Эта вакансия в архиве
Посмотреть похожие вакансии ↓6 дней назад
Senior Platform Engineer (DevSecOps)
Описание вакансии
Текст:
TL;DR
Senior Platform Engineer (DevSecOps): Building secure cloud-native CI/CD and GitOps platforms for software, AI models, and agentic applications with an accent on Kubernetes, OpenShift, automated compliance, and software supply-chain security. Focus on translating NIST 800-53 and RMF requirements into engineering controls, automating ATO evidence, and promoting workloads into classified operational environments.
Location: Must reside in or be local to the National Capital Region and be able to work onsite at the government campus in Springfield, Virginia. The initial prototype environment may support a hybrid schedule, with increasing onsite and SCIF interaction as the mission transitions to higher-classification environments.
Company
delivers secure cloud-native software integration, delivery, testing, and deployment solutions for defense, civil agencies, and other mission-focused customers.
What you will do
- Design and improve secure CI/CD and GitOps pipelines for cloud-native software, AI models, and agentic applications.
- Operate Kubernetes and Red Hat OpenShift/OpenShift AI environments, automating secure build, testing, deployment, promotion, and lifecycle workflows.
- Translate NIST SP 800-53 controls and RMF requirements into engineering controls, policy checks, and automated evidence collection.
- Implement container, dependency, infrastructure, configuration, vulnerability, SBOM, provenance, artifact-signing, and supply-chain security controls.
- Develop repeatable Infrastructure as Code and compliance-as-code patterns using Terraform, Pulumi, Ansible, and related tools.
- Collaborate with government personnel and technology partners to resolve platform, identity, networking, deployment, and security issues across environments.
Requirements
- Active TS/SCI clearance is required.
- Must be local to the National Capital Region and able to work onsite in Springfield, Virginia as required.
- Deep hands-on experience with Kubernetes, containers, Red Hat OpenShift, Helm, manifests, GitOps, and declarative configuration management.
- Strong experience with GitLab CI/CD or comparable delivery platforms, Infrastructure as Code, and cloud environments such as AWS.
- Strong working knowledge of NIST SP 800-53, RMF, government ATO activities, security evidence, POA&M remediation, and assessment preparation.
- Strong Linux troubleshooting and scripting or programming ability with Python, Go, Bash, or similar languages.
Nice to have
- Experience with OpenShift AI, AI/ML infrastructure, model serving, GPU environments, MLOps, or agentic AI systems.
- Experience with continuous authorization, automated compliance evidence, and securing AI or agent workloads.
- Experience with Flux, Argo CD, Kyverno, OPA/Gatekeeper, Trivy, Snyk, Anchore, SonarQube, or similar tools.
- Experience moving artifacts across security domains or into disconnected and air-gapped environments.
- Department of Defense or Intelligence Community experience with operational ATO’d systems.
Culture & Benefits
- Medical, dental, and vision coverage with premiums fully paid by the company.
- Health savings account, life insurance, disability insurance, and a 401(k) retirement plan.
- Company stock options and a home office budget.
- Flexible time off, federal holidays, additional Thanksgiving and Christmas/New Year leave, and paid parental leave.
- Reimbursement for approved training, subscriptions, and conference expenses.