Application DevSecOps Engineer (1016)

Herdt Consulting Inc
Radford, VA, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$96,000.0 - $137,000.0
Working hours
Regular working hours

Tech stack

JIRA Microsoft Azure Burp Suite Cloud Engineering Cyber Security Continuous Integration Key Management OpenShift Ansible SonarQube Tripwire Gitlab
+10 more
Containerization Kubernetes Deployment Automation Atlassian Tools Hashicorp Terraform Devsecops Docker Static Application Security Testing Dynamic Application Security Testing

Job description

This role focuses on modernizing Army applications into a DevSecOps framework supporting the AECC project. The engineer will design and implement CI/CD pipelines using GitLab, Terraform, and Ansible to automate deployment and integrate security tools, ensuring the rapid and secure release of software-defined infrastructure., * Pipeline Design: Implement and maintain a DevSecOps framework for modernizing applications in the AECC environment.

  • Tool Integration: Integrate GitLab Ultimate, Terraform, and Ansible into pipelines to automate development and security processes.
  • Security Enforcement: Develop and enforce security gates within CI/CD pipelines, including SAST, DAST, and container scanning.
  • Modernization: Assist in transitioning legacy applications to a cloud-native, Kubernetes-based orchestration platform.

Requirements

  • Education: Bachelor’s degree or higher in an IT-related field
  • Experience: Proven experience in CI/CD automation and DevSecOps frameworks
  • Work Schedule: Full-time

Mandatory Certifications

  • Baseline: Security+ CE or equivalent DoD IAT Level II
  • Computing Environment: Must obtain a certification (GitLab, Azure DevOps, or Jira) within 6 months of hire, * CI/CD Orchestration: Expertise in GitLab, Azure DevOps, or Atlassian for automated workflows.
  • Infrastructure as Code: Proficiency in Terraform and Ansible for environment provisioning.
  • Containerization: Experience with Docker, Kubernetes, and Red Hat OpenShift.

Preferred Skills & Experience

  • Security Testing: Knowledge of SonarQube, OWASP ZAP, and container scanners like Trivy or Clair.
  • Secrets Management: Experience with HashiCorp Vault or Sealed Secrets.

Benefits & conditions

  • Excellence: The chance to be part of a company that has a reputation for excellence in task execution.
  • Time Off: Full-time associates receive 3 weeks of paid vacation each year plus 11 federal holidays.
  • Health Benefits: Comprehensive Medical (Blue Cross Blue Shield), Secondary Insurance, Dental, and Vision.
  • Financial Security: 401K program with Fidelity (including company match) and Flexible Spending Account (FSA).
  • Insurance: Short-term and Long-term Disability at no cost, plus Voluntary Life and AD&D options.

Salary Range: $96,000-$137,000

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all