Posted today
Top Secret/SCI
Unspecified
Unspecified
Dayton, OH (On-Site/Office)
We are seeking a Senior Platform Engineer to lead the design, implementation, and maintenance of our secure DevSecOps platform infrastructure supporting mission-critical government systems. This role combines advanced DevOps practices with platform engineering expertise to build automated, secure, and scalable cloud-native infrastructure. The ideal candidate will define build, deployment, and monitoring standards while providing Tier 4 platform support and technical leadership to ensure our infrastructure meets DoD compliance and Risk Management Framework (RMF) requirements. This position works directly with the platform team and serves as a bridge between development teams, security teams, and cloud operations. Must be a US citizen and must possess an active TS/SCI.
Sign-on bonus available
Responsibilities include:
DevSecOps Pipeline Development and Automation
Infrastructure as Code and Cloud Management
Security Integration and Compliance
Container and Orchestration Security Management
Monitoring, Reporting, and Observability
Platform Support and Leadership
Technical Experience & Qualifications
Sign-on bonus available
Responsibilities include:
DevSecOps Pipeline Development and Automation
- Design, implement, and maintain automated and secure DevSecOps pipelines with integrated security controls throughout the software delivery lifecycle
- Assist developers in building, scanning, and testing systems through automated pipeline integration and continuous integration/continuous deployment (CI/CD) processes
- Develop DevSecOps tools and techniques to construct comprehensive automated deployment workflows
- Design and document best practices for DevSecOps actions and ensure team adherence to established standards
- Define and implement build, deployment, and monitoring standards for the organization
Infrastructure as Code and Cloud Management
- Automate deployment and maintenance of solutions across multiple Azure cloud instances using Terraform, ARM/Bicep, and other IaC tooling based on guidance from System Architects
- Implement infrastructure consistency and repeatability through automated processes that ensure reliable and predictable deployments
- Develop automated deployment solutions in accordance with guidelines set by Lead Architects
- Collaborate with Cloud Ops/VDI Team to optimize cloud resource utilization, performance, and cost management through automated solutions
- Develop and automate system failover, high availability, and application deployment/upgrade availability models
- Ensure infrastructure deployments comply with security requirements and organizational standards through automated validation
Security Integration and Compliance
- Incorporate security controls and automated security scans to conform to Risk Management Framework (RMF) security requirements
- Ensure cybersecurity functions, performance, and characteristics are incorporated into system deployments and validated according to DoD and USAF policy
- Integrate automated security scanning, vulnerability assessment, and compliance checking throughout deployment pipelines
- Collaborate with Cyber/ATO team on security control implementation and continuous compliance monitoring
- Maintain familiarity with RMF/DIACAP accreditation processes and ensure pipeline compliance
- Ensure cybersecurity documentation completion in accordance with DoD and USAF policy
- Integrate security compliance into automated infrastructure provisioning and management
Container and Orchestration Security Management
- Manage containerization strategies using Docker and Azure Kubernetes Services with integrated security controls
- Implement container security scanning, image vulnerability management, and secure container lifecycle processes
- Configure and optimize container orchestration for security, scalability, and performance
- Ensure container security best practices and automated vulnerability remediation
- Support development teams with secure containerization guidance and troubleshooting
- Maintain cybersecurity performance and functions across infrastructure components
Monitoring, Reporting, and Observability
- Work with development teams to develop monitoring and reporting capabilities using Azure Monitor and other observability tools to allow developers, testers, and stakeholders to observe system availability and performance
- Establish security and performance baselines with automated alerting for compliance and operational health
- Implement automated monitoring solutions for deployment pipeline health and security compliance
Platform Support and Leadership
- Provide Tier 4 support for the platform, resolving complex technical issues and serving as escalation point
- Work as part of an Agile development team to ensure that the organization's data, network, and IT infrastructure are safe and free from security threats
- Provide technical guidance and mentorship to platform engineers and development teams
- Other duties as assigned
Technical Experience & Qualifications
- Must be a US Citizen
- Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or related technical field
- Experience: Minimum 7 years of professional experience in DevOps, platform engineering, or infrastructure automation
- Clearance: Active TS/SCI
- Cloud Platforms: Advanced hands-on experience with Azure cloud services and architecture; AWS experience is a plus
- Infrastructure as Code: Expert proficiency with Terraform, ARM templates, Bicep, or similar IaC tools
- CI/CD Pipelines: Extensive experience designing and implementing automated CI/CD pipelines with integrated security controls
- Containerization: Strong experience with Docker, Azure Kubernetes Services (AKS), and container orchestration platforms
- Security & Compliance: Deep understanding of DevSecOps practices, RMF/DIACAP processes, and DoD/USAF security requirements
- Automation: Proven track record of automating infrastructure deployment, configuration management, and operational processes
- Scripting: Proficiency in scripting languages (PowerShell, Python, Bash) for automation and tooling development
- Version Control: Advanced Git experience with branching strategies and workflow management
- Monitoring & Observability: Experience with Azure Monitor, Log Analytics, or similar monitoring and observability platforms
- Container Security: Knowledge of container security scanning tools, vulnerability management, and secure image lifecycle
- Agile Methodologies: Experience working in Agile development environments and collaborating with cross-functional teams
- Problem-Solving: Demonstrated ability to troubleshoot complex infrastructure and platform issues at Tier 4 level
group id: RTL208333
ASRC Federal Building Careers