> Markdown version of [/jobs/ext/2177906-devsecops-cloud-hosting-engineer](https://www.wearedevelopers.com/jobs/ext/2177906-devsecops-cloud-hosting-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevSecOps / Cloud Hosting Engineer - **Company:** General Dynamics Information Technology - **Location:** Arlington, VA, United States - **Experience:** Expert - **Salary:** $127,500.0 - $172,500.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Key Management, Network Segmentation, Zero Trust Network Access, Security Software, Data Logging, Cloud Platform System, Autoscaling, Istio, Kubernetes, Bicep, Azure AKS, Terraform, Cyber Warfare, Stream Processing, Devsecops - **Published:** August 22, 2026 - **Apply:** https://dejobs.org/x/x/4A576460BCFF4460B35EF1A49D612403/job/ ## About the Role Autoscaling,Cloud Computing,Cloud Infrastructure,Container Orchestration,DevSecOps, 5 + years of related experience, * Hands-on experience owning and operating cloud infrastructure in regulated or government environments. * Production experience with container orchestration, including cluster configuration, autoscaling, and troubleshooting. * Experience operating services with many long-lived client connections or comparable streaming systems. * Experience maintaining CI/CD pipelines with automated security scanning. * Experience defining infrastructure as code. * Experience implementing identity, access control, secrets management, and encryption. * Working knowledge of RMF or equivalent frameworks, including continuous monitoring and evidence collection. * One current cloud platform or container-orchestration certification. * Bachelor's degree in a technical field and 5 years of relevant experience (or equivalent experience). * Active Top Secret clearance. * U.S. citizenship. * On-site work at a Washington, D.C.-area government facility; not remote or hybrid. Preferred Qualifications * Experience with AWS GovCloud, Azure Government, or similar government cloud regions; experience with FedRAMP or DoD accreditation. * Experience with Kubernetes distributions such as Amazon EKS or Azure Kubernetes Service. * Experience with Terraform, CDK, or Bicep. * Experience supporting an initial authorization to operate (ATO). * Platform certifications such as AWS DevOps Engineer, AWS Solutions Architect, Azure Solutions Architect, or CKA. * Security certifications such as AWS Security Specialty, Azure Security Engineer, Security+, or CISSP. * Experience with zero-trust patterns, workload identity, and service mesh. * Experience operating environments subject to independent security assessment. ## Description The DevSecOps / Cloud Hosting Engineer owns and operates the cloud environment hosting an operator application used in a national cyber defense command center. The environment supports independently deployed services, gateway and streaming infrastructure, and the static delivery path for the application. The engineer stands up the environment, manages its pipeline, and maintains the security controls and evidence required for authorization., Cloud Environment Ownership * Own the cloud hosting architecture, including network segmentation, routing, and private endpoints. * Operate the container orchestration platform, including node configuration, autoscaling, and persistent storage. * Manage content delivery, object storage origin, and load-balanced routing. * Operate high-capacity gateway and streaming services supporting many long-lived client connections. * Maintain separation across development, test, and production; manage capacity, cost, and performance. Pipeline & Infrastructure as Code * Build and maintain CI/CD pipelines enabling frequent, low-risk releases. * Define infrastructure as code for reproducible, reviewable environments. * Integrate automated security, dependency, image, and configuration scanning. * Maintain release, promotion, and rollback procedures, including service-level isolation under pressure. Security Engineering & Authorization * Own the environment's security configuration and alignment to the required control baseline. * Implement identity and access control, policy guardrails, identity federation, and managed secrets. * Implement encryption in transit and at rest using managed key services. * Own the authorization boundary and support the authorization process through boundary definition, control implementation, and evidence collection. * Maintain continuous monitoring through configuration compliance, posture management, audit trails, and flow logging; remediate findings. Availability, Monitoring & Response * Implement monitoring and alerting capable of detecting degradation early, including streaming-layer health. * Maintain backup, recovery, and availability capabilities for continuous operations. * Respond to environment incidents, including after hours, and lead root-cause resolution. * Document environment behavior, dependencies, and recovery procedures. Collaboration & Professional Currency * Work with application engineers to design deployment, scaling, configuration, and secrets handling. * Provide developer support without weakening security posture. * Contribute to hosting, deployment, and authorization-boundary architectural decisions. * Obtain and maintain required training and certifications; certification currency is reported monthly. ## Related Videos - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [My journey into DevOps world - How it all started!](https://www.wearedevelopers.com/videos/545-my-journey-into-devops-world-how-it-all-started) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)