Type of Requisition:Pipeline
Clearance Level Must Currently Possess:Top Secret SCI + Polygraph
Clearance Level Must Be Able to Obtain:Top Secret SCI + Polygraph
Public Trust/Other Required:None
Job Family:Cyber and IT Risk Management
Job Qualifications:Skills:Collaboration, Emerging Technologies, Innovation, Secure Software Development, Security Software
Certifications:None
Experience:8 + years of related experience
US Citizenship Required:Yes
Job Description:OverviewGDIT is seeking a
Lead DevSecOps Engineer to drive the implementation and maturation of our unclassified engineering environment in support of a large-scale
software development and modernization IDIQ program. This role will define and lead the DevSecOps strategy across a diverse application portfolio, accelerating modernization, standardization, and delivery for mission customers.
You will work closely with the
Lead Systems Engineer and
Solutions Architect, and will be directly managed by the Solutions Architect. Together, you will establish a unified vision, architecture, and operating model that enables consistent, secure, and scalable software delivery across the program.
Key Responsibilities- Lead Unclassified Environment Implementation
Architect, implement, and evolve GDIT's unclassified DevSecOps environment to support multi-team software development and modernization efforts.
Define environment patterns and templates that can be rapidly replicated across task orders and projects.
- Strategic DevSecOps Vision & Roadmapping
Develop a unified DevSecOps strategy and technical vision for the IDIQ, aligning with the Solutions Architect and Lead Systems Engineer.
Create and maintain roadmaps for tools, platforms, and practices to standardize DevSecOps across the application portfolio.
Integrate modernization roadmaps across teams, ensuring consistent patterns for build, test, deploy, and operations.
- Code Assessment & Modernization Approach
Define and implement a code assessment framework to evaluate legacy and modern applications (e.g., code quality, technical debt, security posture, cloud readiness).
Recommend modernization approaches (refactor, replatform, retire, replace) based on assessment outcomes, mission priorities, and risk.
Establish metrics and dashboards that provide visibility into application health, delivery performance, and modernization progress.
- DevSecOps CI/CD & Data Pipelines
Design, implement, and optimize DevOps CI/CD pipelines for applications supporting the Intelligence Community (IC) and related environments.
Design data pipelines to support data-centric applications, analytics, and mission workflows, with a focus on scalability, resilience, and security.
Embed security controls, static/dynamic analysis, and compliance checks into CI/CD pipelines ("shift left" security).
- Standardization & Tooling
Identify, evaluate, and recommend new technologies, tools, and platforms (e.g., container platforms, orchestration, IaC, security tools) to enhance the DevSecOps ecosystem.
Standardize toolchains and delivery patterns to reduce fragmentation, increase reuse, and improve reliability across teams.
Define and maintain reference architectures, templates, and playbooks for application onboarding, build, test, deploy, and operations.
- Collaboration & Leadership
Partner with the Lead Systems Engineer to align DevSecOps practices with system architecture, integration, and performance requirements.
Work under the direction of the Solutions Architect to ensure DevSecOps strategy aligns with overall solution architecture and customer objectives.
Provide technical leadership, mentoring, and guidance to development, infrastructure, and security engineers across the program.
Evangelize DevSecOps culture, automation-first mindset, and continuous improvement practices.
- Security, Compliance & Reliability
Ensure DevSecOps practices meet IC security expectations and applicable standards (e.g., zero trust principles, secure coding, STIGs where applicable).
Implement observability, monitoring, logging, and incident response patterns as part of the delivery pipeline.
Drive improvements in system reliability, availability, and performance through automation and feedback loops.
Required QualificationsBachelor's degree in Computer Science, Engineering, Information Systems, or related field; or equivalent experience.
8+ years of relevant experience in DevOps/DevSecOps, software engineering, or systems engineering.
Demonstrated experience
leading DevOps/DevSecOps implementations for complex software portfolios or large programs.
Hands-on experience designing and implementing
CI/CD pipelines using tools such as GitLab CI, GitHub Actions, Jenkins, Azure DevOps, or similar.
Experience designing and implementing
data pipelines (e.g., using Kafka, NiFi, Airflow, Spark, or cloud-native data services).
Experience working with
containerization and orchestration (e.g., Docker, Kubernetes, OpenShift).
Proficiency with
Infrastructure as Code (IaC) tools (e.g., Terraform, Ansible, CloudFormation).
Strong background in
secure software development practices and integrating security into CI/CD pipelines (SAST, DAST, SCA, secrets management).
Experience supporting or integrating with systems for the
Intelligence Community (IC) or similar high-security environments.
Strong communication skills and proven ability to collaborate with architects, systems engineers, and multi-disciplinary teams.
U.S. citizenship and ability to obtain and maintain the required clearance level, if not already held.
Desired Skills and ExperiencePrior experience implementing DevSecOps environments for IDIQ or multi-award contract vehicles.
Experience with cloud platforms (AWS, Azure, GCP, or IC-specific clouds) and cloud-native architectures.
Familiarity with microservices architectures, API-first design, and event-driven systems.
Experience with observability stacks (e.g., Prometheus, Grafana, ELK/EFK, Splunk, OpenTelemetry).
Knowledge of IC security and compliance frameworks, accreditation processes, and risk management approaches.
Experience defining code assessment methodologies and tools for portfolio analysis and modernization planning.
Demonstrated success standardizing toolchains and practices across multiple teams or organizations.
Relevant certifications (e.g., AWS/Azure DevOps, Kubernetes (CKA/CKAD), CISSP, Security+, SAFe DevOps).
What You'll BringA strategic mindset with the ability to translate mission and business goals into a coherent DevSecOps roadmap.
A bias for automation and standardization, with a focus on measurable outcomes and continuous improvement.
The ability to lead by influence, drive consensus, and uplift the technical maturity of teams across the program.
If you're excited to shape a modern, secure, and scalable DevSecOps ecosystem that accelerates software modernization for mission-critical customers, we'd like to hear from you.
The likely salary range for this position is $169,604 - $229,464. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:40
Travel Required:None
Telecommuting Options:Onsite
Work Location:USA VA Chantilly
Additional Work Locations:Total Rewards at GDIT:Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.