Noblis

Senior DevSecOps Engineer

Noblis$120K — $188K *
Aerospace & Defense
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • US Citizenship is required
  • Active Top-Secret SCI (TS/SCI) with Polygraph
  • Bachelor's OR Master's degree with 7 years of experience; OR associate's degree with 11 years; OR High School diploma/GED with 14 years of experience
  • Proficiency in Python and Bash for automation
  • Familiarity with CI/CD tools (e.g., GitLab CI, GitHub Actions) and Kubernetes
  • Experience with cloud environments (e.g., AWS, Azure, GCP) and security practices
  • Ability to identify and solve security vulnerabilities

Responsibilities

  • Design, build, and maintain CI/CD pipelines for automated processes
  • Integrate automated testing, security scans, and compliance validation into pipelines
  • Develop and manage Infrastructure as Code (IaC) using Terraform or CloudFormation
  • Implement security best practices for Docker, Kubernetes, and EKS
  • Design and enforce AWS/Azure security guardrails and standards
  • Operationalize vulnerability management across applications and infrastructure
  • Mentor junior staff on secure coding and DevSecOps principles

Benefits

  • Employee training and development opportunities
  • Access to advanced security tools and technologies
  • Collaborative and innovative work culture
  • Flexible work arrangements
  • Opportunity to work on critical national security projects
Full Job Description
Responsibilities

Noblis is looking for a highly experienced DevSecOps Engineer with an active Top Secret/SCI clearance with Polygraph to support critical national security missions.

In this role, you will embed security practices into the DevOps lifecycle, ensuring security is integrated at every stage of software development. You'll collaborate across development, operations, and security teams to close gaps and promote a culture of shared accountability for security.

The ideal candidate brings hands-on experience designing secure CI/CD pipelines, automating security controls, securing Kubernetes environments, and guiding or mentoring junior engineers.

Job Responsibilities:
  • Designing, building, maintaining, and optimizing CI/CD pipelines supporting automated build, test, security scan, and deployment processes.
  • Integrating automated testing, security scanning, and compliance validation into pipeline execution to support secure delivery practices.
  • Developing and managing IaC using Terraform or CloudFormation, implementing security guardrails and scanning to ensure compliance and prevent misconfigurations.
  • Implementing security best practices for Docker, Kubernetes, and EKS, including image hardening, admission controls, policy-as-code, and runtime security.
  • Partnering with teams to design and enforce AWS/Azure security guardrails, including IAM least-privilege, network controls, and encryption standards.
  • Operationalizing vulnerability management by identifying, prioritizing, and remediating security threats across applications and infrastructure.
  • Translating security compliance requirements into automated security controls and audit-ready evidence.
  • Ensuring that all software development and deployment processes comply with relevant security policies, standards, and regulations.
  • Acting as a security champion, mentoring junior engineers and developers on secure coding practices and DevSecOps principles.

Required Qualifications

  • US Citizenship is required
  • Active Top-Secret SCI (TS/SCI) with Polygraph
  • Bachelor's OR Master's degree with 7 years of related experience; OR associate's degree with 11 years of related experience; OR High School diploma/GED with 14 years of related experience.
  • Proficiency in programming languages such as Python, and scripting languages for automation tasks (e.g., Bash).
  • Familiarity with CI/CD tools (e.g., GitLab CI, GitHub Actions), container orchestration (e.g., Kubernetes, EKS), and infrastructure as code (e.g., Terraform, Ansible).
  • Skills in security cloud environments, including cloud service providers (e.g., AWS, Azure, GCP), and understanding of cloud-native security tools and practices.
  • Ability to identify security issues and vulnerabilities and develop effective solutions.
  • Ability to distill technical complexities into actionable guidance for development teams.


#HighlyCleared

Desired Qualifications

  • AWS Certification , including AWS Certified DevOps Engineer or AWS Certified Solutions Architect Certification
  • Experience with OPA/Gatekeeper or Kyverno.
  • Knowledge of SBOM generation, artifact signing (cosign), and provenance concepts.
  • Familiarity with NIST SP 800-171 or CMMC expectations.
  • Strong analytical skills to diagnose complex security issues spanning multiple technologies.

Posted Salary Range

USD $120,700.00 - USD $188,725.00 /Yr.

About Noblis

Noblis is an American not-for-profit science, technology, and strategy organization that provides technical and advisory services to federal government clients. Noblis works in the areas of national security, intelligence, transportation, healthcare, environmental sustainability, and enterprise transformation. Noblis was created in 1996 when Mitretek Systems Inc. was split into two separate entities. The other entity became known as Noblis ESI. Noblis has been recognized as one of the best places to work in the Washington, D.C. area by the Washington Business Journal and the Washingtonian.
Learn more about Noblis
Size
1,500 employees
Industry
Founded
1996

Similar Jobs

More Jobs at Noblis

More Aerospace & Defense Jobs

Find similar Senior DevSecOps Engineer jobs: