user avatar

Cloud DevSecOps Engineer

ECS

Posted today

Job Requirements

VA
Public Trust Polygraph Unspecified
Career Level not specified
$130,000 - $175,000

Job Description

Job Description
ECS is seeking a Cloud DevSecOps Engineer to work remotely.

Job Description:
We are seeking a highly skilled Senior DevSecOps Engineer with extensive experience in cloud-native infrastructure engineering, Kubernetes container orchestration, and enterprise Identity and Access Management (IAM). Tools necessary for excelling in this role include Kubernetes, Docker, Helm, Keycloak Identity Broker, Okta SSO/OIDC, Terraform/IaC, CI/CD pipelines (GitLab CI, GitHub Actions, or Jenkins), and security scanning tooling (Trivy). This role will serve as the infrastructure and security authority within a lean, agile modernization team rebuilding an enterprise Microsoft Power Apps system into a cloud-native platform. You will play a critical role in provisioning and securing Kubernetes cluster environments, engineering automated build and deployment pipelines, deploying and managing high-availability Keycloak identity broker services federated to enterprise Okta, and safeguarding all infrastructure, database, and storage assets across non-production and production environments.

About the Job
  • Architect, provision, configure, and maintain production-grade Kubernetes cluster environments hosting containerized front-end, backend, and identity services.
  • Deploy, configure, and administer a highly available Keycloak Identity Broker instance running in Kubernetes, federating authentication to enterprise Okta via SAML 2.0 and OIDC.
  • Configure identity brokering rules, realm roles, client scopes, and token exchange policies within Keycloak to power secure authentication for React and Spring Boot services.
  • Design, build, and maintain end-to-end CI/CD pipelines for automated image builds, vulnerability scanning, automated testing gates, and zero-downtime rolling deployments via Helm.
  • Implement robust platform security controls, including Kubernetes Ingress controllers (NGINX/Traefik), TLS certificate automation (cert-manager), network policies, and container image scanning (Trivy).
  • Automate secrets management and configuration injection across environments using tools such as HashiCorp Vault, AWS Secrets Manager, or Kubernetes External Secrets Operator.
  • Provision, monitor, and maintain supporting backing infrastructure including managed PostgreSQL instances and secure Amazon S3 storage buckets.
  • Establish centralized logging, monitoring, and alerting frameworks (Prometheus, Grafana, Loki or EFK stack) to ensure high system observability and reliability.

Salary Range: $130,000-$175,000

Required Skills
  • Must be a US Citizen with the ability to pass a Public Trust background check
  • Bachelor's degree in a relevant field
  • 10+ years of relevant work experience
  • 6+ years of systems engineering, DevOps, and cloud infrastructure experience in enterprise Linux and cloud environments.
  • 4+ years of hands-on experience provisioning, operating, and troubleshooting containerized workloads in production Kubernetes clusters.
  • 3+ years of dedicated experience configuring and managing enterprise Identity and Access Management (IAM) systems, specifically Keycloak and Okta (OIDC, OAuth 2.0, SAML 2.0).
  • Strong experience building and maintaining automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Jenkins) integrating security scans and container image registries.
  • Proficiency in Infrastructure as Code (IaC) and configuration management using Terraform, Helm charts, and Kubernetes YAML manifests.
  • Solid background in networking, DNS, TLS/SSL termination, reverse proxy routing, and cloud network access policies.
  • Strong scripting skills in Bash, Python, or Go for automated infrastructure management and operational tooling.
  • Proactive problem-solving capabilities with a security-first engineering mindset and clear technical communication skills.
Desired Skills
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS).
  • Direct experience deploying and operating the Keycloak Kubernetes Operator and backing relational databases in high-availability configurations.
  • Hands-on experience securing AWS cloud environments and configuring least-privilege IAM policies, S3 bucket security, and VPC networking.
  • Experience implementing DevSecOps security automation tools such as Trivy, SonarQube, OWASP ZAP, or Snyk within continuous deployment workflows.
  • Familiarity with GitOps deployment methodologies utilizing ArgoCD or Flux.
  • Familiarity working in Agile / Scrum software development environments within public trust or federal contexts.

#EverforthECS1

ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.

is the federal segment of , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

We value:
  • Attracting and developing top talent and high-performing teams
  • Fostering a culture that is engaging, accountable, and mission-driven


Meet the challenge. Make a difference with Everforth ECS!
group id: 10112231A
Find ECS on Social Media
Recruiters
user avatar
About Us
ECS, a key segment of ASGN Incorporated, is a trusted IT systems integrator serving government agencies. ECS provides modern digital solutions that enable fast and efficient decision making and support the effective execution of government agency operations. ECS’ leading-edge AI, cybersecurity, and open data management solutions boost collaboration, innovation, and worker productivity, improve employee and customer experiences, and protect critical agency data and assets.

ECS Jobs


Job Category
IT - Hardware
Clearance Level
Public Trust
Employer
ECS