Resumo da vaga

DevSecOps Engineer

Requisitos e responsabilidades

Conteúdo da vaga extraído em seções para revisão mais rápida.

Duties and Responsibilities:

  • Maintain, extend, and improve Terraform and OpenTofu codebases for provisioning and managing hybrid cloud infrastructure; manage state files and remote backends within approved change control processes
  • Develop and maintain Ansible playbooks and roles to automate system configuration, compliance enforcement, patch management, and application deployment
  • Build, maintain, and improve GitHub Actions workflows incorporating security gates, including SAST, dependency scanning, secrets detection, and policy-as-code validation
  • Support containerized application delivery using Docker for image builds and Kubernetes for orchestration; manage Dockerfiles, Kubernetes manifests, Helm charts, and RBAC configuration
  • Integrate security practices throughout the software delivery lifecycle, enforcing CIS benchmarks and supporting NIST SP 800-53 and FISMA compliance requirements
  • Participate in stand-ups, sprint planning, and peer code reviews; maintain clear records of all changes to shared codebases and pipelines

Education and Years of Experience:

  • Bachelor's degree in Information Technology or a related field preferred
  • Formal education requirements may be waived based on 4 years of relevant professional experience
  • Hands-on experience with Terraform and/or OpenTofu, including module development, remote state management, and workspace management
  • Proficiency with Ansible, including playbook and role development, dynamic inventories, and Ansible Vault for secrets management
  • Demonstrated experience designing and maintaining GitHub Actions workflows, including reusable workflows and security gate integration
  • Working knowledge of Docker image authoring and hardening, Kubernetes manifest and Helm chart management, and container security scanning
  • Familiarity with SAST tools (Semgrep, Checkov, tfsec), secrets scanning (Gitleaks, Detect-Secrets), and policy-as-code frameworks (OPA/Rego)
  • Proficiency with Git-based workflows, including branching strategies, pull request reviews, and protected branch enforcement

Required Skills & Certifications:

  • Experience in a federal or highly regulated environment
  • Familiarity with NIST SP 800-53, FISMA, and FedRAMP compliance requirements
  • Cloud platform experience (AWS)
  • Experience with secrets management tools such as HashiCorp Vault
  • Scripting proficiency in Python and Bash

Required Skills & Certifications:

  • Active Top Secret clearance required

Working at DMI

  • Do What’s Right – We lead with honesty and integrity.
  • Own the Outcome – We take responsibility and deliver.
  • Deliver for Our Customers – We are relentless about delivering value.
  • Think Bold, Act Smart – We innovate with purpose.
  • Win Together – We collaborate and celebrate our success.

Working at DMI

  • Convenience/Concierge – Virtual health visits, commuter perks, pet insurance, and entertainment discounts that make life easier.
  • Development – Annual performance reviews, tuition assistance, and internal career growth opportunities to help you thrive.
  • Financial – Generous 401(k) matches, life and disability insurance, and financial wellness tools to support your future.
  • Recognition – Annual awards, service anniversaries, referral bonuses, and peer-to-peer shoutouts that spotlight your achievements.
  • Wellness – Healthcare coverage, wellness programs, flu shots, and biometric screenings to support your health.
Vagas similares

Mantenha uma lista reserva.

Ver stack
FocoDevSecOpsÁrea da vaga
Sinal de senioridadeMiddleNível do candidato
StackAWS, CI/CD, DockerSkills principais
Localização1 país aceitoElegibilidade

Stack

Use estas tags para comparar vagas remotas similares.

Elegibilidade de localização

Candidatos devem aplicar apenas quando o país do perfil estiver listado aqui.

Seu perfilPaís não definidoEntre para comparar seu país com esta vaga.

Fluxo de contratação

O WithMira mostra a vaga e depois envia candidatos para a aplicação da empresa.

1Confira fit da vaga, stack e elegibilidade de localização no WithMira.
2Abra a página de aplicação da empresa pelo link rastreado.
3Salve a vaga ou assine oportunidades similares antes de sair.
Aplicar no site da empresaSite da empresaAbrir link