Senior DevSecOps Engineer
Dark Wolf constructs and deploys data management and analytics solutions for the defense and intelligence communities. We’re proud to boast a world-class engineering team that thrives on rolling up their sleeves to solve your mission’s biggest challenges.
About the role
Dark Wolf is seeking a Senior DevSecOps Engineer to manage, automate, and elevate the Continuous Integration/Continuous Deployment (CI/CD) pipelines and processes used across the development lifecycle. In this role, you will ensure end-to-end security, observability, and operational resilience for deployed software products. We are looking for a technical leader and proactive problem solver who excels in fast-paced environments and thrives within high-performing teams.
Responsibilities
- Maintain, optimize, and operate automated CI/CD pipelines using platforms such as Jenkins and GitLab CI/CD.
- Seamlessly integrate security tools and controls directly into the CI/CD pipeline, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and container/dependency scanning.
- Implement and maintain robust automated testing frameworks across unit testing, integration testing, and User Acceptance Testing (UAT).
- Collaborate closely with development teams to identify, prioritize, and remediate application and infrastructure security vulnerabilities.
- Enforce and maintain strict compliance with government and organizational security regulations and standards.
- Design resilient Policy-as-Code workflows and lead security posture improvements across multi-environment deployment platforms.
Requirements
- Must be a US Citizen holding an active TS/SCI security clearance with an active Full-Scope Polygraph.
- Bachelor's degree in Computer Science, Information Systems, Engineering, or a related technical field.
- Minimum 7+ years building and maintaining automated CI/CD pipelines.
- Minimum 3+ years of experience with automation tools for infrastructure provisioning and configuration management.
- Proficiency with Git, GitLab, Jira, and associated developer ecosystem tools.
- Strong background in Linux systems administration and fundamental networking principles.
- Superior troubleshooting skills, strong collaboration abilities, and the capability to articulate complex technical ideas clearly to both technical and non-technical audiences.
- Unwavering commitment to strict security protocols and DevSecOps best practices.
Skills
- Container Security & Governance: Advanced Kubernetes orchestration security, admission controllers (e.g., Open Policy Agent/OPA, Kyverno), runtime security monitoring (e.g., Falco), and pod security standards.
- Secrets Management: Hands-on implementation of enterprise secrets managers (e.g., HashiCorp Vault, AWS Secrets Manager) for automated secret rotation and dynamic injection.
- GitOps & Modern Continuous Delivery: Deep experience implementing GitOps operational models using tools such as ArgoCD or Flux.
- Full-Stack Observability & Telemetry: Experience deploying end-to-end monitoring, centralized logging, and metrics stacks (e.g., Prometheus, Grafana, ELK/OpenSearch, OpenTelemetry).
- Programming & Scripting: Proficiency in languages such as Python, Go, Bash, or C/C++.
- Containerization: Strong practical experience with containerized software practices (Docker, Podman).
- Agile Frameworks: Experience working within Agile/Scrum software development methodologies.
- Cloud Architecture: Multi-cloud infrastructure experience across AWS, Azure, or GCP.
- Security Scanning Tooling: Hands-on experience with modern scanner suites (e.g., SonarQube, Snyk, Trivy, OWASP ZAP).
Qualifications
- Certified Kubernetes Administrator (CKA) / Certified Kubernetes Security Specialist (CKS)
- AWS Certified DevOps Engineer / Azure DevOps Engineer
- CompTIA Security+, CISSP, or Certified DevSecOps Professional (ADP)
Pay
Target Salary Range: $150,000.00 – $170,000.00
Schedule
Full-time, direct W2 employment.
Location: Chantilly/Herndon, VA.