user avatar

Mid-Level DevSecOps Engineer

GRVTY

Posted today

Job Requirements

Herndon, VA
Top Secret/SCI Polygraph Unspecified
Career Level not specified
$150,000 - $250,000

Job Description

What Impact You'll Have

GRVTY is seeking a Mid-level DevSecOps Engineer with a TS/SCI to join one of our top projects in Herndon, VA, to support the development, integration, and cybersecurity compliance of intelligence capabilities in Development and Production environments. This is a software engineering-focused DevSecOps role. The primary focus is designing, coding, testing, and maintaining software and automation tools that streamline Cyber Security workflows and improve the reliability of our platforms. We are looking for a candidate with a software development background who can build scalable, reliable systems and developer tools, and contribute to DevSecOps pipelines that integrate and deploy components across multiple networks into private cloud infrastructures hosted for our government customer.

As a GRVTY team member, you will closely support our mission partners, and your work will have direct mission impact. You will work with DevSecOps engineers, software developers, infrastructure technicians, and cybersecurity professionals to use open-source technology to create and maintain the full stack of a High-Performance Computing (HPC) system that hosts applications for thousands of users.

What You'll be Owning

  • Deploy and manage highly available applications to ensure system reliability and scalability.
  • Implement and maintain HashiCorp Nomad and Kubernetes clusters for workload orchestration.
  • Execute DNS configuration, management, and performance tuning for enterprise-grade systems.
  • Develop and implement Infrastructure-as-Code (IaC) solutions using tools like Terraform, Ansible, or similar.
  • Build and manage multiple CI/CD pipelines with GitLab or equivalent tools to automate deployments and streamline development workflows for rapid development and integration
  • Perform system monitoring, logging, and troubleshooting to proactively identify and resolve issues.
  • Automate security testing and monitoring within the DevOps workflows using ACAS and Trivy.
  • Analyze cybersecurity scan findings and work with the cybersecurity team to identify false positives.
  • Assist the cybersecurity team in assembling the required Body of Evidence for False Positive exceptions.
  • Assist the cybersecurity team in assembling the required Body of Evidence to submit containerized and non-containerized software packages for enterprise software approval.
  • Integrate static code analysis tools such as GitLab SAST, Fortify, or SonarQube and other security mechanisms into CI/CD pipelines.
  • Build and maintain software tools that automate cybersecurity analysis and correlation workflows as compliance requirements evolve.
  • Perform cybersecurity remediation on DevSecOps-managed virtual machines, including OS patching, OS STIG implementation, and software package updates.
  • Build, maintain, and monitor configuration management of release products.
  • Troubleshoot and resolve issues in networks, automation pipelines, and infrastructure.


What You Must Have

  • Active TS/SCI and be willing and able to pass a CI polygraph
  • Must be able and willing to work 40 hours per week in a SCIF in Herndon, Virginia.
  • At least 3 years of industry experience in software development or software engineering.
  • At least 5 years of industry experience in DevSecOps, with a bachelor's degree in Computer Science, Information Systems, or a related field; or a master's degree and at least 3 years of relevant experience.
  • Demonstrated professional software development experience is required. Candidates must be able to design, write, test, debug, and maintain software using at least one language such as Python, Go, Java, C#, or similar. Experience building automation tools, APIs, or applications is central to this role.
  • Strong expertise in cloud environments, including deployment, optimization, and troubleshooting.
  • Proven track record in building and operating Cloud Native Applications using tools like Kubernetes and Docker.
  • In-depth experience with IaC tools such as Terraform, Ansible, or equivalent.
  • Solid experience in creating and managing CI/CD build pipelines using GitLab or similar tools (e.g., Jenkins, Azure DevOps).
  • Strong software automation skills using Python, Bash, or equivalent languages; Python or comparable application development experience is required.
  • Excellent problem-solving skills with attention to detail and the ability to thrive in a fast-paced environment.
  • Experience applying security best practices in DevSecOps pipelines (e.g., Trivy, Grype, GitLab SAST, or SonarQube).
  • Familiarity with monitoring tools like Prometheus, Grafana, or ELK Stack.
  • Strong knowledge of networking and load balancing technologies.
  • Experience with source control tools such as Git, including collaborative development workflows.
  • Experience with automated deployment technologies such as Cloud Formation, Ansible, Puppet or Chef.
  • Experience deploying and maintaining open-source and custom applications.
  • Moderate Linux system administration experience (Red Hat, Rocky Linux, AlmaLinux, or similar).
  • Working knowledge of Linux and Windows operating systems, web services, and SQL databases.
  • Experience working in an Agile environment.


What Would be Nice to Have

  • Security+ or comparable certification for privileged user access.
  • Experience with distributed processing methods and tools, such as REST APIs, microservices, IaaS/PaaS services.
  • Experience developing and deploying web services.
  • Experience in implementing Docker STIGs
  • Experience with CONMON cybersecurity remediation.
  • RHCSA/LPIC 1/2, CKA, or Docker Certified Associate certification.


Pay Range: At GRVTY, we understand that compensation is influenced by many factors-such as geographic location, federal contract labor categories, wage rates, prior experience, skillsets, education, and certifications. We're proud to offer a work environment that empowers our team to achieve a strong work-life balance. GRVTY provides competitive pay, comprehensive benefits, and meaningful opportunities for professional growth. Our benefits package is designed to support the well-being of our employees and their families, and includes coverage in areas such as healthcare, financial wellness, retirement planning, family assistance, continued education, and paid time off.

Virginia Pay Range

$150,000-$250,000
group id: 90883154
Find GRVTY on Social Media
Recruiters
user avatar
About Us
The next challenge is coming. We're here to answer it. Global threats are mounting. Turbulence and volatility are the new norm. But as America has proven for centuries, when we embrace daring ideas and resourceful development, we light the way forward. GRVTY exists to restore that ethos to American defense. We accelerate national security and advance our strategic edge with every challenge answered. GRVTY is a defense technology company. Our automated ISR&T platforms, software and data solutions help our defense, intelligence and homeland security customers turn insight into action faster and with confidence. Every day, our dedicated employees answer the challenge to rapidly deliver mission and technical expertise to keep America safe and secure.

GRVTY Jobs


Clearance Level
Top Secret/SCI
Employer
GRVTY