Cybersecurity DevSecOps Engineer - Huntsville, Alabama

Davidson Technologies, Inc.
Huntsville, AL, United States
13 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Systems Engineering Build Automation Bash Shell Configuration Management Software Quality Cyber Security Continuous Delivery Continuous Integration Github Python (Programming Language) Windows PowerShell Ansible
+12 more
Fortify (Software) Software Engineering SonarQube Subversion Systems Integration Gitlab Git Build Tools Bitbucket Devsecops Jenkins Vulnerability Analysis

Job description

The Cybersecurity DevSecOps Engineer will provide support for the Integrated Battle Command System (IBCS) program. The selected candidate will work within the cybersecurity team to integrate cybersecurity guidance into DevSecOps procedures being used to build IBCS software in support of cybersecurity efforts to maintain an ATO package., * Implement and integrate static code scanning tools, including Fortify and SonarQube, within automated build pipelines to ensure early detection of vulnerabilities and code quality issues.

  • Utilize build tools to generate a software bill of materials (SBOMs), enabling comprehensive visibility into software components and dependencies.
  • Apply expertise in build automation and CI/CD workflows to implement security controls within the software development lifecycle (SLDC).
  • Support preparation and presentation of cybersecurity and systems engineering materials for program reviews, working groups, and stakeholder discussions.

Requirements

  • Bachelor’s degree in STEM field with 5 years of cyber systems experience - OR - master’s degree in a STEM field with 3 years of cyber systems experience.
  • Must currently possess DoD 8140/8570 certification (e.g., Security+ CE).
  • Experience with implementing DevSecOps lifecycle - continuous build, integration, test, deployment, cyber, monitoring.

  • Hands-on experience using Jenkins for automating build, test, and deployment processes within CI/CD pipelines.

  • Experience with one of the following source-control systems: GIT, GitLab, GitHub, Bitbucket, Subversion.
  • Experience integrating automated code quality and security scanning tools (e.g., SonarQube, Fortify) directly into CI/CD pipelines to ensure compliant and secure delivery.
  • Experience working with software developers and/or vendors as needed to help diagnose and identify the root cause of problems.
  • Ability to work in a fast-paced agile environment with customer involvement.

  • Scripting and automation skills (e.g., Python, Bash, PowerShell, Ansible).

  • Experience working with systems engineering, software, integration/test, configuration management, and program stakeholders to support cybersecurity execution across the system lifecycle.

Preferred Qualifications:

  • Experience generating or working with a Software Bill of Materials (SBOM).
  • Experience enforcing container security standards and remediating vulnerabilities in container images.

Clearance:

  • Must have an Active DoD Secret security clearance

About the company

Davidson has distinguished itself in the aerospace and missile defense industry with an outstanding reputation for excellence. Specifically, we’re recognized for hiring noted experts, experienced engineers and scientists dedicated to designing and delivering advanced, intelligent technology solutions in defense of our Nation., Davidson Technologies is seeking a Cybersecurity DevSecOps Engineer in Huntsville, Alabama to support the Integrated Battle Command System (IBCS) program.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all