xelys jobs xelys jobs

DevSecOps Engineer

INflow Federal

full-remotemidpermanentdevopssecurity Arlington, VA 134 days ago via LinkedIn

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

DevSecOpsCI/CDAWS GovCloudTerraformAWS CodePipelineKubernetesDockerZero TrustRMFDISA STIG

About the role

Role: DevSecOps Engineer

INflow Federal is seeking a DevSecOps Engineer to lead continuous integration, delivery, and security automation for an enterprise case management solution supporting Department of Defense mission partners.

This role focuses on building secure, scalable CI/CD pipelines, containerized environments, and Infrastructure as Code (IaC) in AWS GovCloud (Impact Level 2, 4, and 5).

Work mode: Fully remote.

Responsibilities

  • Design, implement, and maintain CI/CD pipelines for build, test, and deployment across environments.
  • Manage containerized deployments using Docker and Kubernetes in AWS GovCloud.
  • Implement IaC using Terraform and/or AWS CloudFormation to automate provisioning and configuration.
  • Integrate automated security scans and compliance checks aligned with DoD RMF and DISA STIG baselines.
  • Support continuous monitoring and logging via AWS CloudWatch, GuardDuty, and third-party vulnerability tools (e.g., Nessus, ACAS).
  • Collaborate with engineering and cybersecurity teams to ensure secure code practices and Zero Trust architecture alignment.
  • Create and maintain DevSecOps plans, playbooks, and SOPs for secure build and deployment.
  • Perform performance tuning, scalability planning, and proactive incident response for CI/CD infrastructure.
  • Manage repositories in AWS CodeCommit for secure branching, versioning, and release management.
  • Coordinate with system administrators to optimize network, storage, and compute resources supporting the CI/CD pipeline.
  • Participate in Agile ceremonies and deliver DevSecOps sprint outcomes.
  • Support system authorization activities, including ATO compliance documentation under DoDI 8510.01 (RMF).

Requirements

  • Strong knowledge of CI/CD tooling such as Jenkins, GitLab CI, or AWS CodePipeline.
  • Proficiency with Docker, Kubernetes, and Helm.
  • Hands-on experience with Terraform or AWS CloudFormation for IaC.
  • Familiarity with Zero Trust, DoD RMF, and DISA STIG compliance.
  • Experience with monitoring/alerting tools including AWS CloudWatch, ELK Stack, and/or Prometheus.
  • Scripting experience with Python, Bash, or PowerShell.
  • Experience integrating static code analysis, dependency scanning, and vulnerability management into build pipelines.
  • Strong collaboration, analytical/problem-solving skills, and ability to balance security, performance, and scalability.

Nice-to-haves (implied)

  • Familiarity with third-party vulnerability management tools such as Nessus and ACAS.
  • Experience with authorization/ATO documentation processes for DoD systems.

About INflow Federal

INflow Federal is a mission-driven small business founded in 2013, delivering solutions to the Department of War (DoW) and Joint Force operations across more than 20 states. The company emphasizes an employee-first culture with strong investment in professional growth, well-being, and innovation, including the use of emerging technologies like AI/ML.

Scraped 5/13/2026