DevSecOps Engineer (Entry level - Clearance Required) - (US-Remote)
ICF
full-remotejuniorpermanentdevopssecurity Reston, VA 46 days ago via LinkedIn
See how well this job matches your profile
Sign up to get an AI match score and generate a tailored application in seconds.
Get your match scoreTags
DevSecOpsCI/CDTerraformAWSAzureGCPKubernetesDockerNISTFedRAMP
About the role
Role Overview
ICF is seeking a DevSecOps Engineer (entry level) to support a federal client by integrating security practices into cloud and application development workflows. You will work with senior DevOps, security, and application teams to implement secure CI/CD pipelines, cloud infrastructure, and automated security controls aligned with federal standards.
Responsibilities
- Build, maintain, and monitor CI/CD pipelines using tools like GitHub Actions, GitLab CI, Jenkins, or Azure DevOps
- Support Infrastructure as Code (IaC) using Terraform, CloudFormation, or ARM templates
- Integrate security scanning and compliance checks into build/deploy pipelines:
- SAST, DAST, dependency scanning, container scanning
- Support cloud infrastructure on AWS, Azure, or GCP, with a focus on security best practices
- Assist with containerization using Docker and Kubernetes concepts
- Monitor environments (logs/alerts), support troubleshooting, and participate in incident response
- Document configurations, processes, and security controls to support audits and compliance
- Collaborate in an Agile/Scrum environment
- Learn and apply federal security frameworks such as NIST, FISMA, and FedRAMP
Requirements
- Active Top Secret clearance (interim Top Secret is acceptable); no sponsorship available
- 2+ years experience in DevOps, cloud engineering, systems engineering, or cybersecurity
- Must reside in the United States and perform work in the U.S.
- U.S. Citizen (federal contract requirement)
Nice to Have
- Bachelor’s degree in CS, Information Systems, Cybersecurity, or related field
- Basic understanding of CI/CD and DevOps practices
- Familiarity with at least one cloud platform: AWS, Azure, or GCP
- Working knowledge of Linux and basic scripting (Bash, Python, or similar)
- Exposure to DevSecOps tools such as SonarQube, Snyk, Trivy, Checkov, Aqua, Prisma Cloud
- Experience with Docker and basic Kubernetes concepts
- Familiarity with NIST 800-53, FedRAMP, or other federal standards
- Entry-level certifications such as AWS Cloud Practitioner, Azure Fundamentals, Security+
- Experience supporting applications in a regulated/government environment
About ICF
ICF is a global advisory and technology services provider. It partners with clients to solve complex challenges using technology and expertise across government and enterprise needs.
Scraped 4/2/2026