Lead DevSecOps Platform Engineer

Nabout Leidos
United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$87,100.0 - $157,450.0
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Systems Engineering Automation of Tests Bash Shell Command-Line Interface Cloud Computing Cloud Engineering Code Review Information Systems Continuous Delivery Continuous Integration
+33 more
Python (Programming Language) Key Management Linux System Administration Cisco Nexus Switches Release Management Cloud Services Security Software Software Deployment Software Engineering SonarQube Systems Integration Tripwire Scripting Cloud Platform System Delivery Pipeline Sonatype Software Troubleshooting Veracode Gitlab Cloudformation Gitlab-ci Git Flow Kubernetes Information Technology Deployment Automation Checkmarx Terraform Software Version Control Devsecops Docker Static Application Security Testing Vulnerability Analysis Artifactory

Job description

Leidos is seeking Lead DevSecOps Platform Engineers to join the Air Traffic Business Area within the Homeland Sector, supporting the development of next-generation flight service and air traffic systems. This work aligns with the FAA’s broader initiative to modernize legacy flight service capabilities, replacing aging infrastructure with scalable, cloud-based platforms designed to improve safety and operational efficiency-particularly in remote and high-dependency aviation environments. These efforts focus on delivering mission-critical, future-ready solutions that provide safety-critical flight services to the pilot community.\n \n Please note, this exciting position is currently unfunded and is in anticipation of future work.\n \n In this position, you will serve as a Lead DevSecOps Platform Engineer supporting Agile software development teams through the design, implementation, and continuous improvement of secure software delivery platforms and automated development pipelines. You will be responsible for enabling automated build, test, security scanning, deployment, and release processes while integrating security throughout the software development lifecycle.\n \n This role is primarily responsible for the software delivery platform, GitLab administration, CI/CD pipelines, deployment automation, and developer enablement. Cloud infrastructure, Kubernetes platform administration, and cloud operations are performed in close partnership with the Cloud Systems Owner team. Working closely with software engineers, Cloud Systems Owners, systems engineers, cybersecurity personnel, Product Owners, and solution architects, you will help ensure software can be developed, validated, and deployed rapidly while meeting the operational, security, and compliance requirements of mission-critical FAA applications.\n \n This position supports government programs and requires the ability to obtain and maintain a favorable Public Trust investigation.\n \n \nPrimary Responsibilities\n \n \n

  • Own the implementation and operation of software delivery pipelines, from build through production release\n
  • Develop, administer, and maintain automated build, test, deployment, and release workflows using GitLab CI/CD, GitLab Runners, AWS CodePipeline, AWS CodeBuild, and related automation technologies.\n
  • Administer GitLab platform infrastructure (projects, groups, runners, repositories, and permissions), and develop reusable CI/CD templates and pipeline libraries adopted across Agile teams.\n
  • Integrate automated security capabilities into software delivery pipelines, including static application security testing (SAST), software composition analysis (SCA), container image scanning, secrets detection, Infrastructure-as-Code scanning, and software supply chain security.\n
  • Design and maintain automated deployment strategies for Kubernetes-based applications utilizing Helm, GitOps methodologies, and progressive deployment techniques.\n
  • Configure and administer GitLab Container Registry, package repositories, artifact repositories, and software dependency management solutions supporting secure software delivery.\n
  • Collaborate with Cloud Systems Owners to ensure cloud platforms effectively support automated software deployment, scalability, operational monitoring, and application reliability.\n
  • Partner with software development teams to improve build reliability, deployment consistency, release quality, and developer productivity through automation and self-service engineering capabilities.\n
  • Work closely with cybersecurity teams to integrate security throughout the software development lifecycle and ensure compliance with organizational security requirements.\n
  • Troubleshoot build failures, deployment issues, pipeline performance, dependency management, and software delivery problems across development, integration, and production environments.\n
  • Develop and maintain pipeline documentation, deployment procedures, release management processes, operational guidance, and engineering standards.\n
  • Participate in Agile ceremonies while supporting multiple software development teams through automation, continuous integration, and continuous delivery.\n

Requirements

  • Bachelor’s degree in Computer Science, Software Engineering, Information Systems, Engineering, or related field with 4-8 years of relevant experience, or Master’s degree with 2-6 years of experience.\n
  • Experience designing, implementing, and maintaining secure CI/CD pipelines supporting enterprise software development.\n
  • Experience developing and administering GitLab CI/CD pipelines, including GitLab Runners, pipeline templates, variables, artifacts, deployment workflows, and pipeline optimization.\n
  • Experience administering GitLab repositories, merge requests, branching strategies, repository permissions, and source code management workflows.\n
  • Experience developing Infrastructure as Code using Terraform, AWS CloudFormation, or similar technologies.\n
  • Experience deploying containerized applications (Docker, Kubernetes) using Helm or comparable tools.\n
  • Experience developing automation using Bash, Python, or similar scripting languages.\n
  • Familiarity with Linux administration and command-line tools.\n
  • Experience with AWS cloud services supporting modern application deployments.\n
  • Knowledge of software supply chain security, secrets management, dependency management, and secure software development practices.\n
  • Experience integrating automated testing and security scanning into CI/CD pipelines.\n
  • Strong troubleshooting, communication, collaboration, and problem-solving skills.\n
  • Ability to obtain an SF-85 Public Trust suitability determination.\n
  • US Citizenship.\n, * Experience supporting FAA, DoD, or other Federal software development programs.\n
  • Knowledge of DevSecOps methodologies and modern cloud-native software engineering practices.\n
  • Experience implementing GitOps deployment methodologies using GitLab and Kubernetes.\n
  • Experience with security scanning tools such as GitLab Ultimate Security, SonarQube, Checkmarx, Veracode, Snyk, Trivy, or similar technologies.\n
  • Experience administering GitLab Container Registry, Nexus Repository Manager, Artifactory, or comparable artifact management solutions.\n
  • Experience supporting cloud-native application development using Kubernetes and AWS.\n
  • Experience implementing automated testing, quality gates, and deployment approvals within CI/CD pipelines.\n
  • Experience supporting Agile and SAFe software development organizations.\n
  • AWS, GitLab, Kubernetes, Terraform, or comparable industry certifications.\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

2:43 min

Integrating DevSecOps within the software development lifecycle

Jasmin Azemović Jasmin Azemović · WWC 2023

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

4:54 min

Implementing geographic salary tiers for compensation equity and fairness

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · WWC Europe 2026

Videos

See all

Related articles

See all