The Leidos Defense Sector is seeking a highly qualified Senior SecDevOps Engineer to support a multidisciplinary team dedicated to delivering innovative planning, operational, technical, analytical, and mission support capabilities in Tampa, FL. The successful candidate will collaborate with government, military, and contractor personnel to develop solutions that enable informed decision-making, operational excellence, and mission success. Candidate must already possess a TS/SCI security clearance in order to be considered.
Lead the design, implementation, and continuous improvement of Secure Development and Operations (SecDevOps) processes supporting mission applications, enterprise platforms, Operations in the Information Environment (OIE), and cloud-based operational capabilities.
Develop and maintain secure Continuous Integration/Continuous Delivery (CI/CD) pipelines that automate software builds, testing, security scanning, deployment, configuration management, and infrastructure provisioning.
Integrate cybersecurity controls throughout the Software Development Life Cycle (SDLC) by implementing secure coding practices, vulnerability management, automated security testing, and compliance validation.
Design and manage Infrastructure as Code (IaC) solutions using industry-standard automation tools to deploy secure, scalable, and repeatable cloud and on-premises environments.
Collaborate with software developers, cybersecurity engineers, cloud architects, database engineers, system administrators, and mission stakeholders to integrate secure development practices into enterprise applications and operational systems.
Develop automated security validation processes including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), container security, and infrastructure security assessments.
Configure, administer, and optimize containerized environments and orchestration platforms supporting enterprise applications and operational services.
Monitor application performance, infrastructure health, system security, and deployment pipelines to identify issues, improve reliability, and optimize operational performance.
Develop and maintain DevSecOps documentation, security baselines, deployment standards, architecture diagrams, configuration management plans, and operational procedures.
Support Authority to Operate (ATO), Risk Management Framework (RMF), continuous monitoring, vulnerability remediation, and cybersecurity compliance activities.
Evaluate emerging cloud technologies, automation frameworks, DevSecOps tools, and cybersecurity capabilities to improve enterprise modernization efforts.
Mentor software developers, DevOps engineers, and system administrators on secure software engineering, automation, cloud technologies, and DevSecOps best practices.
Minimum of 12 years of experience supporting DevOps, DevSecOps, cloud engineering, systems engineering, software engineering, or cybersecurity.
Bachelor's degree in Computer Science, Software Engineering, Information Systems, Cybersecurity, Information Technology, Systems Engineering, or a related technical discipline. Additional years of directly related experience may be substituted where permitted.
Demonstrated experience implementing secure CI/CD pipelines, cloud infrastructure, and automated deployment solutions.
Experience supporting enterprise applications operating within secure or classified environments.
Extensive knowledge of DevSecOps principles, secure software development, and modern software engineering practices.
Experience developing CI/CD pipelines using Azure DevOps, GitLab CI/CD, GitHub Actions, Jenkins, Bamboo, or comparable automation platforms.
Proficiency with Infrastructure as Code (IaC) tools such as Terraform, Ansible, CloudFormation, ARM/Bicep, or Pulumi.
Experience administering cloud platforms including Microsoft Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP), or hybrid cloud environments.
Experience with containerization technologies including Docker, Kubernetes, OpenShift, Helm, or similar orchestration platforms.
Experience implementing automated security testing tools including SAST, DAST, SCA, container security, and vulnerability scanning solutions.
Strong understanding of cybersecurity principles, Zero Trust Architecture, identity management, encryption, PKI, and secure application architecture.
Experience supporting RMF, NIST 800-53, DISA STIGs, Security Technical Implementation Guides, Continuous Monitoring, and Authority to Operate (ATO) activities.
Proficiency with scripting and automation languages including PowerShell, Python, Bash, YAML, JSON, or similar technologies.
Strong analytical, troubleshooting, and problem-solving skills.
Excellent written and verbal communication skills with experience preparing technical documentation and executive briefings.
Master's degree in Computer Science, Cybersecurity, Software Engineering, Information Systems, or a related technical discipline.
Industry certifications such as:
Certified Kubernetes Administrator (CKA)
AWS Certified DevOps Engineer – Professional
Microsoft Certified: DevOps Engineer Expert
Certified Information Systems Security Professional (CISSP)
GIAC Cloud Security Automation (GCSA)
CompTIA Security+
Certified Cloud Security Professional (CCSP)
Experience supporting Geographic Combatant Commands, Joint Staff, Intelligence Community, or Department of Defense modernization initiatives.
Experience supporting cloud-native applications, microservices architectures, API management, and enterprise integration platforms.
Familiarity with Platform One, Iron Bank, Kubernetes Platform as a Service (KPaaS), Big Bang, or other DoD software factory initiatives.
Experience implementing DevSecOps practices supporting AI/ML platforms, enterprise data environments, or mission command systems.
*Standard day shift; schedule may be adjusted based on operational or customer requirements.