> Markdown version of [/jobs/ext/3041172-software-engineer-kubernetes-devsecops](https://www.wearedevelopers.com/jobs/ext/3041172-software-engineer-kubernetes-devsecops). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Software Engineer - Kubernetes/DevSecOps - **Company:** Caci Inc - **Location:** Howard County, MD, United States - **Experience:** Experienced - **Salary:** $113,200.0 - $237,800.0 - **Contract:** Permanent contract - **Skills:** Agile Methodology, Automation of Tests, Configuration Management, Signals Intelligence, Computer Networks, Computer Engineering, Continuous Integration, Linux, Domain Name System (DNS), Key Management, Lightweight Directory Access Protocols (LDAP), OAuth, Public Key Infrastructure, Role-Based Access Control, Openid Connect, Zero Trust Network Access, Security Assertion Markup Language (SAML), Service Discovery, Software Engineering, Software Vulnerability Management, SSL Certificate Management, Scripting, Transport Layer Security, System Availability, Git, Kubernetes, Information Technology, Rancher, Atlassian Tools, Oracle Cloud Infrastructure, Devsecops, Docker, Vulnerability Analysis - **Published:** September 23, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9187503/software-engineer-kubernetesdevsecops ## About the Role Required: * TS/SCI clearance with polygraph. * Bachelor's degree in Computer Science, Computer Engineering, Software Engineering, or a related discipline; four additional years of experience may substitute for the degree. * Eight or more years of software engineering experience, including three years in SIGINT, Information Assurance, or Information Technology. * Experience engineering, securing, upgrading, and troubleshooting production Kubernetes or RKE2 environments. * Experience with namespaces, workloads, services, ingress, ConfigMaps, Secrets, RBAC, network policies, persistent storage, DNS, and service discovery. * Experience developing configurable deployments with Helm, Kustomize, values files, or comparable configuration-management tools, and packaging Docker or OCI images. * Experience with Linux, scripting, Git, CI/CD, automated testing, security scanning, artifact publication, and coordinated release delivery. * Experience implementing software supply chain controls, including SBOMs, vulnerability management, artifact signing, provenance, and remediation tracking. * Experience leading technical reviews, supporting customer deployment and troubleshooting, writing technical documentation, and mentoring engineers in an Agile environment. Desired: * Experience with configurable single- and multi-namespace deployments, minimal test environments, upgrades, rollback, scaling, and high availability. * Experience deploying distributed policy, attribute, decision, and enforcement services using workload identity, mutual TLS, certificate management, secrets management, and least privilege. * Experience supporting policy and attribute synchronization, local decision availability, observability, recovery, and degraded operation across multi-site or disconnected environments. * Experience with Rancher, Kubernetes operators, Harbor or comparable registries, admission controls, image promotion, and container hardening. * Knowledge of Zero Trust, ICAM, Attribute-Based Access Control, OAuth 2.0, OpenID Connect, SAML, LDAP, PKI, and service-to-service authorization. * Experience supporting DISA or other DoW customers and producing deployment guides, reference configurations, application onboarding criteria, and release documentation using Jira and Confluence. ## Description * Serve as a Software Engineer Level 3, providing Kubernetes, DevSecOps, and software supply chain security support to the ZT ICAM team, DISA, and other Department of War customers. * Develop and sustain the integrated Kubernetes deployment package, including configurable single- and multi-namespace operations. * Automate secure build, test, scanning, signing, packaging, and release processes. * Deploy and integrate distributed policy administration, decision, attribute, and enforcement components with secure service communication, workload identity, synchronization, observability, and resilient operation across enterprise, multi-site, tactical, and disconnected environments. * Work with customer teams to assess environments, tailor configurations, troubleshoot deployments, and produce clear deployment and support documentation. ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Un-complicate authorization maintenance](https://www.wearedevelopers.com/videos/889-un-complicate-authorization-maintenance) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)