Senior DevOps Engineer
FTI Defense - Frontier Technology Inc. · Dayton, OH · 3 days ago
On-siteEngineeringFull-time
Responsibilities
- Build, monitor, and continuously improve automated CI/CD pipelines for code building, static code analysis, testing, integration and deployment.
- Own infrastructure-as-code end-to-end using terraform: module design, state management, environment promotion, drift detection, and review standards on AWS GovCloud (preferred), GCP, ADO and K8S optimizing for uptime, cost efficiency, and security.
- Containerize and standardize workloads with docker, including base images, multi-stage builds, registry strategy, and local/dev parity.
- Embed automated security scanning (fortify, tenable, grype, trufflehog, openscap) into pipelines to reduce vulnerabilities and improve security posture and reporting.
- Write automation and tooling in Python and TypeScript for internal CLIs, pipeline logic, glue code, and operational scripts.
- Set up observability: logging, metrics, tracing, and alerting.
- Define standards and guardrails for environment strategy, deployment policy, tagging, cost controls, and documentation.
- Support compliance and continuous ATO by implementing NIST 800-53 / STIG controls.
- Manage source repositories and version-control workflows (ADO/GH).
Requirements
- Must be a U.S. citizen and able to obtain a TS/SCI clearance.
- Existing secret clearance preferred.
- Bachelor's degree from an accredited college or university in a STEM field, Computer Science preferred.
- 6+ years of DevOps Engineering experience.
- Extensive hands-on experience designing and operating cloud infrastructure - AWS, AWS GovCloud, or similar.
- Deep experience with automation and configuration-management tooling, including Python, Bash and Terraform, AWS Systems Manager (SSM)
- Strong background building and maintaining CI/CD pipelines (Azure DevOps or equivalent) across the full software lifecycle - development, testing, and deployment.
- Proven experience embedding security scanning and compliance gates into pipelines (DevSecOps / "shift-left").
- Working knowledge of containerization and orchestration (Docker, Kubernetes, Helm) and registry/image standards (e.g., Harbor).
- Familiarity with security and compliance frameworks (NIST 800-53, STIG, RMF/ATO) in a government or regulated environment.
- Security+ CE, SSCP, CCNA-Security, or GSEC Certification that aligns with DODI 8140 requirements.
Qualifications
- Self-motivated, adaptable, and skilled at organizing priorities.
- Thrives in a dynamic, growth-oriented environment where collaboration and innovation are valued.