Cleared DevSecOps Engineer -(TS/SCI) Sterling, VA
Vibrint
- Sterling, VA
- Permanent
- Full-time
- Design, build, and maintain CI/CD pipelines using tools like GitHub Actions, GitLab, Jenkins, or similar platforms.
- Implement Infrastructure as Code (IaC) using Terraform and CloudFormation to provision and manage cloud resources.
- Deploy and manage containerized applications with Docker, Kubernetes, and orchestration platforms across multi-cloud environments, including EKS, AKS, GKE, OKE, OpenShift, Anthos, SpectroCloud, and Portainer.
- Manage application configurations and deployment tooling using Helm, Ansible, Docker Compose, or similar platforms.
- Ensure security compliance by applying standards like NIST, FedRAMP, and DISA STIGs across CI/CD workflows and infrastructure.
- Integrate Cloud Security Posture Management (CSPM) tools (e.g., Prisma Cloud, Wiz, Lacework) to continuously monitor cloud environments for misconfigurations and vulnerabilities.
- Configure and manage Palo Alto firewalls, including rulesets, threat detection, and secure networking in cloud environments.
- Develop and maintain Python-based automation for security scanning, monitoring, and infrastructure management.
- Collaborate cross-functionally with development, cloud, and security teams to embed DevSecOps best practices across the SDLC.
- Participate in cloud architecture design reviews and recommend security improvements and performance optimizations.
- Active TS clearance is mandatory.
- 5+ years of experience in DevOps, SecOps, or related engineering roles within federal or IC environments.
- Strong experience with:
- IaC tools: Terraform, CloudFormation
- CI/CD: GitHub Actions, GitLab CI, Jenkins
- Containerization and orchestration: Docker, Kubernetes
- Multi-cloud Kubernetes platforms: EKS, AKS, GKE, OKE, OpenShift, Anthos, SpectroCloud, Portainer
- Deployment tooling: Helm, Ansible, Docker Compose
- Security and Compliance frameworks: NIST, FedRAMP, STIGs
- CSPM tools for posture management
- Python scripting for automation and tooling
- Firewall configuration and security rule implementation