> Markdown version of [/jobs/ext/2248973-devops-engineer](https://www.wearedevelopers.com/jobs/ext/2248973-devops-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevOps Engineer - **Company:** Sabel Systems - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Application Firewall, Systems Engineering, Microsoft Azure, Bash Shell, Ubuntu (Operating System), CentOS, Cloud Computing, Cloud Computing Security, Cloud Engineering, Code Review, CompTIA Security+, Cyber Security, Computer Engineering, Continuous Integration, Linux, DevOps, Github, Identity and Access Management, Information Technology Operations, Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Key Management, Network Security, Linux System Administration, Linux Security Modules, Windows Servers, Network Segmentation, Open Source Technology, Windows PowerShell, Red Hat Enterprise Linux, Ansible, Prometheus, Runbook, Security Information and Event Management, Software Deployment, Software Engineering, SonarQube, Systems Architecture, Datadog, Google Cloud, Cloud Platform System, Software Security, Cyber Threat Analysis, Cloudformation, Containerization, Gitlab-ci, Kubernetes, Infrastructure Automation Frameworks, Information Technology, Hashicorp, Checkmarx, CIS Benchmarks, Terraform, Splunk, Devsecops, Docker, Elk Stack, Jenkins, Static Application Security Testing, Vulnerability Analysis, Golang, Dynamic Application Security Testing - **Published:** August 26, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9119452/devops-engineer ## About the Role * US Citizen with Top Secret security clearance with SCI eligibility; experience in classified environments * Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, Information Security, or related field; relevant professional experience may substitute * 10+ years of professional experience in systems administration, infrastructure operations, DevOps, cloud engineering, or cybersecurity * 5+ years of hands-on DevOps or DevSecOps experience including infrastructure automation, CI/CD pipeline development, and cloud platform management * 5+ years of hands-on cybersecurity experience including security architecture, threat modeling, vulnerability assessment, or security engineering * Advanced proficiency in Linux administration (Red Hat, CentOS, Ubuntu); strong understanding of Linux security, hardening, and compliance * Advanced expertise with Kubernetes cluster management and security; hands-on experience deploying, securing, and troubleshooting Kubernetes in production environments * Proficient with container technologies (Docker, Podman); understanding of container security, image scanning, and supply chain security * Hands-on expertise with at least one major cloud platform (AWS, Azure, GCP, or DoD-specific clouds); strong understanding of cloud security models, IAM, and compliance * Experience with DoD-specific cloud platforms (AWS GovCloud, Microsoft Azure Government, CloudOne, Platform One) or equivalent compliance-heavy environments * Expert-level scripting ability in Python, Bash, Go, or PowerShell; ability to develop complex automation solutions and tools * Advanced proficiency with infrastructure-as-code (IaC) tools such as Terraform, CloudFormation, Ansible, or Helm; experience implementing IaC security practices * Expert-level experience with CI/CD platforms (Jenkins, GitLab CI, GitHub Actions, or equivalent); ability to design and implement secure pipelines * Hands-on experience with security scanning tools including SAST (SonarQube, Checkmarx), DAST, container scanning, IaC scanning, and SCA tools * Experience with monitoring and observability platforms (Prometheus, ELK Stack, Splunk, DataDog, or equivalent); ability to design comprehensive monitoring strategies * Hands-on experience with SIEM systems and security monitoring; understanding of log aggregation, correlation, and alerting * Experience with Windows Server administration and security; knowledge of Active Directory and group policies * Current CompTIA Security+ (CE) certification required; CISSP, CCSK, or other advanced security certifications strongly preferred * Strong understanding of NIST Cybersecurity Framework, security controls, and DoD security requirements; familiarity with DISA RMF process * Willingness to be on-call for incident response and critical infrastructure issues; flexibility for occasional travel to classified facilities Preferred * Advanced security certifications (CISSP, CCSK, CEH, OSCP, CKA) or equivalent recognized credentials * Kubernetes certifications (CKA, CKAD, KCNA) or equivalent demonstrated expertise * Cloud certifications from AWS, Azure, or GCP focusing on security and architecture * Experience with DISA Security Technical Implementation Guides (STIGs) and hardening guidance * Experience with DoD Risk Management Framework (RMF) process including system categorization, security control selection, and control implementation * Experience with secrets management tools (HashiCorp Vault, cloud-native secret managers) in production environments * Experience with Web Application Firewalls (WAF), intrusion detection/prevention systems (IDS/IPS), and network security tools * Experience with security incident response, forensics analysis, or threat intelligence * Experience with threat modeling methodologies (STRIDE, PASTA) and security architecture design * Experience with supply chain security, software bill of materials (SBOM), and artifact repository security * Familiarity with DoD acquisition processes and systems engineering practices ## Description * Design, build, and maintain secure cloud infrastructure and platforms for classified DoD systems, incorporating security controls at every layer (network, compute, storage, application) * Develop and deploy infrastructure-as-code (IaC) using secure, version-controlled approaches (Terraform, CloudFormation, Ansible); implement security controls and compliance requirements through code * Implement and maintain security hardening standards for Kubernetes clusters, Docker containers, Linux/Windows servers, and cloud resources in accordance with DISA STIGs, NIST guidelines, and DoD security baselines * Manage network security controls including firewalls, WAF (Web Application Firewalls), network segmentation, access controls (ACLs), and encryption for data in transit and at rest * Design and implement secrets management solutions (HashiCorp Vault, cloud-native secret managers) to protect credentials, API keys, certificates, and sensitive configuration data * Design, implement, and maintain secure CI/CD pipelines that enforce security controls throughout the build, test, and deployment process * Implement automated security scanning at multiple pipeline stages: static application security testing (SAST), dynamic application security testing (DAST), interactive application security testing (IAST), container scanning, and infrastructure-as-code scanning * Conduct software composition analysis (SCA) to identify and remediate vulnerable dependencies and track open-source license compliance * Ensure system architecture and configurations comply with DoD security requirements, including DISA Risk Management Framework (RMF), NIST security controls, FISMA requirements, and system security plans (SSPs) * Implement continuous monitoring and compliance scanning to detect security misconfigurations, unauthorized changes, and control violations in near-real-time * Configure and manage Security Information and Event Management (SIEM) systems and security monitoring tools to provide visibility into infrastructure and application security events * Serve as a subject matter expert in incident response for infrastructure and application security incidents; investigate security events and coordinate remediation efforts * Provide technical support for application development teams, assisting with deployment issues, troubleshooting, and operational runbooks * Develop and maintain comprehensive technical documentation including architecture diagrams, runbooks, standard operating procedures (SOPs), and security configurations * Collaborate with security teams, software developers, systems architects, and IT operations to integrate security into development and operations processes, * Bias for Action: Decisive. Purposeful. Agile. We move with the speed of relevance to drive impact and progress. * Integrity: Respect. Ethics. Transparency. We do what's right and earn lasting trust. * Delivery Excellence: Customer-obsessed. Mission-focused. Quality-driven. We deliver innovative outcomes that exceed expectations. Our EVP Promise Join Sabel Systems, where your contributions drive impact, your growth is continuously supported, and your well-being is at the center of how we work. Together we can build the future with purpose. Rewarding Impact. Building Futures Together. ## Related Videos - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)