OverviewTheDevSecOpsEngineerservesas the lead technical engineer responsible for the automation, continuous integration/continuous deployment (CI/CD), and security posture of the cloud infrastructurefortheOffice of Naval Research (ONR) Comptrollers Office Data and Analytics (D&A) Divisionarchitecture.
Responsibilities
- Provide comprehensive technical infrastructure support for all systems supporting the data and analytics environment.
- Design, deploy, and operate all data and applications within a cloud environment authorized at the FedRAMP High baseline and DoD Impact Level 5 (IL5), and maintain the systems Authority to Operate (ATO) at all timesloinclude configuration management, security patching, system monitoring, and help desk support.
- Design the architecture for scalability to accommodate future growth in data volume and user load.
- Implement and sustain secure data access mechanisms, including Application Programming Interfaces (APIs) and user interfaces for data exploration, as well as a secure Bulk Data Download capability for authorized users.
- Manage all access mechanisms under a formal data governance framework, including metadata management and data cataloging. develop and deploy machine learning (ML) and artificial intelligence (AI) models,including NaturalLanguage Processing (NLP) to analyze unstructured text and the integration of AI/ML platforms (e.g., AWS SageMaker, Azure Machine Learning)
- Automate infrastructure and workflows using Infrastructure as Code (IaC) tools (e.g., Terraform, Ansible), build and manage CI/CD pipelines for secure software deployment, and develop streaming data pipelines (e.g., using Apache Kafka or AWS Kinesis) for real-time data processing.
Qualifications
Required:
- Bachelors Degree in computer scienceor ITrelated degree with 7years experience
- Seven (7) years of Dev/Sec/Ops orMLOpsdevelopment experience combined.
- Five (5) years of hands-on experience building, securing, andmaintainingcloud environments (preferably AWS GovCloud or Azure Government).
- Verifiable project experience on at least two projectsestablishingand managingContinuous Integration/Continuous Deployment (CI/CD) pipelinesusing tools such as Jenkins, GitLab CI, or similar.
- Demonstratedexpertisein implementing and managingcontainerization tools(e.g., Docker, Kubernetes) andInfrastructure-as-Code(e.g., Terraform, Ansible).
- Hands-on experience withcloud-native security tools, including the configuration and management of Web Application Firewalls (WAF), Intrusion Detection/Prevention
- Systems (IDS/IPS), andSecurity Information and Event Management (SIEM)solutions.
- Verifiable experienceanalyzing and parsing security datafrom SIEMs, audit logs, and other security data sources toidentifyand mitigate threats.
- Secret Clearance