Назад
Company hidden
22 часа назад

DevSecOps Engineer-Experienced (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
DevSecOps Engineer-Experienced (Cybersecurity) (GitLab, AWS GovCloud, Azure Government): Designing and maintaining secure DevSecOps infrastructure and delivery pipelines for defense programs with an accent on CMMC Level 2, NIST 800-171/172, and protection of Controlled Unclassified Information. Focus on automating security testing and vulnerability management, integrating zero-trust controls, and maintaining resilient cloud and on-prem environments.

Location: On-site in New Hudson, Michigan, United States. Some travel is required for customer engagement, system integration, or compliance activities.

Pay range: The posting states that a target pay range applies across U.S. locations, but no exact amount is provided.

Company

Pratt Miller, an Oshkosh company, develops products and provides engineering and low-volume production solutions for motorsports, defense, and mobility industries.

What you will do

  • Design, implement, and maintain secure DevSecOps infrastructure and delivery pipelines for defense programs.
  • Integrate security controls, automated testing, vulnerability management, and secure deployment strategies into CI/CD pipelines.
  • Support secure cloud and on-prem environments hosting Controlled Unclassified Information.
  • Monitor system performance, security posture, and compliance with CMMC Level 2 and NIST SP 800-171/172.
  • Collaborate with software, IT, network, and cybersecurity engineers on infrastructure planning, code reviews, and security assessments.
  • Research and implement technologies that improve automation, compliance monitoring, resilience, and zero-trust security.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; an advanced degree is preferred.
  • Must meet the requirements for obtaining a U.S. Government clearance; active Secret or higher clearance is preferred.
  • Experience developing and maintaining secure CI/CD pipelines with GitLab, Jenkins, or Azure DevOps.
  • Experience with SAST, DAST, SCA, automated security testing, and vulnerability management.
  • Experience with CMMC Level 2 or NIST 800-171 compliance in defense or government environments.
  • Experience managing secure infrastructure in AWS GovCloud, Azure Government, or on-premises DoD-accredited environments.

Nice to have

  • Knowledge of TCP/IP, VLANs, VPNs, DNS, firewalls, IDS/IPS, endpoint protection, and network security architecture.
  • Experience administering Active Directory, Azure AD, and Group Policy.
  • Experience with zero-trust and least-privilege access models.
  • Experience with Terraform, Ansible, Docker, Kubernetes, Prometheus, Kibana, Splunk, Jaeger, OpenTelemetry, Nexus, MatterMost, and Jira/Atlassian.
  • Familiarity with DFARS 252.204-7012 and DoD cybersecurity frameworks.

Culture & Benefits

  • Work a standard Monday–Friday daytime schedule with flexibility for surge requirements and deadlines.
  • Collaborate across multidisciplinary engineering, IT, software, network, and security teams.
  • Work with remote and hybrid teams using collaboration tools including MatterMost and GitLab.
  • Participate in customer and stakeholder technical and compliance reviews.
  • Access a competitive total rewards package and opportunities for professional growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →