DevSecOps Engineer
GCOM Information Technology Inc (GIT). [SBA 8(a) Certified Company]
See how well this job matches your profile
Sign up to get an AI match score and generate a tailored application in seconds.
Get your match scoreTags
About the role
Role Overview
The DevSecOps Engineer will design, implement, and maintain secure DevOps pipelines and infrastructure across cloud and hybrid environments in an Agile/Scrum setting.
Responsibilities
- Build and maintain automated CI/CD pipelines using GitHub Actions, Jenkins, or Azure DevOps
- Implement Infrastructure as Code (IaC) with Terraform, Ansible, or ARM templates
- Integrate security scanning into pipelines (e.g., SonarQube, Fortify, Snyk)
- Manage cloud infrastructure across AWS and Azure
- Support secure containerization with Docker and Kubernetes (AKS/EKS)
- Collaborate with cross-functional teams in Agile/Scrum
- Monitor application performance using Splunk, ELK, or Azure Monitor
- Ensure alignment with NIST, FedRAMP, OWASP, and ATO requirements
Requirements
- 7–10+ years of experience in DevOps/DevSecOps/Cloud Engineering
- Proficiency in .NET/C#, Git, CI/CD, and scripting (PowerShell, Bash)
- Experience deploying secure infrastructure in AWS or Azure
- Strong understanding of cybersecurity principles and DevSecOps best practices
- Bachelor’s degree in CS, Information Systems, or related field
- US Citizen or Green Card Holder only
- Location: Columbia, MD or Remote (clearance level mentioned: BGC) and Full-Time
Nice to Have
- Government/public sector client experience
- Certifications: AWS DevOps Engineer, Azure DevOps, Security+, CKA
- Familiarity with STIG compliance, vulnerability management, and continuous monitoring tools
About GCOM Information Technology Inc (GIT). [SBA 8(a) Certified Company]
GCOM Infotech (GIT) is an SBA 8(a)-certified, Minority Business Enterprise providing secure, scalable IT solutions for federal, state, and commercial clients. The company focuses on cloud solutions, DevSecOps, software development, data analytics, and cybersecurity, delivering modernization in complex enterprise environments with an ISO 9001:2015 and ISO 27001:2013 security/compliance orientation.
Scraped 8/5/2026