (IaC) tools like Ansible for automated provisioning of infrastructure.
• Ensure system reliability through monitoring, logging, and alerting using tools like Jenkins and Git.
• Develop RESTful APIs and microservices to facilitate communication between applications.
• Maintain databases including MySQL, PostgreSQL, Oracle, and Microsoft SQL Server.
• Participate in Agile development processes to improve software delivery cycles.
• Troubleshoot issues across the application stack from front-end to back-end services.
• Manage and secure cloud environments (AWS, Azure, GCP) and containerized workloads (Docker, Kubernetes)
• Implement Infrastructure as Code (IaC) with secure configurations using Terraform, Ansible, or CloudFormation.
• Monitor and respond to security incidents, leveraging SIEM tools and observability platforms.
• Ensure compliance with industry standards and regulations (ISO 27001, NIST, GDPR, HIPAA, PCI DSS).
• Provide training and guidance to teams on DevSecOps best practices.

Qualifications:
• Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
• Proven experience in DevOps, Security Engineering, or Cloud Security.
• Strong knowledge of CI/CD tools (Jenkins, GitLab CI/CD, Azure DevOps).
• Hands on experience with cloud platforms (AWS, Azure, GCP).
• Proficiency in programming/scripting languages (Python, Java).
• Familiarity with containerization and orchestration (Docker, Kubernetes).
• Experience with security automation tools and vulnerability management.
• Experience with AWS & Azure & the development of tools and processes to drive DevSecOps maturity by automating builds, regression testing, monitoring, and pushing releases across environments
• Experience with troubleshooting, triaging, and resolving issues in CI/CD pipeline failures or latency
• Experience with developing enterprise cloud-native platforms using Kubernetes, Docker, or CI/CD tools, including GitHub Actions or GitLab CI/CD
• Experience with employing an Infrastructure as Code (IaC) approach to managing cloud environments.
• Experience with creating and improving automation scripts across multiple technical stacks using Python,
• Experience with troubleshooting and resolving issues related to both open source and commercial tools in public cloud environments
• Experience in working with GitOps tools (Flux, ArgoCD)
• CKAD or CKA Certification
• AWS Certification, including Solutions Architect, DevOps Engineer, Networking, or Security
• Security Engineering or Cyber Engineering Certification, including Security+
• Proficiency in scripting languages
• Experience with virtualization technologies including VMware and OpenStack.
• Familiarity with service-oriented architecture (SOA) principles and web services (SaaS, PaaS).
• Knowledge of NoSQL databases as well as SQL-based systems.
• Understanding of DevOps methodologies including CI/CD practices.
• Experience with configuration management tools.

Preferred Certifications:
• Certified DevSecOps Professional (CDP)
• Certified Kubernetes Security Specialist (CKS)
• AWS/Azure/GCP Security Certifications

Additional Required Skills/Experience:
o A minimum of thirteen (13) to twenty (20) years' relevant experience.
o A degree from an accredited College/University in the applicable field of services is required. If the individual's degree is not in the applicable field, then four additional years of related experience is required.

Additional Provisions:
• Pass both a client mandated clearance process to include drug screening, criminal history check and credit check.
• Once candidate's resume is approved and interview passed, the agency is responsible for providing drug screening. Failure to submit the drug screening results will delay the security clearance process.
• If a candidate is given an interim clearance, continuation of employment is then based on the candidate receiving a sensitive clearance.
• All candidates must be a US Citizen, or have permanent residence status (Green Card).
• Candidate must have lived in the US for the past 5 years.
• Cannot have more than 6 months travel outside the United States within the last five years. Military Service excluded. (Exception does not include military family members.)
• All overtime must be pre-approved in writing by the client manager or his/her designated representative.
• Agency will not be reimbursed for overtime charges without previous written authorization. Authorized overtime will be reimbursed at straight time.
• The enforced dress code is business casual, i.e. collared shirt with slacks for men, no skirts above the knee for women. Place and Period of Performance
• Hours of support:
o The standard work week for contract staff will be 5 days a week and 8 hours per day preferable Monday through Friday.
o Contract staff may be required to travel to support business efforts.

About the Company

P

PlanIT Group

PLANIT Group is a fast-growing global technology consulting firm dedicated to delivering innovative solutions to our clients that drive results. We collaborate with our partners and customers to help them improve performance, efficiency, and quality. Our team delivers innovative solutions and services - including management consulting, systems integration, ERP solutions, enterprise architecture, communications, and infrastructure services. We focus on delivering value and driving increased productivity and efficiencies for our clients’ mission. Our extensive experience in the Federal, Defense, Intelligence, State, Local, Healthcare and Commercial industries delivers proven results and accelerated benefits.

Clients engage PLANIT for our expertise, innovative approach, and our exceptional team. We promote a creative, client-centric work environment and culture, striving to provide challenging and rewarding opportunities for our company’s employees and partners. Integrity and innovation are the core principles of our company philosophy. Our customers engage us to create solutions to complex mission challenges, and PLANIT delivers. For more information, visit http://www.planitgroup.com/. Innovation. Integration. Integrity.

COMPANY SIZE
500 to 999 employees
INDUSTRY
Government and Military
WEBSITE
https://www.planitgroup.com/