Lead DevSecOps Engineer

General Dynamics Information Technology, Inc.

• $169K — $229K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Engineering, Information Systems, or related field; or equivalent experience.
  • 8+ years of relevant experience in DevOps/DevSecOps, software engineering, or systems engineering.
  • Demonstrated experience leading DevOps/DevSecOps implementations for complex software portfolios or large programs.
  • Hands-on experience designing and implementing CI/CD pipelines using tools like GitLab CI, Jenkins, or Azure DevOps.
  • Experience with containerization and orchestration (e.g., Docker, Kubernetes).
  • Strong background in secure software development practices and integrating security into CI/CD pipelines.
  • U.S. citizenship and ability to obtain and maintain required clearance.

Responsibilities

  • Lead the implementation of GDIT's unclassified DevSecOps environment for software development.
  • Develop a unified DevSecOps strategy and technical vision for the IDIQ program.
  • Define and implement a code assessment framework for legacy and modern applications.
  • Design and optimize CI/CD pipelines for applications supporting the Intelligence Community.
  • Identify and recommend new technologies and tools to enhance the DevSecOps ecosystem.
  • Partner with systems engineers to align DevSecOps practices with architecture and performance requirements.
  • Ensure DevSecOps practices meet IC security expectations and applicable standards.

Benefits

  • Variety of medical plan options, including Health Savings Accounts.
  • 401(k) plan with company match and flexible contribution options.
  • Full flex work weeks and a variety of paid time off plans.
  • Short and long-term disability benefits, life insurance, and critical illness coverage.
  • Regular reviews of the Total Rewards package to ensure competitiveness.
Full Job Description
Type of Requisition:
Pipeline

Clearance Level Must Currently Possess:
Top Secret SCI + Polygraph

Clearance Level Must Be Able to Obtain:
Top Secret SCI + Polygraph

Public Trust/Other Required:
None

Job Family:
Cyber and IT Risk Management

Job Qualifications:

Skills:
Collaboration, Emerging Technologies, Innovation, Secure Software Development, Security Software
Certifications:
None
Experience:
8 + years of related experience
US Citizenship Required:
Yes

Job Description:

Overview

GDIT is seeking a Lead DevSecOps Engineer to drive the implementation and maturation of our unclassified engineering environment in support of a large-scale software development and modernization IDIQ program. This role will define and lead the DevSecOps strategy across a diverse application portfolio, accelerating modernization, standardization, and delivery for mission customers.

You will work closely with the Lead Systems Engineer and Solutions Architect, and will be directly managed by the Solutions Architect. Together, you will establish a unified vision, architecture, and operating model that enables consistent, secure, and scalable software delivery across the program.

Key Responsibilities

  • Lead Unclassified Environment Implementation


Architect, implement, and evolve GDIT's unclassified DevSecOps environment to support multi-team software development and modernization efforts.

Define environment patterns and templates that can be rapidly replicated across task orders and projects.

  • Strategic DevSecOps Vision & Roadmapping


Develop a unified DevSecOps strategy and technical vision for the IDIQ, aligning with the Solutions Architect and Lead Systems Engineer.

Create and maintain roadmaps for tools, platforms, and practices to standardize DevSecOps across the application portfolio.

Integrate modernization roadmaps across teams, ensuring consistent patterns for build, test, deploy, and operations.

  • Code Assessment & Modernization Approach


Define and implement a code assessment framework to evaluate legacy and modern applications (e.g., code quality, technical debt, security posture, cloud readiness).

Recommend modernization approaches (refactor, replatform, retire, replace) based on assessment outcomes, mission priorities, and risk.

Establish metrics and dashboards that provide visibility into application health, delivery performance, and modernization progress.

  • DevSecOps CI/CD & Data Pipelines


Design, implement, and optimize DevOps CI/CD pipelines for applications supporting the Intelligence Community (IC) and related environments.

Design data pipelines to support data-centric applications, analytics, and mission workflows, with a focus on scalability, resilience, and security.

Embed security controls, static/dynamic analysis, and compliance checks into CI/CD pipelines ("shift left" security).

  • Standardization & Tooling


Identify, evaluate, and recommend new technologies, tools, and platforms (e.g., container platforms, orchestration, IaC, security tools) to enhance the DevSecOps ecosystem.

Standardize toolchains and delivery patterns to reduce fragmentation, increase reuse, and improve reliability across teams.

Define and maintain reference architectures, templates, and playbooks for application onboarding, build, test, deploy, and operations.

  • Collaboration & Leadership


Partner with the Lead Systems Engineer to align DevSecOps practices with system architecture, integration, and performance requirements.

Work under the direction of the Solutions Architect to ensure DevSecOps strategy aligns with overall solution architecture and customer objectives.

Provide technical leadership, mentoring, and guidance to development, infrastructure, and security engineers across the program.

Evangelize DevSecOps culture, automation-first mindset, and continuous improvement practices.

  • Security, Compliance & Reliability


Ensure DevSecOps practices meet IC security expectations and applicable standards (e.g., zero trust principles, secure coding, STIGs where applicable).

Implement observability, monitoring, logging, and incident response patterns as part of the delivery pipeline.

Drive improvements in system reliability, availability, and performance through automation and feedback loops.

Required Qualifications

Bachelor's degree in Computer Science, Engineering, Information Systems, or related field; or equivalent experience.

8+ years of relevant experience in DevOps/DevSecOps, software engineering, or systems engineering.

Demonstrated experience leading DevOps/DevSecOps implementations for complex software portfolios or large programs.

Hands-on experience designing and implementing CI/CD pipelines using tools such as GitLab CI, GitHub Actions, Jenkins, Azure DevOps, or similar.

Experience designing and implementing data pipelines (e.g., using Kafka, NiFi, Airflow, Spark, or cloud-native data services).

Experience working with containerization and orchestration (e.g., Docker, Kubernetes, OpenShift).

Proficiency with Infrastructure as Code (IaC) tools (e.g., Terraform, Ansible, CloudFormation).

Strong background in secure software development practices and integrating security into CI/CD pipelines (SAST, DAST, SCA, secrets management).

Experience supporting or integrating with systems for the Intelligence Community (IC) or similar high-security environments.

Strong communication skills and proven ability to collaborate with architects, systems engineers, and multi-disciplinary teams.

U.S. citizenship and ability to obtain and maintain the required clearance level, if not already held.

Desired Skills and Experience

Prior experience implementing DevSecOps environments for IDIQ or multi-award contract vehicles.

Experience with cloud platforms (AWS, Azure, GCP, or IC-specific clouds) and cloud-native architectures.

Familiarity with microservices architectures, API-first design, and event-driven systems.

Experience with observability stacks (e.g., Prometheus, Grafana, ELK/EFK, Splunk, OpenTelemetry).

Knowledge of IC security and compliance frameworks, accreditation processes, and risk management approaches.

Experience defining code assessment methodologies and tools for portfolio analysis and modernization planning.

Demonstrated success standardizing toolchains and practices across multiple teams or organizations.

Relevant certifications (e.g., AWS/Azure DevOps, Kubernetes (CKA/CKAD), CISSP, Security+, SAFe DevOps).

What You'll Bring

A strategic mindset with the ability to translate mission and business goals into a coherent DevSecOps roadmap.

A bias for automation and standardization, with a focus on measurable outcomes and continuous improvement.

The ability to lead by influence, drive consensus, and uplift the technical maturity of teams across the program.

If you're excited to shape a modern, secure, and scalable DevSecOps ecosystem that accelerates software modernization for mission-critical customers, we'd like to hear from you.

The likely salary range for this position is $169,604 - $229,464. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:
40

Travel Required:
None

Telecommuting Options:
Onsite

Work Location:
USA VA Chantilly

Additional Work Locations:

Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

Similar Jobs

More Jobs at General Dynamics Information Technology, Inc.

More Information Technology Jobs

Find similar Lead DevSecOps Engineer jobs: