DevSecOps Engineer
About the role
The DevSecOps Engineer supports a mission-critical platform enabling the Department of War to securely develop, deploy, and operate modern software capabilities. They work with software engineering, cybersecurity, and operations teams to automate delivery processes, integrate security throughout the software development lifecycle, and ensure deployments are secure, reliable, and efficient.
Responsibilities
- Build, operate, and maintain CI/CD pipelines using GitLab CI, GitHub Actions, Jenkins, or similar tools
- Automate software builds, testing, security validation, artifact creation, and deployments
- Support delivery and platform automation primarily in AWS, with additional support for Azure environments
- Develop and maintain infrastructure as code to create secure, consistent, and repeatable environments
- Integrate code, dependency, container, and infrastructure security scanning into automated pipelines
- Implement automated quality and security gates to prevent vulnerable or noncompliant code from being deployed
- Maintain source-code repositories, branching strategies, artifact management, versioning, and release processes
- Support rolling, blue-green, and canary deployment strategies
- Document pipeline configurations and operational procedures while identifying opportunities for continuous improvement
Requirements
- 4+ years of experience in DevSecOps, DevOps, platform engineering, cloud engineering, or a related field
- Hands-on experience supporting AWS environments
- Experience building and maintaining CI/CD pipelines
- Experience with infrastructure-as-code tools such as Terraform, CloudFormation, or Ansible
- Experience integrating automated security and code-quality tools into CI/CD workflows
- Knowledge of Git-based source control, branching strategies, and release management
- Experience with Docker, Kubernetes, and artifact-management tools such as Artifactory, Nexus, or GitLab Package Registry
- Familiarity with monitoring, logging, and alerting tools
- Proficiency in scripting and automation using Python, Bash, PowerShell, or a similar language
- Understanding of secure software-development practices and the software development lifecycle
- Strong troubleshooting, documentation, and cross-functional communication skills
Qualifications
- Bachelor's degree in Computer Science, Engineering, or a related technical field preferred; equivalent combinations of education and relevant experience will be considered
Skills
- Working knowledge of Azure
- Experience supporting DoW, federal, Advana, or other enterprise data environments
- Familiarity with software supply-chain security, secrets management, or policy-as-code
- Currently holds, or is willing to obtain within 30 days of employment, an approved certification such as Cloud+, GICSP, GSEC, Security+, or SSCP
Benefits & Perks
- Flexible PTO + all Federal holidays off
- Health, dental and vision insurance plans
- Flexible Spending Account (FSA)
- 401k with employer match
- Company-sponsored life insurance, short- and long-term disability
- Professional development (training, certifications, conferences)
- Paid cloud developer accounts
- Referral bonuses
- HQ office perks (parking / metro reimbursement, nitro coffee & lunches)
- Annual social events (540 Week, hackathon, charity golf tournament, etc.)
- Access to 540's Washington Capitals & Nationals tickets
Equal Employment Opportunity (EEO)
540's policy is to provide equal employment opportunity to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.