user avatar

Senior DevSecOps Engineer, Public Sector

Google, Inc.

Posted today

Job Requirements

Reston, VA
Top Secret/SCI Polygraph
Career Level not specified
$174,000 - $252,000

Job Description

In accordance with Washington state law, we are highlighting our comprehensive benefits package, which is available to all eligible US based employees. Benefits for this role include:
  • Health, dental, vision, life, disability insurance
  • Retirement Benefits: 401(k) with company match
  • Paid Time Off: 20 days of vacation per year, accruing at a rate of 6.15 hours per pay period for the first five years of employment
  • Sick Time: 40 hours/year (increased to 69 hours/year for Seattle) including 5 discretionary sick days per instance
  • Maternity Leave (Short-Term Disability + Baby Bonding): 28-30 weeks
  • Baby Bonding Leave: 18 weeks
  • Holidays: 13 paid days per year

Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Reston, VA, USA; Washington D.C., DC, USA.Minimum qualifications:
  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience in a DevOps, DevSecOps, or similar role, including automation.
  • Experience designing, implementing, and maintaining continuous integration and continuous deployment (CI/CD) pipelines.
  • Experience in Python, Go, Bash, or similar for system automation and tool integration.
  • Experience with infrastructure as code tools and cloud platforms in addition to containerized environments and orchestration tools.
  • Must possess an active Top Secret/SCI security clearance with current polygraph.

Preferred qualifications:
  • Certification in Certified DevSecOps Professional (CDP), Certified Kubernetes Security Specialist (CKS), Elastic Certified Engineer, or Cloud Computing Platform Certified DevOps Engineer - Professional.
  • 8 years of experience in software engineering or security operations.
  • Experience in Kubernetes security, including network policies, pod security, secrets management, and runtime security (e.g., Falco).
  • Experience building custom security as code solutions that integrate directly with SIEM technology for real-time alerting.
  • Experience in multi-cloud security architecture (GCP and cloud computing platform).
  • Knowledge of the elastic stack, specifically in engineering high-performance elasticsearch clusters and crafting sophisticated detections using ESQL/KQL.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

Google Public Sector's Security team is seeking a Senior Development, Security, and Operations(DevSecOps) Engineer to serve as the primary architect of our automated security ecosystem.

In this role, you will be responsible for moving security "to the left" by integrating automated testing, vulnerability scanning, and compliance checks directly into our CI/CD pipelines. You won't just be identifying problems; you will be building the code that solves them at scale. You will act as a liaison, coordinating with Red Teams to automate adversary emulation and with Blue Teams to codify detection signatures, leveraging your background in defensive security practices and SIEM technologies. You will view manual security processes as a bug to be fixed.

Google Public Sector brings the magic of Google to the mission of government and education with solutions purpose-built for enterprises. We focus on helping United States public sector institutions accelerate their digital transformations, and we continue to make significant investments and grow our team to meet the complex needs of local, state and federal government and educational institutions.

The US base salary range for this full-time position is $174,000-$252,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.

Responsibilities
  • Design and maintain automated deployment pipelines that integrate testing frameworks and mandatory security gates, ensuring high code quality without sacrificing developer velocity.
  • Integrate and fine-tune static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis tools into the build process, ensuring high-fidelity results and automated reporting.
  • Integrate with Red Team to codify tactics, techniques, and procedures (TTPs) for automated testing and with the Blue Team to ensure that automated attacks are correctly detected and logged in a SIEM.
  • Develop and enforce security policies for terraform and ansible deployments, ensuring that Kubernetes clusters and Cloud resources are secure-by-default.
  • Deploy and manage tools like open policy agent or kyverno to enforce security constraints within containerized environments.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form.
group id: RTX191830
Find Google, Inc. on Social Media
Network Employers
user avatar
About Us
Since our founding in 1998, Google has grown by leaps and bounds. Starting from two computer science students in a university dorm room, we now have over a hundred thousand employees, and multiple divisions within the company all focused on our mission of organizing the world‘s information and making it universally accessible and useful. Google Public Sector, a Google division, plays a critical role in applying cloud technology to solve complex problems for our nation—across U.S. federal, state, and local governments, and educational institutions. We are proud to have served the U.S. public sector for many years, and are looking for cleared professionals to join our team to help us rapidly expand our services to the government, now and into the future.

Google, Inc. Jobs


Clearance Level
Top Secret/SCI
Employer
Google, Inc.