DevSecOps Platform Engineer

Nabout Leidos
United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$107,900.0 - $195,050.0
Working hours
Regular working hours

Tech stack

Agile Methodology Artificial Intelligence Amazon Web Services Systems Engineering Automation of Tests Bash Shell Cloud Computing Cloud Engineering Code Review Information Systems Continuous Integration Python (Programming Language)
+35 more
Key Management Linux System Administration Cisco Nexus Switches Release Management Secure Coding Security Software Software Deployment Software Engineering SonarQube Systems Integration Tripwire Scripting Cloud Platform System System Availability Delivery Pipeline Sonatype Software Security Software Troubleshooting Veracode Gitlab Cloudformation Containerization Gitlab-ci Git Flow Kubernetes Information Technology Deployment Automation Checkmarx Terraform Software Version Control Devsecops Docker Static Application Security Testing Vulnerability Analysis Artifactory

Job description

In this position, you will serve as a Senior DevSecOps Platform Engineer, providing technical leadership for the design, implementation, and continuous evolution of secure software delivery platforms supporting multiple Agile development teams. You will lead the development of enterprise CI/CD capabilities, establish engineering standards, and improve software delivery through automation, developer enablement, and secure software engineering practices.\n \n This role is primarily responsible for the software delivery platform, GitLab administration, CI/CD architecture, deployment automation, and developer enablement. Cloud infrastructure, Kubernetes platform administration, and cloud operations are performed in close partnership with the Cloud Systems Owner team. Working closely with software engineers, Cloud Systems Owners, systems engineers, cybersecurity personnel, Product Owners, solution architects, and technical leadership, you will help ensure software is developed, validated, and deployed rapidly while meeting the operational, security, and compliance requirements of mission-critical FAA applications.\n \n This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.\n \n \nPrimary Responsibilities\n \n \n

  • Lead the engineering, administration, and continuous improvement of the GitLab platform, including projects, groups, runners, repositories, permissions, scalability, and operational health.\n
  • Establish enterprise CI/CD standards through reusable GitLab pipeline templates, shared libraries, automation frameworks, and deployment workflows that improve consistency, maintainability, and engineering productivity across Agile development teams.\n
  • Lead the implementation and continuous improvement of automated application security, software supply chain security, and compliance validation throughout the CI/CD lifecycle, including SAST, software composition analysis (SCA), container image scanning, secrets detection, and Infrastructure-as-Code scanning.\n
  • Develop and maintain standardized deployment patterns for Kubernetes applications utilizing GitOps methodologies, Helm, progressive deployment techniques, and automated deployment validation.\n
  • Administer GitLab Container Registry, package repositories, artifact repositories, and software dependency management platforms supporting secure software delivery.\n
  • Collaborate with Cloud Systems Owners to ensure cloud platforms effectively support automated software deployment, operational scalability, application resiliency, and platform reliability.\n
  • Partner with software development teams to improve build performance, deployment reliability, release quality, and developer productivity through automation and self-service engineering capabilities.\n
  • Partner with cybersecurity teams to align DevSecOps capabilities with organizational security policies, Federal guidance, and continuous monitoring requirements.\n
  • Lead troubleshooting and root cause analysis for complex build failures, deployment issues, pipeline performance problems, dependency management challenges, and software delivery failures.\n
  • Review and provide technical guidance on pipeline designs, deployment strategies, automation solutions, and engineering practices developed by other DevSecOps Platform Engineers to promote consistency, maintainability, and adherence to established standards.\n
  • Define and monitor software delivery performance metrics, including pipeline reliability, deployment success rates, build performance, and deployment frequency, identifying opportunities to improve engineering productivity and operational excellence.\n
  • Develop and maintain DevSecOps engineering standards, pipeline documentation, release management processes, operational guidance, and platform governance documentation.\n
  • Mentor DevSecOps Platform Engineers and provide technical leadership on software delivery automation, secure development practices, and GitLab platform administration.\n
  • Evaluate emerging DevSecOps technologies, AI-assisted software engineering capabilities, software delivery methodologies, and automation techniques, recommending improvements that increase engineering productivity, security, and operational efficiency.\n
  • Participate in Agile ceremonies while providing technical leadership supporting multiple software development teams.\n, * Experience supporting FAA, DoD, or other Federal software development programs.\n

Requirements

  • Bachelor’s degree in Computer Science, Software Engineering, Information Systems, Engineering, or related field with 8-12 years of relevant experience, or Master’s degree with 6-10 years of experience.\n
  • Extensive experience designing, implementing, and administering enterprise CI/CD platforms supporting large-scale software development.\n
  • Advanced experience developing and administering GitLab CI/CD pipelines, including GitLab Runners, reusable pipeline templates, variables, artifacts, deployment workflows, and pipeline optimization.\n
  • Extensive experience administering GitLab repositories, merge requests, branching strategies, permissions, source code management, and platform governance.\n
  • Extensive experience developing Infrastructure as Code using Terraform, AWS CloudFormation, or similar technologies.\n
  • Advanced experience deploying containerized applications (Docker, Kubernetes) using Helm, GitOps methodologies, or comparable deployment tools.\n
  • Strong experience developing automation using Bash, Python, or similar scripting languages.\n
  • Experience administering Linux environments supporting CI/CD platforms and software development workflows.\n
  • Experience supporting AWS cloud services and cloud-native application deployments.\n
  • Extensive knowledge of software supply chain security, secrets management, dependency management, secure software development practices, and automated security testing.\n
  • Experience integrating automated testing, quality gates, compliance validation, and security scanning into enterprise CI/CD pipelines.\n
  • Demonstrated ability to lead technical initiatives, mentor engineers, establish engineering standards, and improve software delivery practices.\n
  • Strong troubleshooting, communication, collaboration, and problem-solving skills.\n
  • Ability to obtain an SF-85 Public Trust suitability determination.\n
  • US Citizenship.\n, * Experience leading DevSecOps initiatives supporting large Agile or SAFe software development organizations.\n
  • Experience implementing enterprise GitOps deployment methodologies using GitLab and Kubernetes.\n
  • Experience with GitLab Ultimate Security, SonarQube, Checkmarx, Veracode, Snyk, Trivy, or similar security analysis platforms.\n
  • Experience administering GitLab Container Registry, Nexus Repository Manager, Artifactory, or comparable artifact management platforms.\n
  • Experience supporting cloud-native application development using Kubernetes and AWS.\n
  • Experience implementing automated testing, deployment approvals, quality gates, compliance validation, and release governance within CI/CD pipelines.\n
  • AWS, GitLab, Kubernetes, Terraform, or comparable industry certifications.\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

5:02 min

Mapping Git flow branches to application tester segments

Majid Hajian · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

3:53 min

Introduction to git flow and clean feature branches

Johannes Haux · WWC 2022

Videos

See all

Related articles

See all