Expert DevSecOps Engineer

Dark Wolf Solutions
Herndon, VA, United States
23 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$160,000.0 - $210,000.0
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Amazon Web Services Unit Testing Microsoft Azure Bash Shell Burp Suite C++ (Programming Language) Static Program Analysis CompTIA Security+ Information Systems Continuous Delivery Continuous Integration
+32 more
DevOps Python (Programming Language) Key Management Scrum Methodology Fortify (Software) Prometheus Scaled Agile Framework Security Software Software Engineering SonarQube Tripwire Policy as Code Scripting Istio Grafana Sonatype Multi-Cloud Containerization Gitlab-ci Integration Tests Kubernetes Information Technology Hashicorp Linkerd (Service Mesh) Oracle Cloud Infrastructure Devsecops Docker Jenkins Static Application Security Testing Vulnerability Analysis Golang Dynamic Application Security Testing

Job description

Dark Wolf is seeking an Expert DevSecOps Engineer to serve as a technical anchor, architecting, maintaining, and scaling the Continuous Integration/Continuous Deployment (CI/CD) tools, pipelines, and infrastructure used across the development lifecycle. In this role, you will lead the integration of security and operational resilience, ensuring total observability, automated compliance, and software assurance across complex systems., * CI/CD Platform Leadership: Maintain, optimize, and scale production-grade CI/CD pipelines utilizing platforms such as Jenkins, GitLab CI/CD, and custom workflow engines.

  • Automated Security Engineering: Ensure the seamless integration of automated security controls and scanning processes throughout the pipeline, including static code analysis (SAST), dynamic code analysis (DAST), dependency auditing, and vulnerability scanning.
  • Testing Architecture: Implement and maintain robust automated testing frameworks across unit testing, integration testing, and User Acceptance Testing (UAT).
  • Vulnerability & Risk Remediation: Collaborate directly with software development and security teams to proactively identify, prioritize, and remediate security vulnerabilities and architectural weaknesses in deployed software products.
  • Regulatory Compliance & Security Governance: Implement and enforce compliance with relevant federal, DoD, and organizational security regulations and standards.
  • Platform & Infrastructure Strategy: Establish enterprise Infrastructure-as-Code (IaC) module standards, direct multi-environment deployment frameworks, and lead response strategies for enterprise-level vulnerabilities.

Requirements

We are seeking a seasoned leader and problem solver with a proven ability to deliver superior results while guiding high-performing engineering teams in fast-paced environments., * Clearance: Must be a US Citizen holding an active TS/SCI security clearance with an active Full-Scope Polygraph.

  • Education: Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related technical field.
  • Professional Experience: 10+ years of progressive engineering experience, including deep expertise in CI/CD concepts, methodologies, and enterprise automated pipeline construction.

Core Technical Skills Required for Expert Level: (Advanced competencies expected for a 10+ year Expert practitioner)

  • Enterprise Container Orchestration & Security: Deep experience managing enterprise Kubernetes clusters, authoring NetworkPolicies, implementing Service Meshes (e.g., Istio, Linkerd), and enforcing runtime security (e.g., Falco).
  • Policy-as-Code & Guardrails: Experience implementing Policy-as-Code architectures using tools like Open Policy Agent (OPA/Gatekeeper) or Kyverno to automate compliance enforcement before runtime.
  • Secrets Management Architecture: Hands-on design and implementation of automated secret lifecycle solutions (e.g., HashiCorp Vault) integrating dynamically into pipelines and runtime platforms.
  • Distributed Observability: Proven capability building centralized telemetry stacks leveraging OpenTelemetry, Prometheus, Grafana, and ELK/OpenSearch.

Desired Qualifications:

  • Programming & Scripting: High proficiency in languages such as Python, Go, Bash, or C/C++.
  • Containerization: Comprehensive experience with containerized software engineering practices and runtimes (Docker, Podman, OCI specs).
  • Agile Engineering: Proven experience working within and leading Agile/Scrum software development teams.
  • Multi-Cloud Expertise: Architecture experience across major cloud platforms, including AWS, Azure, or GCP.
  • Security Tooling Ecosystem: Hands-on experience integrating modern security scanners (e.g., SonarQube, Snyk, Trivy, OWASP ZAP, Fortify).

Industry Certifications:

  • Certified Kubernetes Administrator (CKA) / Certified Kubernetes Security Specialist (CKS)
  • AWS Certified DevOps Engineer - Professional
  • CompTIA Security+, CISSP, or GIAC DevSecOps Automation (GCSA)

Position Clearance Requirement:

US Citizenship with an active TS/SCI security clearance with Full-Scope Polygraph

Benefits & conditions

Target Salary Range: $160,000.00 - $210,000.00 (Commensurate with specialized expertise and technical skillset).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · World Congress 2026 Europe

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

7:15 min

Installing Istio programmatically with bash scripts

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all