Principal Platform Engineer

Clarity
Fort Meade, MD, United States
about 1 month ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$150,000.0 - $330,000.0
Working hours
Regular working hours
Job source

Tech stack

Xacta Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Common ISDN Application Programming Interface (CAPI) Cloud Computing Cloud Computing Security System Configuration Continuous Integration Identity and Access Management Information Security Management Python (Programming Language)
+12 more
Key Management Network Segmentation Zero Trust Network Access Policy as Code Cloud Platform System Istio Delivery Pipeline Gitlab-ci Kubernetes Hashicorp Vulnerability Analysis Golang

Job description

The position is part of a team of software and platform engineers building a unified, multi-tenant control plane driven by Kubernetes, Crossplane, and Cluster API (CAPI), that abstracts infrastructure differences across AWS, Azure, on-premises, and air-gapped environments. As a Senior Principal Platform Engineer, you will act as the critical technical bridge between compliance strategy and system execution. You will collaborate closely with the Information System Security Officer (ISSO) to ingest traditional security policy, governance frameworks (e.g., NIST SP 800-37/53, DoDI 8510.01), and control requirements, translating them into actionable solutions, code, automated pipelines, and continuous platform guardrails in concert with the engineering team. Utilizing Go, Python, and cloud-native security tools, you will implement technical security controls, ranging from admission control and secrets management to zero-trust networking, ensuring the underlying infrastructure and control plane remain in an automated, continuously authorized state. The ideal candidate is a seasoned platform engineer with deep cybersecurity domain knowledge who excels at automating compliance, streamlining secure software supply chains, and turning complex regulatory expectations into developer-friendly platform abstractions., * Policy-as-Code & Control Enforcement: Translate NIST 800-53 controls and ISSO policy into automated admission policies, cross-cloud guardrails, and real-time compliance checks using Policy-as-Code frameworks.

  • Automated Evidence & ConMon: Build pipelines and telemetry dashboards to collect compliance evidence automatically and stream real-time reporting to tools like eMASS/XACTA to support the Authorization to Operate (ATO) lifecycle.
  • Secure Supply Chain: Implement end-to-end supply chain controls within CI/CD pipelines, including automated SBOM generation, artifact signing, vulnerability scanning, and provenance tracking.
  • Zero-Trust Infrastructure: Package and configure core security capabilities across IAM, secrets management, service mesh, and network segmentation to ensure robust zero-trust architecture.
  • Cross-Team Alignment: Partner with software and platform engineers to turn security requirements into actionable backlog items and guide teams on implementing technical controls.

Requirements

  • Platform Security & Infrastructure: 5+ years of hands-on platform engineering experience, with deep technical expertise in cloud infrastructure and zero-trust architectures.
  • Compliance Frameworks: Direct experience working with NIST SP 800-53, RMF (NIST SP 800-37), or FedRAMP, with a proven ability to translate control statements into software configurations.
  • Software Automation & CI/CD: Proficiency in Go or Python, along with CI/CD pipeline automation (e.g., GitLab CI) and GitOps workflows.
  • Supply Chain Security: Hands-on experience with vulnerability scanning, image signing, dependency management, and SBOM validation across cloud and air-gapped systems.
  • Security Tooling: Experience with enterprise IAM, secrets management platforms (e.g., HashiCorp Vault), and automated policy engines.
  • Active DoD Top Secret Clearance.

Preferred Qualifications

  • Active security or cloud certifications (e.g., CISSP, CCSP).
  • Experience automating Continuous ATO (cATO) in air-gapped or heavily regulated environments.

About the company

Clarity Innovations is a trusted national security partner, dedicated to safeguarding our nation’s interests and delivering innovative solutions that empower the Intelligence Community (IC) and Department of Defense (DoD) to transform data into actionable intelligence, ensuring mission success in an evolving world.

Our mission-first software and data engineering platform modernizes data operations, utilizing advanced workflows, CI/CD, and secure DevSecOps practices. We focus on challenges in Information Warfare, Cyber Operations, Operational Security, and Data Structuring, enabling end-to-end solutions that drive operational impact.

We are committed to delivering cutting-edge tools and capabilities that address the most complex national security challenges, empowering our partners to stay ahead of emerging threats and ensuring the success of their critical missions. At Clarity, we are people-focused and set on being a destination employer for top talent, offering an environment where innovation thrives, careers grow, and individuals are valued. Join us as we continue to lead innovation and tackle the most pressing challenges in national security.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · World Congress 2026 Europe

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

7:15 min

Installing Istio programmatically with bash scripts

Thomas Südbröcker · LIVE

4:18 min

Prioritizing communication and structural awareness over strict tool mastery

Liam Hurrel +1 · World Congress 2021

Videos

See all

Related articles

See all