Software Engineer, DevSecOps

Helsing

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in DevSecOps, security engineering, or infrastructure engineering with a security focus
  • Bachelor's degree in Computer Science, Engineering, Cybersecurity, or a related field
  • Deep experience with Kubernetes (deployment, networking, RBAC)
  • Proficient with ArgoCD or similar GitOps tooling
  • Strong experience with Helm charts
  • Proficient in Python and Bash for automation
  • Understanding of software supply chain security
  • Hands-on experience with NIST 800-171 or similar frameworks
  • Comfortable with CI/CD pipeline design, focusing on security checks
  • Familiar with AWS and capable of contributing to infrastructure decisions
  • US citizen eligible for security clearance

Responsibilities

  • Deploy, update, and secure Kubernetes workloads using ArgoCD and GitOps
  • Build and maintain secure CI/CD pipelines that enforce policies and scan for vulnerabilities
  • Maintain and harden shared services like GitLab and container registries
  • Implement and enforce security controls aligned with CMMC Level 2 and NIST frameworks
  • Secure the software supply chain, including image signing and dependency scanning
  • Conduct threat modeling to identify architectural risks
  • Detect, investigate, and respond to security incidents across infrastructure and applications
  • Collaborate with product teams to ensure security compliance before and after deployment
  • Support secure hosting of ML/AI workloads and sensitive data handling

Benefits

  • Focus on outcomes rather than time-tracking
  • Generous compensation and benefits package including medical insurance
  • Flexible paid time off and paid holidays
  • Remote and/or hybrid work options available depending on position
Full Job Description
The role

You will join the Platform Engineering team as a security-focused engineer responsible for embedding security into every layer of our developer platform and software delivery pipeline. You will own the security posture of our development environment - ensuring CMMC Level 2 compliance, hardening our software supply chain, and implementing the controls required for product teams to achieve ATO against NIST and other cybersecurity frameworks. You will work closely with platform and product engineers to build secure CI/CD pipelines, enforce policy-as-code, and maintain the shared infrastructure that all teams depend on. This role combines hands-on engineering with deep security expertise: you are not just auditing compliance, you are building the systems that make compliance automatic.
The day-to-day
  • Deploying, updating, and securing Kubernetes workloads through ArgoCD and GitOps workflows
  • Building and maintaining secure CI/CD pipelines that enforce policy, scan for vulnerabilities, and produce auditable build artifacts
  • Maintaining and hardening shared services (GitLab, Artifactory, container registries) that the entire organization depends on
  • Implementing and enforcing security controls aligned with CMMC L2, NIST 800-171, and other frameworks required for ATO
  • Securing the software supply chain: image signing, SBOM generation, dependency scanning, and provenance tracking
  • Conducting threat modeling to surface architectural risks before they become incidents
  • Detecting, investigating, and responding to security incidents across infrastructure and applications
  • Working with product teams to ensure their workloads meet security and compliance requirements before and after deployment
  • Supporting the secure hosting of ML/AI workloads, including model training environments and sensitive data handling
You should apply if you
  • Have 5+ years of experience in DevSecOps, security engineering, or infrastructure engineering with a security focus
  • Have a Bachelor's degree in Computer Science, Engineering, Cybersecurity, or a related field
  • Have deep experience with Kubernetes - deployment, networking, RBAC, pod and cluster security, and operational troubleshooting
  • Are proficient with ArgoCD or similar GitOps tooling for managing Kubernetes workloads at scale
  • Have strong experience writing and maintaining Helm charts
  • Are proficient in Python and Bash, with experience automating security and compliance workflows
  • Understand software supply chain security, including container image hardening, FIPS-validated cryptography, vulnerability scanning, SBOM, and artifact signing
  • Have hands-on experience implementing security controls from frameworks like NIST 800-171, NIST 800-53, or CMMC
  • Are comfortable with CI/CD pipeline design, particularly building in security gates, policy-as-code, and automated compliance checks
  • Have working knowledge of AWS and can collaborate effectively on infrastructure decisions
  • Are a U.S. citizen eligible to obtain a security clearance
Nice to have
  • Experience with Go or other systems programming languages
  • Experience shepherding systems through an ATO process
  • Familiarity with DISA STIGs and the Risk Management Framework (RMF)
  • Familiarity with Terraform and infrastructure-as-code for cloud resources
  • Experience with Nix or NixOS
  • Experience with SIEM platforms (e.g., Elastic) and security monitoring/incident response
  • Experience securing and deploying ML/AI workloads - GPU environments, training pipelines, data classification
  • Red teaming or penetration testing experience
  • Certifications such as CKS, Security+, or CISSP
  • Experience in defense, intelligence, or other regulated environments
What we offer
  • A focus on outcomes, not time-tracking
  • A generous compensation and benefits package (in addition to base salary) that includes, but may not be limited to, insurance coverage (medical and travel), flexible paid time off, paid holidays, and remote and/or hybrid work available depending on position. All compensation and benefits are subject to the terms and conditions of the underlying plans or programs, as applicable and as may be amended, terminated or superseded from time to time.


Similar Jobs

More Jobs at Helsing

  • Senior Accountant
    $95K — $115K *
    Washington, DC 20011 (District Of Columbia County)
    Legal & Accounting
    In-Person
  • Senior Accountant
    $80K — $95K *
    Martinsburg, WV 25404 (Berkeley County)
    Manufacturing & Automotive
    In-Person
  • Head of Communications
    $120K — $150K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Lead Field Engineer
    $90K — $130K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Software Engineer, DevSecOps jobs: