
DevSecOps Engineer
- Boulder, CO
- Permanent
- Full-time
- Manage integration, scanning, and deployment of applications into orchestrated frameworks.
- Work with deployment teams to orchestrate deployments to development, test, and operational environments.
- Create, maintain, and improve Continuous Integration (CI) pipelines in GitLab CI/CD.
- Monitor CI pipelines for performance and resolve observed or reported issues.
- Implement and maintain version promotion of one or more applications within CI pipelines.
- Integrate CI pipelines with development tools for artifact management, software test, software quality assessment, etc.
- Implement Continuous Delivery and execute automated or manual deployments of applications into orchestrated K8s environments.
- Execute checkout and troubleshooting of deployed applications within development and production environments.
- Execute software release processes including release branch creation, integration, checkout and test.
- Implement and maintain helm charts.
- Other duties as assigned.
- This position will require the ability to obtain a U.S. government DoD Top Secret Security clearance. Interim or Active DoD Top Secret clearance or higher is preferred. Due to the clearance requirement, U.S. Citizenship is required. Candidate must also agree to participate in a background screen.
- On-site support in Boulder, CO 5 days per week.
- BS or advanced degree in Engineering, Mathematics, Computer Science or another relevant field.
- At least 2 years of professional experience building and executing DevOps or DevSecOps solutions using Continuous Integration / Continuous Deployment (CI/CD) such as GitLab CI/CD.
- Strong experience designing and developing application container deployment solutions using Docker, Docker-Compose, Kubernetes, etc.
- Experience with Kubernetes deployment tooling like Helm, Kustomize, Argo CD, etc.
- Strong experience maintaining deployment environments for development, test and production.
- At least one year of professional experience using Python 3.
- At least one year of professional experience using Linux operating systems.
- Detail-oriented and good verbal and written communication skills.
- Experience with software vulnerability scanning with static and dynamic code analysis.
- Experience with software Docker or package artifact management using JFrog Artifactory, Nexus or similar.
- Experience with software vulnerability assessment and remediation using SAST/DAST and tools like Sonarqube.
- Development experience in Python, C++, Java, Javascript, or Rust. • Experience with any of the following: Conan Package Manager, npm, Cucumber, GCC/Clang, pip, Maven, Gradle.
- Experience with Red Hat OpensShift 4
- Experience with version control using Git
- Systems and service administration in a Linux environment, including the installation and maintenance of applications supporting CI/CD like GitLab, Jenkins, etc.
- Experience working on “badge-less” engineering teams on a large National security contracts.
- Domain experience with remote sensing systems or ground architectures, especially experience with OPIR sensor processing.
- Experience with Agile software development methodology.
- Experience with tools such as Jira and Confluence.
- Interim or Active DoD TOP SECRET security clearance or higher.