DevSecOps Engineer - Intelligent Platforms & Agents

Nabout Leidos
United States
4 days ago
Apply on jobs.military.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$107,900.0 - $195,050.0
Working hours
Regular working hours

Tech stack

Bash Shell Linux DevOps Monitoring of Systems Python (Programming Language) Key Management Linux System Administration Red Hat Enterprise Linux Prometheus Security Software Policy as Code Scripting
+6 more
Delivery Pipeline Grafana Gitlab-ci Kubernetes Terraform Devsecops

Requirements

  • Must have and maintain a Secret security clearance\n
  • BS degree and 4+ years of professional DevSecOps or DevOps engineering experience, 8+ years of total relevant experience.\n
  • Hands-on experience designing and maintaining CI/CD pipelines using GitLab CI; experience with additional pipeline tools a plus\n
  • Experience with Kubernetes administration and hardening in DoD or compliance-driven environments - RKE2 or K3S experience strongly preferred\n
  • Experience implementing DISA STIG compliance in containerized and Linux environments (RHEL or Rocky Linux)\n
  • Proficiency with Infrastructure as Code tooling, particularly Terraform\n
  • Experience with Helm chart authoring and Kubernetes deployment management\n
  • Experience with automated security scanning, SBOM generation, and CVE triage and remediation\n
  • Scripting proficiency in Python or Bash for pipeline and operational automation\n
  • Demonstrated use of AI tooling to accelerate engineering workflows\n
  • Background contributing to application feature development alongside infrastructure work\n
  • Ability to operate independently and manage workload across competing priorities in a small, fast-moving team\n, * Experience operating in air-gapped or disconnected network environments\n
  • Experience supporting ATO through automation, documentation, and technical leadership\n
  • Active Security+ certification or equivalent IAT Level II certification\n
  • Experience with secrets management tooling such as Vault, Sealed Secrets, or SOPS\n
  • Familiarity with observability and monitoring tools such as Prometheus or Grafana\n
  • Certified Kubernetes Administrator (CKA) or willingness to obtain upon onboarding\n
  • Experience applying “as code” approaches beyond infrastructure (e.g., configuration-as-code, policy-as-code, workflows-as-code, documentation-as-code)\n

Benefits & conditions

n \nPosition Overview\n \n At Leidos, we are advancing mission-critical platforms that simulate, interact with, and act on complex technical and business environments. These platforms enable teams to engage with network operations, automate business processes, and gain insight through intent-driven and agent-based systems.\n \n The team operates with a strong belief in “everything as code,” using version-controlled artifacts and automation to manage not only infrastructure and software, but also deployment pipelines, security controls, compliance artifacts, and operational workflows.\n \n The DevSecOps Engineer is a hands-on practitioner responsible for building, automating, and sustaining the delivery infrastructure that enables mission-critical software to move fast without compromising compliance. You will actively build and maintain CI/CD pipelines, harden and manage Kubernetes environments, automate security compliance, and leverage AI as a force multiplier across the entire delivery lifecycle. When team capacity demands it, you will contribute directly to feature development - bringing a security-first perspective to application code.\n \n \nPrimary Responsibilities\n \n \n

  • Design, implement, and maintain automated CI/CD pipelines that carry code from development through security scanning, compliance validation, and deployment into Navy and DoD environments\n
  • Build and maintain hardened Kubernetes environments aligned to DISA STIG requirements across cloud and restricted network deployment contexts\n
  • Automate security artifact generation including SBOM production, CVE scanning, and continuous compliance validation\n
  • Drive adoption of Infrastructure as Code, GitOps practices, and controls-as-code across the team\n
  • Leverage AI tooling to accelerate pipeline development, vulnerability triage, compliance remediation, and operational documentation\n
  • Partner closely with software engineers, systems engineers, and ISSEs to embed security and compliance requirements from the start of development\n
  • Maintain and evolve deployment infrastructure across multiple secure environments, including cloud and air-gapped or intermittently connected contexts\n
  • Support ATO processes through automated evidence generation, documentation as code, and direct collaboration with the security team\n
  • Establish and promote standards for pipeline design, container security, secrets management, and deployment consistency\n
  • Contribute to feature development when team capacity requires, applying security-first development practices to application code\n
  • Maintain operational documentation including runbooks, deployment guides, and architecture diagrams as version-controlled artifacts\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

10:40 min

Visualizing Prometheus open metrics using custom Grafana dashboards

Stijn Polfliet · LIVE

2:43 min

Integrating DevSecOps within the software development lifecycle

Jasmin Azemović Jasmin Azemović · World Congress 2023

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

1:20 min

Integrating security into the DevOps lifecycle

Reto Kaeser · LIVE

Videos

See all

Related articles

See all