DevSecOps Engineer II

Entarian

$110K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science or related field with 8+ years of hands-on experience in DevOps or Software Engineering.
  • Experience supporting federal agencies or government contracting environments with strict security requirements.
  • Expertise in CI/CD pipelines for automated workflows across multiple environments.
  • Proven capability in implementing and verifying compliance with Security Technical Implementation Guide (STIG) standards.
  • Hands-on experience with Kubernetes and Docker for mission-critical workloads in secure environments.
  • Advanced skills in Infrastructure as Code (IaC), particularly using Terraform for cloud infrastructure provisioning.
  • Proficiency in enterprise DevOps platforms like Harness or Jenkins, understanding CI/CD best practices.

Responsibilities

  • Design, secure, and optimize CI/CD pipelines for automated builds and deployments.
  • Analyze and remediate Security Technical Implementation Guide (STIG) compliance issues.
  • Architect secure DevSecOps infrastructure for end-to-end delivery.
  • Maintain automated deployment and configuration management workflows using container technologies.
  • Develop engineering best practices for secure coding and application performance.
  • Collaborate with cybersecurity teams to ensure continuous security controls are integrated into the pipeline.
  • Support updates to unit and integration tests to ensure reliability.
  • Establish and maintain application platform environments for proper configuration and performance tuning.

Benefits

  • Comprehensive health insurance coverage.
  • Generous paid time off including holidays and vacation days.
  • Professional development opportunities and training programs.
  • Flexible work hours and potential for remote work arrangements.
  • Retirement savings plan with company matching.
Full Job Description
Overview/ Job Responsibilities

Entarian is seeking a highly skilled Software Developer with deep DevSecOps expertise to support the design, integration, testing, deployment, cybersecurity, and sustainment of modern software applications across secure enterprise environments. The ideal candidate brings strong engineering discipline, a security-first mindset, and experience operating within Agile and CI/CD-driven ecosystems.

Core Responsibilities

  • Design, develop, secure, and optimize CI/CD pipelines using industry-leading orchestrator tools to enable automated builds, testing, security scanning, and deployments across multiple environments.
  • Analyze, remediate, and verify Security Technical Implementation Guide (STIG) findings, working hands-on with system stakeholders to ensure compliance, security hardening, and alignment with federal cybersecurity standards.
  • Architect and implement scalable, reliable, and secure DevSecOps infrastructure, including version control systems, automated testing frameworks, and continuous monitoring solutions to support end-to-end delivery.
  • Build and maintain automated deployment and configuration management workflows, leveraging containerization technologies (e.g., Docker, Kubernetes) to ensure consistent, repeatable, and secure deployments.
  • Develop, document, and enforce engineering best practices for code quality, secure coding, dependency management, application performance, and compliance with federal regulatory and security requirements.
  • Partner closely with cybersecurity teams to integrate continuous security controls into the pipeline, including automated vulnerability scanning, static/dynamic code analysis, dependency checks, and policy enforcement.
  • Continuously enhance software development processes and procedures, ensuring alignment with evolving mission needs, technology updates, and federal security mandates.
  • Support updates to unit and integration tests, ensuring the test suites and corresponding CI/CD pipelines remain reliable, comprehensive, and aligned with software updates and new feature development.
  • Assist in establishing and maintaining application platform environments across development, test, staging, and pre-production, ensuring proper configuration, monitoring, and performance tuning.
  • Design, develop, maintain, and secure OCI-compliant container images tailored for Kubernetes environments, ensuring compliance with DoD, DHS, or agency-specific container hardening requirements.
  • Develop Infrastructure as Code (IaC) (e.g., Terraform, CloudFormation, Ansible) to provision scalable, secure, cloud-based environments and automate infrastructure lifecycle management.
  • Support deployment of microservices to cloud or on-premises Kubernetes platforms, ensuring resiliency, fault tolerance, advanced networking configuration, and policy-based traffic management.
  • Contribute to new development and continuous enhancement of existing applications, including security patches, feature development, and defect resolution, following Agile SCRUM ceremonies and workflows.


Minimum Qualifications

  • Bachelor's degree in Computer Science or a related technical discipline, with 8+ years of progressive, hands-on experience in DevOps, Software Engineering, or a closely aligned discipline.
  • Demonstrated experience as a Software Developer, DevOps Engineer, or similar role, preferably supporting federal agencies or government contracting environments with stringent security and compliance requirements.
  • Expertise developing, maintaining, and optimizing CI/CD pipelines, enabling automated build, test, security scanning, and deployment workflows across multi-environment architectures.
  • Proven ability to implement, monitor, analyze, remediate, and verify STIG (Security Technical Implementation Guide) findings, ensuring compliance with federal cybersecurity standards.
  • Hands-on experience with container orchestration and container technologies, including Kubernetes, OpenShift, Docker, and Helm charts, supporting mission-critical workloads in secure environments.
  • Advanced experience with Infrastructure as Code (IaC) and associated testing strategies, particularly using Terraform to provision, scale, and secure cloud and hybrid infrastructure.
  • Proficiency with enterprise DevOps automation platforms such as Harness, Jenkins, and GitLab, with a strong understanding of CI/CD best practices, branching strategies, and pipeline governance.
  • Experience using SAST tools (e.g., Fortify, SonarQube, Xray) to enforce secure coding standards and detect vulnerabilities early in the development lifecycle.
  • Experience using DAST tools (e.g., OWASP ZAP) to continuously assess application security posture in dynamic runtime environments.
  • Background in Site Reliability Engineering (SRE) practices, including reliability automation, SLIs/SLOs, service health monitoring, and production resilience engineering.
  • Experience containerizing applications using OCI-compliant tools such as Docker, Buildah, apko, and applying secure containerization practices aligned with federal compliance.
  • Demonstrated capability securing containerized environments, including applying image-hardening controls, scanning dependencies, and enforcing runtime governance.
  • High proficiency with Linux, including system administration, performance tuning, and shell environment management in production contexts.
  • Proficiency in scripting languages such as Bash, Python, or comparable languages to automate operational workflows and integrate DevSecOps toolchains.
  • Strong understanding of the complete Software Development Lifecycle (SDLC), including secure development practices, quality gates, and release management.
  • Proven experience developing software in an Agile Scrum environment, collaborating with multidisciplinary teams to deliver iterative, high-quality software.
  • Experience with systems reliability, load balancing, monitoring, and logging, leveraging enterprise tools to maintain service health and ensure observability across distributed systems.
  • Familiarity with Agile/Scrum methodologies, actively contributing to ceremonies, sprint planning, and continuous improvement initiatives.
  • Excellent communication and collaboration skills, with the ability to interface effectively with both technical and non-technical stakeholders, translating complex technical concepts into clear actionable insights.


Security Clearance: Must be able to provide proof of US Citizenship and have or are able to attain a Government Agency Suitability Clearance.

Desired Qualifications

  • Hands-on experience with cyber, information security, and application security tools, including platforms such as Twistlock/Prisma Cloud Compute, SonarQube, Splunk, and similar technologies used for vulnerability detection, monitoring, and compliance enforcement.
  • Proficiency in modern programming and scripting languages, including Groovy, Python, Spring Boot Java, and JavaScript, with the ability to develop automation, tooling, and secure application components.
  • Demonstrated experience applying DevSecOps principles, integrating security throughout the CI/CD pipeline, and implementing automated scanning, compliance checks, and shift-left security practices.
  • Working knowledge of AWS cloud services, including RDS and other AWS databases, IAM identity and access management, and VPC networking, with the ability to design secure, scalable, cloud-native architectures.
  • Strong understanding of Everything-as-Code methodologies, such as Infrastructure-as-Code, Configuration-as-Code, and Policy-as-Code, and familiarity with implementing automated governance, repeatable deployments, and environment consistency.


Similar Jobs

More Jobs at Entarian

  • DevSecOps Engineer II
    $110K — $130K *
    Washington, DC 20011 (District Of Columbia County)
    Information Technology
    In-Person
  • Deputy Solution Architect
    $120K — $145K *
    Stafford, VA 22554 (Stafford County)
    Aerospace & Defense
    In-Person
  • DevSecOps Engineer
    $95K — $115K *
    Mechanicsburg, PA 17055 (Cumberland County)
    Aerospace & Defense
    In-Person
  • Network Engineer
    $90K — $100K *
    Suitland, MD 20746 (Prince Georges County)
    Aerospace & Defense
    In-Person
  • Network Implementation Engineer
    $135K — $155K *
    Denver, CO 80219 (Denver County)
    Telecommunications & Hardware
    In-Person

More Information Technology Jobs

Find similar DevSecOps Engineer II jobs: