SME - DevSecOps / Python Engineer
Konane Solutions
United States
11 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.dice.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source
Tech stack
Application Programming Interfaces (APIs)
Amazon Web Services
Cloud Computing
Cyber Security
Continuous Integration
Github
Identity and Access Management
Python (Programming Language)
Key Management
Open Web Application Security
Role-Based Access Control
Zero Trust Network Access
+22 more
Secure Coding
Security Software
Software Engineering
Software Vulnerability Management
Policy as Code
Data Logging
Scripting
Flask (Web Framework)
Delivery Pipeline
Git
Fastapi
Gitlab-ci
Git Flow
Kubernetes
Infrastructure Automation Frameworks
Information Technology
Restful APIs
Terraform
Devsecops
Docker
Static Application Security Testing
Dynamic Application Security Testing
Job description
The Senior SME - DevSecOps / Python Engineer provides senior technical leadership and hands-on engineering for secure software delivery, Python automation, cloud infrastructure, and CI/CD within a federal enterprise environment. The role establishes secure delivery standards, builds reusable automation and services, and integrates security throughout the software development lifecycle., * Design, implement, and optimize Git-based CI/CD pipelines for Python and platform workloads using GitLab CI, GitHub Actions, or equivalent tools.
- Integrate SAST, DAST, SCA, secrets scanning, container scanning, SBOM generation, artifact signing, and security gates into delivery pipelines.
- Develop production-grade Python automation, APIs, services, and operational tooling using Python, FastAPI/Flask, REST, and scripting frameworks.
- Automate infrastructure and environment provisioning using Terraform, policy-as-code, GitOps, and configuration-as-code practices.
- Build and secure Docker/container deployment patterns using Kubernetes/ECS and integrate AWS IAM, networking, secrets, encryption, and logging controls.
- Lead secure design reviews, vulnerability remediation, production troubleshooting, incident root-cause analysis, technical mentoring, and continuous improvement.
Requirements
- Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, Cloud Computing, or a related technical field.
- 10+ years of software engineering, DevSecOps, cloud, platform, or security engineering experience, including senior technical leadership responsibilities.
- Expert Python development skills, including FastAPI/Flask, REST APIs, automation, testing, packaging, logging, and secure coding practices.
- Strong CI/CD, Git, Terraform, Docker, Kubernetes/ECS, AWS, and automated security testing experience.
- Knowledge of OWASP, IAM/RBAC, Zero Trust, secrets management, encryption/TLS, observability, vulnerability management, and software supply-chain security.
- Experience supporting federal or regulated environments and familiarity with FISMA, NIST 800-53, FedRAMP, ATO, and continuous monitoring.
- Preferred certifications include AWS, CISSP/Security+, CKA/CKS, Terraform, Python, or comparable DevSecOps credentials.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.dice.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
Why Upskilling And Reskilling is Important For Developers
over 2 years ago
EM
Eli McGarvie
Highest Paying Tech Companies for Developers
over 3 years ago
EM
Eli McGarvie
Find a Developer Job: 12 Best Job Sites For Developers
over 3 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago