> Markdown version of [/jobs/ext/1953449-devsecops-cloud-engineer](https://www.wearedevelopers.com/jobs/ext/1953449-devsecops-cloud-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevSecOps / Cloud Engineer - **Company:** Lucayan Technology Solutions LLC - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Artificial Intelligence, Amazon Web Services, Software as a Service, Cloud Computing, Cloud Engineering, CompTIA Security+, Cyber Security, Continuous Integration, Github, Machine Learning, Meta-Data Management, OpenID, Platform as a Service (PAAS), Cloud Services, Secure Coding, Security Content Automation Protocol, Software Deployment, Software Vulnerability Management, Openapi, Software Repository, Okta, Information Technology, Data Lineage, Github Enterprise, Machine Learning Operations, Devsecops, Vulnerability Analysis, Microservices - **Published:** August 6, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9077339/devsecops-cloud-engineer ## About the Role * U.S. Citizenship required * Minimum active Tier 1 (or higher) federal background investigation, favorably adjudicated, prior to start * Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience) * Minimum 5-7 years of experience in DevSecOps, cloud engineering, or information security * Experience with modern DevSecOps pipelines and tools, including code repositories like GitHub * Experience with cloud architecture, migration, and modernization, preferably within AWS GovCloud * Demonstrated experience implementing secure coding principles and DoD STIGs across a CI/CD pipeline * Knowledge of implementing and documenting AI/ML solutions in accordance with DoD governance principles Preferred Qualifications * Experience with microservices architecture and hardened/Iron Bank container images * Federal government or DoD cloud/cybersecurity program background * AWS certification (e.g., Solutions Architect, Security Specialty) * Familiarity with data cataloging standards (Dublin Core, OpenAPI) Certifications * Active Tier 1+ background investigation prior to start * CompTIA Security+ or DoD 8140-approved equivalent required within six (6) months of contract start * (ISC)² CISSP or EC-Council Certified DevSecOps Engineer (ECDE) desired for senior/lead roles ## Description We are looking for a DevSecOps / Cloud Engineer to support CI/CD pipeline automation, STIG compliance automation, and cloud migration for a federal government IT program supporting the U.S. Army Corps of Engineers (USACE), Walla Walla District. You will support the migration of legacy on-premises applications to the USACE CWBI Cloud environment while automating security scanning and remediation workflows across the development pipeline. Key Responsibilities * Build and maintain CI/CD pipelines within the designated CWBI GitHub Enterprise environment * Automate DoD STIG compliance checks and vulnerability scanning (ACAS/SCAP) across the development pipeline; import results into DISA STIG Viewer and eMASS * Support vulnerability remediation efforts in accordance with required timelines (Critical/High: immediate; Moderate: 60 days; Low: 120 days) * Support migration of applications from on-premises hosting to the USACE CWBI Cloud, following a Cloud-Smart paradigm * Architect solutions using the highest possible abstraction of cloud services (e.g., SaaS, PaaS) and microservices where feasible * Deploy applications using CWBI PMO-approved hardened images, with a preference for Iron Bank images * Support inventory, risk-tagging, and documentation of AI/ML systems, models, and datasets in the Civil Works Data Catalog, including model cards and data lineage records * Ensure all AI/ML development and training occurs within the RMF-authorized AWS GovCloud environment, handling CUI in accordance with policy * Coordinate with the CWBI support team to implement standardized identity providers (Login.gov, OpenID, Keycloak) * Participate in two-week Agile sprint cycles and contribute to release planning and demonstrations ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 196: AI Killed DevOps, LLM Political Bias & AI Security](https://www.wearedevelopers.com/magazine/659-dev-digest-196-ai-killed-devops-llm-political-bias-ai-security) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)