Logo
Node.Digital LLC

DevSecOps Engineer

Node.Digital LLC, Washington, District of Columbia, us, 20022

Save Job

Location & Security Location: Washington, DC metro area (Remote Work)

Security Clearance Requirements

Must be a U.S. citizen OR Permanent Resident Alien (Green card holder and NOT H1 Visa holder)

Ability to obtain an IRS MBI (Minimum Background Investigation) Security Clearance from the Federal Agency

Active IRS MBI Clearance is highly desirable

Job Description Node is seeking highly skilled and motivated DevSecOps Engineers to join our Enterprise Application Support Program on one of our project delivery teams. As a DevSecOps Engineer, you will integrate security practices into our DevOps processes, ensuring the development and deployment of secure applications. The ideal candidate will have a strong background in both security and DevOps, with a passion for automating security processes and improving the security posture of customer infrastructure and applications.

Job Responsibilities

Integrate security into the CI/CD pipeline, automating security controls and embedding security throughout the development lifecycle

Collaborate with development, operations, and security teams to define and implement security best practices and standards

Conduct security assessments, vulnerability analysis, and penetration testing to identify and mitigate risks

Develop and maintain secure infrastructure as code (IaC) scripts using tools such as Terraform, Ansible, or CloudFormation

Implement and manage security tools and technologies (SIEMs, IDS/IPS, firewalls, endpoint protection)

Monitor and respond to security incidents, perform root cause analysis, and implement corrective measures

Educate and train development and operations teams on secure coding practices and security tooling

Stay up to date with latest threats, trends, and technologies and proactively address risks

Create and maintain documentation related to security policies, procedures, and standards

Participate in security audits and compliance initiatives to ensure adherence to industry regulations and standards

Requirements

Bachelor's degree in Computer Science, MIS, or related discipline (or 4 years of equivalent experience)

Minimum 5+ years of experience in DevOps, security engineering, or related field

Strong understanding of security principles, threat modeling, risk assessment, and vulnerability management

Proficiency with DevOps tools and CI/CD pipelines, containerization (Docker, Kubernetes), and version control (Git)

Experience with containerization (Docker, Podman) and orchestration (Kubernetes, OpenShift)

Experience with security tools such as OWASP ZAP, Burp Suite, Nessus, Metasploit, or similar

Solid understanding of cloud security concepts and experience with AWS, Azure, or Google Cloud

Strong scripting and automation skills (Python, Bash, PowerShell)

Excellent problem-solving and critical-thinking abilities; effective communication and collaboration skills

Relevant certifications such as CISSP, CEH, OSCP, AWS Certified Security - Specialty, or similar are preferred

Experience maintaining CI/CD infrastructure and automating build/deploy processes across environments

Ability to support CI/CD tool integration, change management, and automation of CI/CD testing

Ability to implement policies, standards, governance for CI/CD operations and developer work

Experience enabling successful release management from development/testing to staging/production

Ability to work with software developers, production support, and information security to automate and support cloud-based infrastructure and tooling

Ability to apply agile and DevOps/DevSecOps practices to streamline product delivery

Continuous drive to identify opportunities to automate and improve efficiency

Desired

Background in DevOps software development with expertise in one or more areas such as:

Software Program Management / Acquisition

Agile software development (Scrum or Kanban)

Atlassian Jira, Confluence

CI/CD with Jenkins, GitLab, Bitbucket, or Azure

Cloud - Platform One

Cross Domain Solutions, C-ATO, MLS/MILS

Docker or Podman, Kubernetes, Helm

Security automation and SOAR solutions

Experience with ISO 27001, NIST, SOC 2, GDPR

Benefits

Medical, Dental, Vision

Basic Life

Health Savings Account

401K

Three weeks of PTO

10 paid holidays

Pre-Approved Online Training

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

IT Services and IT Consulting

Referrals increase your chances of interviewing at Node.Digital LLC. Get notified about new Software Engineer jobs in Washington, DC.

#J-18808-Ljbffr