Job DescriptionSAIC is seeking an experienced and dedicated DevSecOps Engineer Principal to support the design, deployment, operation, and maintenance of secure, scalable Cloud products and services within our Cloud-based environment. As a key member of our team, you will play a critical role in ensuring the efficiency, security, and automation of our development and operational processes. The ideal candidate will possess deep expertise in Kubernetes, Infrastructure as Code, AWS GovCloud, FedRAMP/FISMA security control implementation, and CI/CD pipeline engineering, with an unwavering commitment to a security-first mindset.
This role can be worked 100% remotely within the united states. Candidates must have the ability to get a secret clearance. Qualifications- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field with 9+ years of experience in DevOps/DevSecOps engineering roles. Masters and 7 years of experience.
- Candidates must be U.S. Citizens
- Candidates must be able to get a secret clearance.
- Expert-level proficiency in Kubernetes including cluster administration, workload deployment, and security hardening, with experience in EKS and Helm
- Extensive hands-on experience with AWS services including EKS, ECS, EC2, Lambda, VPC, IAM, KMS, Secrets Manager, S3, RDS, CloudWatch, CloudTrail, and AWS Config, with specific experience in AWS GovCloud environments
- Strong proficiency in Infrastructure as Code using Terraform for infrastructure provisioning, management, and security scanning
- Demonstrated experience implementing and managing CI/CD pipelines using GitLab CI/CD or GitHub Actions with strong Git workflow and GitOps experience
- Deep understanding of FedRAMP and FISMA compliance requirements with hands-on experience implementing NIST 800-171 and 800-53 security controls, supporting authorization processes, and maintaining continuous monitoring programs
- Experience developing and maintaining security compliance documentation including System Security Plans (SSPs), Plan of Action and Milestones (POA&Ms), and security assessment artifacts
- Proficiency with security tooling including SIEM platforms (Splunk, AWS Security Hub), vulnerability scanning (Nessus, Tenable.io), SAST/DAST tools (SonarQube, OWASP ZAP), secrets management (HashiCorp Vault, AWS Secrets Manager), and cloud security posture management using Orca Security
- Experience integrating security controls directly into CI/CD pipelines including SAST/DAST, software composition analysis (SCA), container image scanning, and secrets detection
- Proficiency in scripting languages such as Python for automation and tooling development
- Experience with observability and monitoring platforms such as Prometheus, Grafana, or the ELK Stack
- Familiarity with zero-trust architecture principles and service mesh technologies such as Istio or Linkerd
- Relevant certifications such as CKA, CKS, AWS Certified Solutions Architect, AWS Certified Security Specialty, CISSP, or CompTIA Security+ are strongly preferred