ME00631-Senior DevSecOps Engineer Lead (Hybrid)

Momentum Engineering, Inc.

$120K — $150K *
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • US citizenship required with the ability to obtain a DoD Secret security clearance.
  • Security+ Certification mandatory.
  • Minimum 7 years of relevant hands-on experience in DevSecOps, Cloud Engineering, or Infrastructure Automation roles.
  • Deep knowledge of AWS GovCloud services and associated compliance frameworks.
  • Experience with CI/CD tools like GitLab CI/CD, Jenkins, and AWS Code Pipeline.
  • Proficient in Infrastructure as Code (IaC) using tools such as Terraform and Ansible.
  • Strong capabilities in containerization and orchestration technologies like Docker and Kubernetes.

Responsibilities

  • Design, implement, and maintain secure AWS GovCloud environments for DoD and Civilian applications.
  • Build and optimize CI/CD pipelines to automate deployments and ensure security compliance.
  • Ensure compliance with Federal cybersecurity frameworks (NIST, RMF, FedRAMP, Zero Trust).
  • Automate infrastructure provisioning using Terraform, CloudFormation, and Ansible.
  • Deploy and manage Docker containers and Kubernetes clusters in AWS GovCloud.
  • Implement proactive monitoring and incident response solutions using AWS services and tools.
  • Develop automation scripts to enhance deployment efficiency and security enforcement.

Benefits

  • 11 paid holidays annually.
  • A minimum of 3 weeks of paid time off (PTO).
  • Company-sponsored medical insurance.
  • Paid dental, vision, life insurance, and short-term/long-term disability coverage.
Full Job Description
Job Summary

  • Seeking a highly skilled Senior leveled DevSecOps Engineer to support federal programs hosted on AWS GovCloud
  • This hybrid role requires expertise in DevSecOps best practices, cloud automation, security compliance, and continuous integration/continuous deployment (CI/CD) to enhance the security, scalability, and efficiency of mission-critical applications

Primary Responsibilities

  • AWS GovCloud Architecture & Management: Design, implement, and maintain secure, scalable, and compliant AWS GovCloud environments for DoD and Civilian agency applications
  • DevSecOps Pipeline Development: Build and optimize CI/CD pipelines using tools like GitLab CI/CD, Jenkins, AWS Code Pipeline, and Terraform to automate deployments and security compliance
  • Security & Compliance: Ensure adherence to Federal cybersecurity frameworks (e.g., NIST 800-171, NIST 800-53, RMF, FedRAMP, Zero Trust). Implement STIGs, security baselines, and automated security scanning (SAST/DAST)
  • Infrastructure as Code (IaC): Automate infrastructure provisioning and configuration management using Terraform, CloudFormation, and Ansible
  • Containerization & Orchestration: Deploy and manage Docker containers and Kubernetes clusters in AWS GovCloud, leveraging services like Amazon EKS, ECS, and Fargate
  • Monitoring & Incident Response: Implement AWS CloudWatch, AWS Security Hub, GuardDuty, Splunk, or ELK for proactive monitoring, logging, and compliance reporting
  • Automation & Scripting: Develop automation scripts using Python, Bash, or PowerShell to improve deployment efficiency and security enforcement
  • Collaboration & Knowledge Sharing: Work closely with software developers, cybersecurity teams, and cloud engineers to integrate security and automation into the software development lifecycle (SDLC)

Required Qualifications

  • US citizenship with the ability to obtain a successful DoD Secret security clearance required
  • Security+ Certification
  • 7+ years of hands-on experience in DevSecOps, Cloud Engineering, or Infrastructure Automation roles
  • Strong expertise in AWS GovCloud services, security configurations, and compliance frameworks
  • Experience with CI/CD tools (GitLab CI/CD, Jenkins, AWS Code Pipeline, or similar)
  • Hands-on experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, and Ansible
  • Proficiency in containerization and orchestration (Docker, Kubernetes, EKS, ECS, Fargate)
  • Strong understanding of AWS security services (AWS IAM, GuardDuty, Security Hub,AWS KMS, AWS WAF, AWS Config, AWS Secrets Manager)
  • Knowledge of federal cybersecurity frameworks (RMF, NIST 800-171/53, STIGs, ZeroTrust)
  • Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management)
  • Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement

Desired Qualifications

  • No desired qualifications listed at this time

Exempt hourly position. 11 paid holidays, minimum of 3 weeks PTO, company sponsored group medical plan, company paid dental, vision, life insurance, and STD/LTD plans. Salary is dependent upon the candidate's experience and qualifications.

Similar Jobs

More Jobs at Momentum Engineering, Inc.

More Technical Services Jobs

Find similar ME00631-Senior DevSecOps Engineer Lead (Hybrid) jobs: