Job Requirements
Job Description
DevSecOps Engineer
Location: Colorado Springs, CO.
Required Clearance: Secret
Since 1999, ITEC has been a powerhouse in supporting mission-critical programs for the DoD and Intelligence community, building a solid reputation along the way. At ITEC, we don’t just care for our employees—we champion them with competitive salaries, an outstanding employee care program, and a benefits package that includes Medical, Dental, Vision, Paid Time Off, and a 401k match.
U.S. Citizenship Mandatory: Due to our US federal government contract, candidates for this position are required to be a US Citizen and will be subject to a background investigation.
Job Description:
The DevSecOps Infrastructure Engineer designs, implements, secure and operates the cloud and on-premises infrastructure that enables reliable software delivery and mission-critical services. The role integrates security throughout the software development lifecycle, improves platform resiliency, observability and establishes repeatable infrastructure and deployment practices through automation.
The successful candidate is a hands-on technical leader who can translate engineering and security requirements into scalable platforms capabilities. They will partner closely with software engineers, cybersecurity personnel, systems administrators, product teams and program leadership to deliver secure, maintainable and compliant infrastructure.
Job Responsibilities:
- Design, deploy and maintain scalable, resilient and secure infrastructure across cloud, hybrid and/or on-premises environments.
- Develop and manage Infrastructure as Code (IaC) using tools such as Terraform, Ansible, CloudFormation, Pulumi or equivalent.
- Build, maintain and improve continuous integration and continuous delivery (CI/CD) pipelines that incorporate automated security controls, testing, artifact management and deployment approvals.
- Integrate security practices into the development lifecycle, including code scanning, dependency scanning, secret detection, container image scanning, configuration validation and vulnerability remediation workflows.
- Engineer and operate containerized platforms using Docker, Kubernetes, OpenShift or comparable technologies.
- Establish platform observability through centralized logging, metrics, alerting, tracing, dashboards and service-level objectives.
- Implement identity, access, secret-management, encryption, network segmentation and least-privilege controls in partnership with cybersecurity stakeholders.
- Support system availability, incident response, root-cause analysis, disaster recovery, backup and continuity-of-operations activities.
- Automate routine operational activities to reduce manual effort, configuration drift, deployment risk and mean time to restore service.
- Define and maintain technical standards, reference architectures, runbooks and operational documentation.
- Conduct infrastructure and deployment design reviews; identify technical risks, security gaps, performance constraints and remediation options.
- Mentor junior engineers and promote engineering practices for secure coding, operational readiness, automation and infrastructure reliability.
- Coordinate with engineering, security, compliance and program stakeholders to prioritize platform improvements and resolve cross functional issues.
Required Skills:
- Strong written and verbal communication skills, including the ability to document technical decisions and brief technical and nontechnical stakeholders.
- Must have 6, or more, years of general (full-time) work experience, may be reduced with completion of advanced education.
- Must have 4, or more, years of experience in systems engineering, cloud infrastructure, site reliability engineering, platform engineering, DevOps, DevSecOps or a related technical discipline.
- Must have 6, or more, months of experience working in a management or leadership role.
- Must have demonstrated experience designing and operating production infrastructure in AWS, Microsoft Azure, Google Cloud Platform, private cloud and/or hybrid environments.
- Must have strong proficiency with Infrastructure as Code and configuration-management tools.
- Must have experience designing, implementing and maintaining CI/CD pipelines using platforms such as GitLab CI/CD, Jenkins, GitHub Actions, Azure DevOps or equivalent.
- Must have experience with Linux administration, networking fundamentals, scripting and automation using Python, Bash, PowerShell, Go, or similar languages.
- Must have experience operating container and orchestration technologies, including Kubernetes and OpenShift.
- Must have a working knowledge of security engineering principles, including identity and access management, vulnerability management, secure configuration baselines, secrets management, encryption and logging.
- Must have experience with monitoring and observability tooling such as Prometheus, Grafana, Elastic Stack, Splunk, Datadog, CloudWatch or equivalent.
- Must be able to troubleshoot complex distributed-system, infrastructure, networking, deployment and security issues.
- Must have a current DoW 8570 IAT Level II certification (ex: Security+ or equivalent).
Desired Skills:
- Have a Bachelor’s degree, or higher, in computer science, information systems, engineering, cybersecurity or a related field; equivalent relevant experience may be considered.
- Have experience supporting regulated, government, defense or other high-assurance environments.
- Relevant certifications, such as AWS Certified Solutions Architect, AWS Certified DevOps Engineers, Microsoft Azure Administrator/DevOps Engineer, Certified Kubernetes Administrator, Red Hat Certified Specialist, CISSP, CCSP or equivalent.
- Have experience implementing policy-as-code and security-as-code practices using tools such as Open Policy Agent, Kyverno, Checkov, tfsec, Trivy, Snyk, SonarQube or equivalent.
- Have experience with Zero Trust architecture concepts and implementation.
- Knowledge of secure software supply-chain practices, including software bill of materials, artifact signing, provenance and dependency management.
- Have experience with high-availability design, disaster recovery, capacity planning and performance engineering.
- Be familiar with Agile delivery, product management and technical program execution.
ITEC is a wholly owned subsidiary of ManpowerGroup Public Sector.