DevSecOps Engineer
INflow Federal
See how well this job matches your profile
Sign up to get an AI match score and generate a tailored application in seconds.
Get your match scoreTags
About the role
Role: DevSecOps Engineer
INflow Federal is seeking a DevSecOps Engineer to lead continuous integration, delivery, and security automation for an enterprise case management solution supporting Department of Defense mission partners.
This role focuses on building secure, scalable CI/CD pipelines, containerized environments, and Infrastructure as Code (IaC) in AWS GovCloud (Impact Level 2, 4, and 5).
Work mode: Fully remote.
Responsibilities
- Design, implement, and maintain CI/CD pipelines for build, test, and deployment across environments.
- Manage containerized deployments using Docker and Kubernetes in AWS GovCloud.
- Implement IaC using Terraform and/or AWS CloudFormation to automate provisioning and configuration.
- Integrate automated security scans and compliance checks aligned with DoD RMF and DISA STIG baselines.
- Support continuous monitoring and logging via AWS CloudWatch, GuardDuty, and third-party vulnerability tools (e.g., Nessus, ACAS).
- Collaborate with engineering and cybersecurity teams to ensure secure code practices and Zero Trust architecture alignment.
- Create and maintain DevSecOps plans, playbooks, and SOPs for secure build and deployment.
- Perform performance tuning, scalability planning, and proactive incident response for CI/CD infrastructure.
- Manage repositories in AWS CodeCommit for secure branching, versioning, and release management.
- Coordinate with system administrators to optimize network, storage, and compute resources supporting the CI/CD pipeline.
- Participate in Agile ceremonies and deliver DevSecOps sprint outcomes.
- Support system authorization activities, including ATO compliance documentation under DoDI 8510.01 (RMF).
Requirements
- Strong knowledge of CI/CD tooling such as Jenkins, GitLab CI, or AWS CodePipeline.
- Proficiency with Docker, Kubernetes, and Helm.
- Hands-on experience with Terraform or AWS CloudFormation for IaC.
- Familiarity with Zero Trust, DoD RMF, and DISA STIG compliance.
- Experience with monitoring/alerting tools including AWS CloudWatch, ELK Stack, and/or Prometheus.
- Scripting experience with Python, Bash, or PowerShell.
- Experience integrating static code analysis, dependency scanning, and vulnerability management into build pipelines.
- Strong collaboration, analytical/problem-solving skills, and ability to balance security, performance, and scalability.
Nice-to-haves (implied)
- Familiarity with third-party vulnerability management tools such as Nessus and ACAS.
- Experience with authorization/ATO documentation processes for DoD systems.
About INflow Federal
INflow Federal is a mission-driven small business founded in 2013, delivering solutions to the Department of War (DoW) and Joint Force operations across more than 20 states. The company emphasizes an employee-first culture with strong investment in professional growth, well-being, and innovation, including the use of emerging technologies like AI/ML.
Scraped 5/13/2026