0-4+ years of experience with commercial cloud service providers (AWS, GCP, Azure)
Experience designing and deploying self-managed Kubernetes on cloud platforms
Experience integrating cloud platform services within a Kubernetes cluster
Proficient in Infrastructure as Code using Terraform
Familiarity with DevSecOps tools (GitLab CI, Artifactory, ArgoCD, etc.)
Knowledge of Agile, Scrum, and DoD cybersecurity requirements
B.A. or B.S. in Computer Science or related field (or equivalent experience)
Active DoD Secret security clearance or higher
Responsibilities
Deploy and maintain Kubernetes platform services on cloud-native architecture
Integrate Kubernetes with enterprise services to meet security requirements
Implement secure automation, monitoring, and Infrastructure as Code
Deploy and maintain CI/CD pipelines across multiple environments
Collaborate with a cross-functional engineering team on new technologies
Develop best practices to enhance deployment quality and speed
Implement system hardening and configuration management best practices
Benefits
Hybrid work capacity in Falls Church, VA
Opportunity to work with cutting-edge technologies
Engagement in a collaborative engineering environment
Focus on security and compliance in cloud infrastructure
Professional development opportunities in cloud and DevSecOps practices
Full Job Description
The Platform Engineer will be responsible for designing, deploying, and maintaining our cloud infrastructure and services to ensure high availability, scalability, and security of our cloud-based applications. The ideal candidate will have extensive experience with cloud computing technologies and platforms, such as Kubernetes, AWS, and Terraform. They will be able to work well within a larger team focused on defining and building cloud infrastructure to host DevSecOps development services and mission applications within a Kubernetes platform. This role can be supported at a hybrid capacity in Falls Church, VA.
Key Responsibilities:
Deploying and maintaining common Kubernetes platform services on cloud-native architecture
Integrating a Kubernetes platform with common enterprise services to satisfy organizational security requirements
Implementing secure automation, effective monitoring, and Infrastructure as Code
Deploying and maintaining Continuous Integration/Continuous Delivery (CI/CD) pipelines across multiple environments
Supporting and working alongside a cross-functional engineering team on the latest technologies
Developing and iterating best practices to increase the quality and velocity of deployments
Implementing industry best practices for system hardening and configuration management
Required Qualifications:
0-4+ years of experience working with commercial cloud service providers such as AWS, GCP, or Azure
Experience designing and deploying self-managed Kubernetes to commercial cloud platforms
Experience integrating and providing cloud platform services within a Kubernetes cluster
Experience designing Infrastructure as Code solutions using Terraform
Experience with DevSecOps tools and processes such as GitLab CI, Artifactory, ArgoCD, FluxCD, Helm, Kustomize
Demonstrated knowledge in Agile, Scrum, DevSecOps processes, and DoD cybersecurity requirements
Solid problem-solving skills, attention to detail, and critical thinking abilities
B.A. or B.S. in Computer Science, Information Systems, Computer Engineering, or related discipline (or relevant experience in lieu of a degree)
DoD Approved 8570 Baseline Certifications (e.g. CompTia Security+ CE Certification)
US Citizenship and an active DoD Secret security clearance or higher
Desired Qualifications:
Experience with Oracle and PostgreSQL DBMS
Experience deploying and maintaining Platform One's Big Bang suite of tools
Experience working with the DHA
Experience with DoD FedRAMP authorized cloud platforms such as AWS GovCloud and/or Cloud One
Experience standing up and maintaining AWS services including RDS, EMR, ECR, EKS and S3
Experience deploying Kubernetes using Rancher RKE2
Knowledge of the Risk Management Framework (RMF) accreditation process and security requirements
Experience using DISA enterprise security products including HBSS and ACAS and performing security hardening to satisfy STIG requirements
Experience installing and configuring a service mesh for cluster ingress/egress, mTLS, and authorization and authentication of services
Experience providing Identity Management services within a cloud or Kubernetes environment such Open ID Connect (OIDC) or SAML SSO
This position is local to the Falls Church, VA area and attendance on site is required about 50% of the time. The compensation for this role is estimated to be approximately $125,000.00-$150,000.00 commensurate on experience.