it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

10 jobs found

Email me jobs like this
Refine Search
Current Search
senior devsecops engineer
Cybersecurity Engineer
ThinkTek Mechanicsburg, Pennsylvania
Job DescriptionJob Description Cybersecurity Engineer (Secret Clearance)Who We Are:ThinkTek LLC is a fast-growing Certified SBA 8(a) and Service-Disabled Veteran-Owned Small Business (SDVOSB) company. We specialize in providing management and technology consulting services to support the business and technology modernization efforts of the Federal Government. ThinkTek was formed with the specific purpose of providing its clients a tailored solution around Program & Project Management, Strategic Planning, and IT OverviewWe are seeking an experienced Cybersecurity Engineer to support a Federal Government customer by providing advanced cybersecurity engineering, assessment, and compliance support. This position serves as a senior cybersecurity practitioner responsible for implementing and assessing security controls, maintaining system authorization packages, conducting security assessments, and supporting risk-based authorization decisions across a portfolio of mission-critical systems.The Cybersecurity Engineer will work across traditional, cloud-native, and SaaS environments, supporting the Risk Management Framework (RMF), Cybersecurity Risk Management Construct (CSRMC), Continuous Authorization to Operate (cATO), and Zero Trust initiatives. The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC) processes.This position requires a highly skilled cybersecurity professional with strong technical expertise, project management experience, and an active Secret security clearance.ResponsibilitiesServe as the lead cybersecurity engineer and Information System Security Officer (ISSO) supporting a portfolio of DSCA mission systems across on-premises, cloud, and SaaS environments.Lead RMF and Cybersecurity Risk Management Construct (CSRMC) activities, including system authorization, continuous monitoring, and maintenance of ATO/cATO packages.Manage and maintain eMASS records, authorization artifacts, control implementation evidence, and Plans of Action & Milestones (POA&Ms).Assess and validate NIST 800-53, DoD RMF, DISA STIG, FedRAMP, and DoD Cloud Computing Security Requirements Guide (CC SRG) security controls.Conduct security control assessments and independent validations to evaluate control effectiveness and support risk-informed authorization decisions.Develop Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and authorization recommendation memorandums.Analyze vulnerabilities, security findings, automated scan results, and threat data to assess mission impact and prioritize remediation activities.Review and validate Compliance-as-Code (CaC), Policy-as-Code (PaC), and automated security assessment outputs to ensure accuracy and compliance.Collaborate with system owners, developers, engineers, and program stakeholders to implement security controls, address findings, and reduce enterprise risk.Support DevSecOps and cloud security initiatives by integrating security throughout the system development lifecycle and continuous delivery processes.Monitor security posture across AWS cloud, traditional infrastructure, and SaaS platforms, ensuring compliance with federal and DoD cybersecurity requirements.Brief government leadership and Authorizing Officials on system risk posture, assessment results, remediation strategies, and authorization QualificationsActive Secret Security Clearance.Bachelor's degree in Information Technology, Computer Science, Engineering or a related technical field from an accredited college or university.Minimum 5 years of dedicated Information Assurance, Cybersecurity, or Information Security experience.At least 3 consecutive years of recent experience supporting DoD cybersecurity programs.Experience with Risk Management Framework (RMF) authorization processes.Experience administering and maintaining eMASS authorization packages.Experience conducting security control assessments, validations, and risk assessments.Experience supporting ATO, cATO, and continuous monitoring programs.Experience analyzing vulnerabilities, security findings, and organizational risk posture.Experience supporting cloud security initiatives in AWS, Azure, or other FedRAMP-authorized environments.Strong understanding of NIST 800-53 security controls and DISA STIG requirements.Required CertificationsCandidates must possess:One DoD 8570/8140 IAM Level II or IAT Level ll baseline requirements, such as:CISSPSecurity+ CECISMCASP+ CEPay RangeThe anticipated annual salary range for this position is $150,030 - $185,020. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data, and applicable contract requirements, and may fall outside the posted range. THIS POSITION IS CONTINGENT UPON CONTRACT AWARD ThinkTek LLC is proud to be an Equal Opportunity Employer (EOE), making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. ThinkTek offers medical, dental, and vision insurance to all full-time employees; PTO and a variety of other paid leave options are also available. You can read more about ThinkTek benefits at
08/28/2026
Full time
Job DescriptionJob Description Cybersecurity Engineer (Secret Clearance)Who We Are:ThinkTek LLC is a fast-growing Certified SBA 8(a) and Service-Disabled Veteran-Owned Small Business (SDVOSB) company. We specialize in providing management and technology consulting services to support the business and technology modernization efforts of the Federal Government. ThinkTek was formed with the specific purpose of providing its clients a tailored solution around Program & Project Management, Strategic Planning, and IT OverviewWe are seeking an experienced Cybersecurity Engineer to support a Federal Government customer by providing advanced cybersecurity engineering, assessment, and compliance support. This position serves as a senior cybersecurity practitioner responsible for implementing and assessing security controls, maintaining system authorization packages, conducting security assessments, and supporting risk-based authorization decisions across a portfolio of mission-critical systems.The Cybersecurity Engineer will work across traditional, cloud-native, and SaaS environments, supporting the Risk Management Framework (RMF), Cybersecurity Risk Management Construct (CSRMC), Continuous Authorization to Operate (cATO), and Zero Trust initiatives. The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC) processes.This position requires a highly skilled cybersecurity professional with strong technical expertise, project management experience, and an active Secret security clearance.ResponsibilitiesServe as the lead cybersecurity engineer and Information System Security Officer (ISSO) supporting a portfolio of DSCA mission systems across on-premises, cloud, and SaaS environments.Lead RMF and Cybersecurity Risk Management Construct (CSRMC) activities, including system authorization, continuous monitoring, and maintenance of ATO/cATO packages.Manage and maintain eMASS records, authorization artifacts, control implementation evidence, and Plans of Action & Milestones (POA&Ms).Assess and validate NIST 800-53, DoD RMF, DISA STIG, FedRAMP, and DoD Cloud Computing Security Requirements Guide (CC SRG) security controls.Conduct security control assessments and independent validations to evaluate control effectiveness and support risk-informed authorization decisions.Develop Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and authorization recommendation memorandums.Analyze vulnerabilities, security findings, automated scan results, and threat data to assess mission impact and prioritize remediation activities.Review and validate Compliance-as-Code (CaC), Policy-as-Code (PaC), and automated security assessment outputs to ensure accuracy and compliance.Collaborate with system owners, developers, engineers, and program stakeholders to implement security controls, address findings, and reduce enterprise risk.Support DevSecOps and cloud security initiatives by integrating security throughout the system development lifecycle and continuous delivery processes.Monitor security posture across AWS cloud, traditional infrastructure, and SaaS platforms, ensuring compliance with federal and DoD cybersecurity requirements.Brief government leadership and Authorizing Officials on system risk posture, assessment results, remediation strategies, and authorization QualificationsActive Secret Security Clearance.Bachelor's degree in Information Technology, Computer Science, Engineering or a related technical field from an accredited college or university.Minimum 5 years of dedicated Information Assurance, Cybersecurity, or Information Security experience.At least 3 consecutive years of recent experience supporting DoD cybersecurity programs.Experience with Risk Management Framework (RMF) authorization processes.Experience administering and maintaining eMASS authorization packages.Experience conducting security control assessments, validations, and risk assessments.Experience supporting ATO, cATO, and continuous monitoring programs.Experience analyzing vulnerabilities, security findings, and organizational risk posture.Experience supporting cloud security initiatives in AWS, Azure, or other FedRAMP-authorized environments.Strong understanding of NIST 800-53 security controls and DISA STIG requirements.Required CertificationsCandidates must possess:One DoD 8570/8140 IAM Level II or IAT Level ll baseline requirements, such as:CISSPSecurity+ CECISMCASP+ CEPay RangeThe anticipated annual salary range for this position is $150,030 - $185,020. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data, and applicable contract requirements, and may fall outside the posted range. THIS POSITION IS CONTINGENT UPON CONTRACT AWARD ThinkTek LLC is proud to be an Equal Opportunity Employer (EOE), making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. ThinkTek offers medical, dental, and vision insurance to all full-time employees; PTO and a variety of other paid leave options are also available. You can read more about ThinkTek benefits at
DevSecOps Engineer (Infra/GitOps)
Zaden Technologies, Inc. Huntsville, Alabama
Job Description Job Description About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PIae7b0d3c506c-5262
08/28/2026
Full time
Job Description Job Description About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PIae7b0d3c506c-5262
DevSecOps Engineer (Infra/GitOps)
Zaden Technologies, Inc. Huntsville, Alabama
Job Description Job Description About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PIae7b0d3c506c-5262
08/28/2026
Full time
Job Description Job Description About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PIae7b0d3c506c-5262
Cybersecurity Engineer
ASPIS LLC Kansas City, Missouri
Job Description Job Description Job Description Aspis is expanding its cybersecurity team and seeking a hands-on Cybersecurity Engineer to build the security capability behind a large Federal civilian cloud platform operations and maintenance program. This is a building role rather than a monitoring role. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, legacy and mainframe-connected applications, and enterprise geospatial platforms supporting hundreds of business applications. You will write and maintain the automation, pipeline security stages, hardened baselines, detection content, and integrations that make security continuous instead of manual. Responsibilities align to the NIST NICE Workforce Framework for Cybersecurity (NIST SP 800-181r1). You will work alongside cloud engineers, DevSecOps engineers, and our compliance and authorization staff, with real ownership on a small, senior team. This is a full-time position. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to client sites as needed. Consistent with Aspis' telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice. Responsibilities Design, code, test, and maintain security automation - scripts, modules, services, and integrations - that replace manual security work. Build and maintain infrastructure-as-code modules that deliver hardened, compliant cloud resources by default. Build and maintain security stages in CI/CD pipelines, including static analysis, dependency and container image scanning, secrets detection, and policy-as-code gates. Engineer hardened operating system, container, and cloud service baselines, plus the automation that applies and enforces them. Build identity, access, encryption, key management, and logging capability into the platform, and engineer secure interfaces between on-premises systems and cloud services. Build and maintain detection content, correlation rules, and alerting as code, with version control and testing. Automate vulnerability scanning coverage, finding enrichment, deduplication, ticket creation, and aging escalation so remediation service levels are met without manual tracking. Build response automation and playbooks-as-code for containment, isolation, evidence capture, and recovery, and participate in the on-call rotation. Convert incident findings and root cause analysis into durable engineering fixes rather than repeat manual response. Maintain design documentation, run books, reference architectures, and code documentation, and provide control implementation evidence to compliance and authorization staff. Mentor junior engineers, perform code review, and support knowledge transfer to client staff. Other duties as assigned. Qualifications Demonstrated ability to build and maintain production code or automation in at least one language such as Python, Bash, PowerShell, or Go, with source control, testing, and peer review discipline. Hands-on cloud security engineering experience in AWS, with working knowledge of Azure, appropriate to experience level. Experience building CI/CD pipeline security stages using GitLab or comparable tooling, and infrastructure-as-code proficiency such as Terraform or CloudFormation. Working knowledge of hardening standards and of security frameworks relevant to Federal work (NIST SP 800-53, FISMA, FedRAMP), appropriate to experience level. Experience building or tuning vulnerability scanning coverage, detection content, or log pipelines. Strong analytical skills and attention to detail. Clear, professional written and verbal communication, including design and operational documentation. Ability to manage multiple assignments and deadlines with limited day-to-day oversight. Discretion in handling sensitive client, system, and company information. Ability to obtain and maintain a Federal Public Trust background investigation; must be authorized to work in the United States without sponsorship. Availability during client core hours with on-call and after-hours support as needed for deployments and incidents. Requirements Skills: Security automation and tooling development, secure CI/CD pipeline engineering, infrastructure-as-code, platform hardening, detection engineering, and cloud security engineering. Demonstrated coding or automation ability with source control and peer review discipline. Strong verbal and written communication skills. Background Check: Public Trust background check required. Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree. Experience Required: Varies by level (Level 1: 0-2 years; Level 2: 2-5 years; Level 3: 5-10 years; Level 4: 10+ years) of relevant cybersecurity engineering experience. Industry Certifications: Tiered by level - CompTIA Security+ (or equivalent) preferred at entry and required from Level II; advanced cloud and engineering certifications (e.g., AWS Certified Security - Specialty, CCSP, GIAC GCSA, CISSP) expected at senior levels. Must pass reference check and background check. Compensation details: 00 Yearly Salary PIc114a724e92d-6661
08/27/2026
Full time
Job Description Job Description Job Description Aspis is expanding its cybersecurity team and seeking a hands-on Cybersecurity Engineer to build the security capability behind a large Federal civilian cloud platform operations and maintenance program. This is a building role rather than a monitoring role. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, legacy and mainframe-connected applications, and enterprise geospatial platforms supporting hundreds of business applications. You will write and maintain the automation, pipeline security stages, hardened baselines, detection content, and integrations that make security continuous instead of manual. Responsibilities align to the NIST NICE Workforce Framework for Cybersecurity (NIST SP 800-181r1). You will work alongside cloud engineers, DevSecOps engineers, and our compliance and authorization staff, with real ownership on a small, senior team. This is a full-time position. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to client sites as needed. Consistent with Aspis' telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice. Responsibilities Design, code, test, and maintain security automation - scripts, modules, services, and integrations - that replace manual security work. Build and maintain infrastructure-as-code modules that deliver hardened, compliant cloud resources by default. Build and maintain security stages in CI/CD pipelines, including static analysis, dependency and container image scanning, secrets detection, and policy-as-code gates. Engineer hardened operating system, container, and cloud service baselines, plus the automation that applies and enforces them. Build identity, access, encryption, key management, and logging capability into the platform, and engineer secure interfaces between on-premises systems and cloud services. Build and maintain detection content, correlation rules, and alerting as code, with version control and testing. Automate vulnerability scanning coverage, finding enrichment, deduplication, ticket creation, and aging escalation so remediation service levels are met without manual tracking. Build response automation and playbooks-as-code for containment, isolation, evidence capture, and recovery, and participate in the on-call rotation. Convert incident findings and root cause analysis into durable engineering fixes rather than repeat manual response. Maintain design documentation, run books, reference architectures, and code documentation, and provide control implementation evidence to compliance and authorization staff. Mentor junior engineers, perform code review, and support knowledge transfer to client staff. Other duties as assigned. Qualifications Demonstrated ability to build and maintain production code or automation in at least one language such as Python, Bash, PowerShell, or Go, with source control, testing, and peer review discipline. Hands-on cloud security engineering experience in AWS, with working knowledge of Azure, appropriate to experience level. Experience building CI/CD pipeline security stages using GitLab or comparable tooling, and infrastructure-as-code proficiency such as Terraform or CloudFormation. Working knowledge of hardening standards and of security frameworks relevant to Federal work (NIST SP 800-53, FISMA, FedRAMP), appropriate to experience level. Experience building or tuning vulnerability scanning coverage, detection content, or log pipelines. Strong analytical skills and attention to detail. Clear, professional written and verbal communication, including design and operational documentation. Ability to manage multiple assignments and deadlines with limited day-to-day oversight. Discretion in handling sensitive client, system, and company information. Ability to obtain and maintain a Federal Public Trust background investigation; must be authorized to work in the United States without sponsorship. Availability during client core hours with on-call and after-hours support as needed for deployments and incidents. Requirements Skills: Security automation and tooling development, secure CI/CD pipeline engineering, infrastructure-as-code, platform hardening, detection engineering, and cloud security engineering. Demonstrated coding or automation ability with source control and peer review discipline. Strong verbal and written communication skills. Background Check: Public Trust background check required. Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree. Experience Required: Varies by level (Level 1: 0-2 years; Level 2: 2-5 years; Level 3: 5-10 years; Level 4: 10+ years) of relevant cybersecurity engineering experience. Industry Certifications: Tiered by level - CompTIA Security+ (or equivalent) preferred at entry and required from Level II; advanced cloud and engineering certifications (e.g., AWS Certified Security - Specialty, CCSP, GIAC GCSA, CISSP) expected at senior levels. Must pass reference check and background check. Compensation details: 00 Yearly Salary PIc114a724e92d-6661
Cybersecurity Engineer
ASPIS LLC Kansas City, Missouri
Job Description Job Description Job Description Aspis is expanding its cybersecurity team and seeking a hands-on Cybersecurity Engineer to build the security capability behind a large Federal civilian cloud platform operations and maintenance program. This is a building role rather than a monitoring role. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, legacy and mainframe-connected applications, and enterprise geospatial platforms supporting hundreds of business applications. You will write and maintain the automation, pipeline security stages, hardened baselines, detection content, and integrations that make security continuous instead of manual. Responsibilities align to the NIST NICE Workforce Framework for Cybersecurity (NIST SP 800-181r1). You will work alongside cloud engineers, DevSecOps engineers, and our compliance and authorization staff, with real ownership on a small, senior team. This is a full-time position. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to client sites as needed. Consistent with Aspis' telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice. Responsibilities Design, code, test, and maintain security automation - scripts, modules, services, and integrations - that replace manual security work. Build and maintain infrastructure-as-code modules that deliver hardened, compliant cloud resources by default. Build and maintain security stages in CI/CD pipelines, including static analysis, dependency and container image scanning, secrets detection, and policy-as-code gates. Engineer hardened operating system, container, and cloud service baselines, plus the automation that applies and enforces them. Build identity, access, encryption, key management, and logging capability into the platform, and engineer secure interfaces between on-premises systems and cloud services. Build and maintain detection content, correlation rules, and alerting as code, with version control and testing. Automate vulnerability scanning coverage, finding enrichment, deduplication, ticket creation, and aging escalation so remediation service levels are met without manual tracking. Build response automation and playbooks-as-code for containment, isolation, evidence capture, and recovery, and participate in the on-call rotation. Convert incident findings and root cause analysis into durable engineering fixes rather than repeat manual response. Maintain design documentation, run books, reference architectures, and code documentation, and provide control implementation evidence to compliance and authorization staff. Mentor junior engineers, perform code review, and support knowledge transfer to client staff. Other duties as assigned. Qualifications Demonstrated ability to build and maintain production code or automation in at least one language such as Python, Bash, PowerShell, or Go, with source control, testing, and peer review discipline. Hands-on cloud security engineering experience in AWS, with working knowledge of Azure, appropriate to experience level. Experience building CI/CD pipeline security stages using GitLab or comparable tooling, and infrastructure-as-code proficiency such as Terraform or CloudFormation. Working knowledge of hardening standards and of security frameworks relevant to Federal work (NIST SP 800-53, FISMA, FedRAMP), appropriate to experience level. Experience building or tuning vulnerability scanning coverage, detection content, or log pipelines. Strong analytical skills and attention to detail. Clear, professional written and verbal communication, including design and operational documentation. Ability to manage multiple assignments and deadlines with limited day-to-day oversight. Discretion in handling sensitive client, system, and company information. Ability to obtain and maintain a Federal Public Trust background investigation; must be authorized to work in the United States without sponsorship. Availability during client core hours with on-call and after-hours support as needed for deployments and incidents. Requirements Skills: Security automation and tooling development, secure CI/CD pipeline engineering, infrastructure-as-code, platform hardening, detection engineering, and cloud security engineering. Demonstrated coding or automation ability with source control and peer review discipline. Strong verbal and written communication skills. Background Check: Public Trust background check required. Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree. Experience Required: Varies by level (Level 1: 0-2 years; Level 2: 2-5 years; Level 3: 5-10 years; Level 4: 10+ years) of relevant cybersecurity engineering experience. Industry Certifications: Tiered by level - CompTIA Security+ (or equivalent) preferred at entry and required from Level II; advanced cloud and engineering certifications (e.g., AWS Certified Security - Specialty, CCSP, GIAC GCSA, CISSP) expected at senior levels. Must pass reference check and background check. Compensation details: 00 Yearly Salary PIc114a724e92d-6661
08/27/2026
Full time
Job Description Job Description Job Description Aspis is expanding its cybersecurity team and seeking a hands-on Cybersecurity Engineer to build the security capability behind a large Federal civilian cloud platform operations and maintenance program. This is a building role rather than a monitoring role. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, legacy and mainframe-connected applications, and enterprise geospatial platforms supporting hundreds of business applications. You will write and maintain the automation, pipeline security stages, hardened baselines, detection content, and integrations that make security continuous instead of manual. Responsibilities align to the NIST NICE Workforce Framework for Cybersecurity (NIST SP 800-181r1). You will work alongside cloud engineers, DevSecOps engineers, and our compliance and authorization staff, with real ownership on a small, senior team. This is a full-time position. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to client sites as needed. Consistent with Aspis' telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice. Responsibilities Design, code, test, and maintain security automation - scripts, modules, services, and integrations - that replace manual security work. Build and maintain infrastructure-as-code modules that deliver hardened, compliant cloud resources by default. Build and maintain security stages in CI/CD pipelines, including static analysis, dependency and container image scanning, secrets detection, and policy-as-code gates. Engineer hardened operating system, container, and cloud service baselines, plus the automation that applies and enforces them. Build identity, access, encryption, key management, and logging capability into the platform, and engineer secure interfaces between on-premises systems and cloud services. Build and maintain detection content, correlation rules, and alerting as code, with version control and testing. Automate vulnerability scanning coverage, finding enrichment, deduplication, ticket creation, and aging escalation so remediation service levels are met without manual tracking. Build response automation and playbooks-as-code for containment, isolation, evidence capture, and recovery, and participate in the on-call rotation. Convert incident findings and root cause analysis into durable engineering fixes rather than repeat manual response. Maintain design documentation, run books, reference architectures, and code documentation, and provide control implementation evidence to compliance and authorization staff. Mentor junior engineers, perform code review, and support knowledge transfer to client staff. Other duties as assigned. Qualifications Demonstrated ability to build and maintain production code or automation in at least one language such as Python, Bash, PowerShell, or Go, with source control, testing, and peer review discipline. Hands-on cloud security engineering experience in AWS, with working knowledge of Azure, appropriate to experience level. Experience building CI/CD pipeline security stages using GitLab or comparable tooling, and infrastructure-as-code proficiency such as Terraform or CloudFormation. Working knowledge of hardening standards and of security frameworks relevant to Federal work (NIST SP 800-53, FISMA, FedRAMP), appropriate to experience level. Experience building or tuning vulnerability scanning coverage, detection content, or log pipelines. Strong analytical skills and attention to detail. Clear, professional written and verbal communication, including design and operational documentation. Ability to manage multiple assignments and deadlines with limited day-to-day oversight. Discretion in handling sensitive client, system, and company information. Ability to obtain and maintain a Federal Public Trust background investigation; must be authorized to work in the United States without sponsorship. Availability during client core hours with on-call and after-hours support as needed for deployments and incidents. Requirements Skills: Security automation and tooling development, secure CI/CD pipeline engineering, infrastructure-as-code, platform hardening, detection engineering, and cloud security engineering. Demonstrated coding or automation ability with source control and peer review discipline. Strong verbal and written communication skills. Background Check: Public Trust background check required. Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree. Experience Required: Varies by level (Level 1: 0-2 years; Level 2: 2-5 years; Level 3: 5-10 years; Level 4: 10+ years) of relevant cybersecurity engineering experience. Industry Certifications: Tiered by level - CompTIA Security+ (or equivalent) preferred at entry and required from Level II; advanced cloud and engineering certifications (e.g., AWS Certified Security - Specialty, CCSP, GIAC GCSA, CISSP) expected at senior levels. Must pass reference check and background check. Compensation details: 00 Yearly Salary PIc114a724e92d-6661
Chief Engineer, AI Developer Experience & Platform
Kaiser Permanente Greensboro, North Carolina
Please note, this position is designated as flexible, which means the selected candidate may be required to report to the assigned office in Greensboro, NC at least part of the time each week. Technical Summary: Senior individual-contributor role within Kaiser Permanente's Developer Experience / DevSecOps Platform team, serving as technical authority and strategist for enterprise AI developer enablement. Leads through expertise and influence (non-people-manager), owning the GitHub platform ecosystem and AI-assisted developer tooling to deliver faster, safer, and more productive software development. Defines enterprise strategy for AI-assisted tools-GitHub Copilot, Claude Code, Cursor, and emerging solutions-in partnership with KP's AI Council and Enterprise Architecture. Designs and executes hands-on proofs of concept evaluating technical fit, security posture, and developer impact, collaborating with Information Security, Privacy, and Legal on risk and compliance. Delivers actionable adoption or retirement recommendations and operationalizes approved platforms under established standards. Owns GitHub Enterprise and AI tool platforms, defining standards, best practices, and guardrails enabling scalable, secure DevSecOps and AI-assisted workflows. Establishes governance, usage policies, lifecycle management, cost and chargeback models, and budget transparency, while managing vendor relationships, contracts, renewals, and roadmap alignment. Acts as developer advocate-leading training, enablement, documentation, and communities of practice, and representing developer needs to stakeholders. Defines and tracks productivity and quality metrics, measuring AI tooling impact on delivery speed, code quality, and ROI, communicating outcomes to senior leadership. Job Summary: This senior level employee is primarily responsible for influencing and leveraging the technical direction of integrated business and/or enterprise application solutions and for serving as an expert for technical teams. This employee is accountable for ensuring software solutions are managed with full adherence to industry best practices. Essential Responsibilities: Drives the execution of multiple work streams by identifying customer and operational needs; developing and updating new procedures and policies; gaining cross-functional support for objectives and priorities; translating business strategy into actionable business requirements; obtaining and distributing resources; setting standards and measuring progress; removing obstacles that impact performance; guiding performance and developing contingency plans accordingly; solving highly complex issues; and influencing the completion of project tasks by others. Practices self-leadership and promotes learning in others by soliciting and acting on performance feedback; building collaborative, cross-functional relationships; communicating information and providing advice to drive projects forward; adapting to competing demands and new responsibilities; providing feedback to others, including upward feedback to leadership; influencing, mentoring, and coaching team members; fostering open dialogue amongst team members; evaluating and responding to the strengths and weaknesses of self and unit members; and adapting to and learning from change, difficulties, and feedback. Provides insight into recommendations for complex technical solutions that meet design and functional needs. Serves as an expert for innovative technical solutions that meet design and functional needs. Collaborates with architects and/or software consultants to ensure functional specifications are converted into flexible, scalable, and maintainable solution designs. Provides technical expertise for the development, configuration, or modification of integrated business and/or enterprise application solutions within various computing environments by providing insight, guidance, and an escalation point for the design and coding of component-based applications. Translates business requirements and functional specifications into physical program designs, code modules, stable application systems, and software solutions by partnering with Business Analysts and other team members to understand business needs and functional specifications. Leverages networks to drive collaboration between technical teams, architects, and/or software consultants, and ensure functional specifications are converted into flexible, scalable, and maintainable solution designs. Builds and maintains trusting relationships with internal customers, third party vendors, and senior management to ensure the alignment, buy-in, and support of diverse project stakeholders. Oversees the review and implementation of recommendations of technical solutions across multiple functions. Takes accountability for ensuring specific interfaces, methods, parameters, procedures, and functions support technical solutions and are aligned with architectural designs. Derives an overall strategy of data management, within an established Information Architecture, that supports the business model. Identifies information structures and detail to enable the development and secure operation of new information services. Takes overall responsibility for planning effective information storage, sharing, and publishing within the organization. Sets strategies for effective use of database technology taking account of the complex interrelations between hardware/software. Provides specialist expertise in the development, use, or operation of database management system tools and facilities. Provides expert knowledge in the selection, provision, and use of database architectures, software, and facilities, typically taking responsibility for a team of technical staff. Facilitates and serves as a technical expert for project teams throughout the release schedule of business and enterprise software solutions. Provides expertise and guidance to team members for systems incident responses for complex issues. Fosters and leverages partnerships with IT teams and vendors to ensure written code adheres to company architectural standards, design patterns, and technical specification. Maintains and enhances technical expertise and knowledge of industry trends by attending participating conferences, and developing a network with other IT industry experts. Leads consultation efforts to help ensure new and existing software solutions are developed with insight into industry best practices, strategies, and architectures. Provides expert technical advice and recommendations to others within the organization on matters related to software engineering, including market trends, and new programs and applications. Reviews and verifies resource estimates for complex technical design, coding, and testing efforts. Identifies specific interfaces, methods, parameters, procedures, and functions, as required, to support technical solutions, serving as an escalation point for complex or unresolved issues related to requirements translation. As part of the IT Engineering job family, this position is responsible for leveraging DEVOPS, and both Waterfall and Agile practices, to design, develop, and deliver resilient, secure, multi-channel, high-volume, high-transaction, on/off-premise, cloud-based solutions. Minimum Qualifications: Minimum six (6) years experience working on project(s) involving the implementation of solutions applying development life cycles (e.g., SDLC). Minimum four (4) years in a technical leadership role with or without direct reports. Bachelors degree in Computer Science, CIS, or related field and Minimum ten (10) years experience in software development or a related field. Additional equivalent work experience may be substituted for the degree requirement.
08/25/2026
Full time
Please note, this position is designated as flexible, which means the selected candidate may be required to report to the assigned office in Greensboro, NC at least part of the time each week. Technical Summary: Senior individual-contributor role within Kaiser Permanente's Developer Experience / DevSecOps Platform team, serving as technical authority and strategist for enterprise AI developer enablement. Leads through expertise and influence (non-people-manager), owning the GitHub platform ecosystem and AI-assisted developer tooling to deliver faster, safer, and more productive software development. Defines enterprise strategy for AI-assisted tools-GitHub Copilot, Claude Code, Cursor, and emerging solutions-in partnership with KP's AI Council and Enterprise Architecture. Designs and executes hands-on proofs of concept evaluating technical fit, security posture, and developer impact, collaborating with Information Security, Privacy, and Legal on risk and compliance. Delivers actionable adoption or retirement recommendations and operationalizes approved platforms under established standards. Owns GitHub Enterprise and AI tool platforms, defining standards, best practices, and guardrails enabling scalable, secure DevSecOps and AI-assisted workflows. Establishes governance, usage policies, lifecycle management, cost and chargeback models, and budget transparency, while managing vendor relationships, contracts, renewals, and roadmap alignment. Acts as developer advocate-leading training, enablement, documentation, and communities of practice, and representing developer needs to stakeholders. Defines and tracks productivity and quality metrics, measuring AI tooling impact on delivery speed, code quality, and ROI, communicating outcomes to senior leadership. Job Summary: This senior level employee is primarily responsible for influencing and leveraging the technical direction of integrated business and/or enterprise application solutions and for serving as an expert for technical teams. This employee is accountable for ensuring software solutions are managed with full adherence to industry best practices. Essential Responsibilities: Drives the execution of multiple work streams by identifying customer and operational needs; developing and updating new procedures and policies; gaining cross-functional support for objectives and priorities; translating business strategy into actionable business requirements; obtaining and distributing resources; setting standards and measuring progress; removing obstacles that impact performance; guiding performance and developing contingency plans accordingly; solving highly complex issues; and influencing the completion of project tasks by others. Practices self-leadership and promotes learning in others by soliciting and acting on performance feedback; building collaborative, cross-functional relationships; communicating information and providing advice to drive projects forward; adapting to competing demands and new responsibilities; providing feedback to others, including upward feedback to leadership; influencing, mentoring, and coaching team members; fostering open dialogue amongst team members; evaluating and responding to the strengths and weaknesses of self and unit members; and adapting to and learning from change, difficulties, and feedback. Provides insight into recommendations for complex technical solutions that meet design and functional needs. Serves as an expert for innovative technical solutions that meet design and functional needs. Collaborates with architects and/or software consultants to ensure functional specifications are converted into flexible, scalable, and maintainable solution designs. Provides technical expertise for the development, configuration, or modification of integrated business and/or enterprise application solutions within various computing environments by providing insight, guidance, and an escalation point for the design and coding of component-based applications. Translates business requirements and functional specifications into physical program designs, code modules, stable application systems, and software solutions by partnering with Business Analysts and other team members to understand business needs and functional specifications. Leverages networks to drive collaboration between technical teams, architects, and/or software consultants, and ensure functional specifications are converted into flexible, scalable, and maintainable solution designs. Builds and maintains trusting relationships with internal customers, third party vendors, and senior management to ensure the alignment, buy-in, and support of diverse project stakeholders. Oversees the review and implementation of recommendations of technical solutions across multiple functions. Takes accountability for ensuring specific interfaces, methods, parameters, procedures, and functions support technical solutions and are aligned with architectural designs. Derives an overall strategy of data management, within an established Information Architecture, that supports the business model. Identifies information structures and detail to enable the development and secure operation of new information services. Takes overall responsibility for planning effective information storage, sharing, and publishing within the organization. Sets strategies for effective use of database technology taking account of the complex interrelations between hardware/software. Provides specialist expertise in the development, use, or operation of database management system tools and facilities. Provides expert knowledge in the selection, provision, and use of database architectures, software, and facilities, typically taking responsibility for a team of technical staff. Facilitates and serves as a technical expert for project teams throughout the release schedule of business and enterprise software solutions. Provides expertise and guidance to team members for systems incident responses for complex issues. Fosters and leverages partnerships with IT teams and vendors to ensure written code adheres to company architectural standards, design patterns, and technical specification. Maintains and enhances technical expertise and knowledge of industry trends by attending participating conferences, and developing a network with other IT industry experts. Leads consultation efforts to help ensure new and existing software solutions are developed with insight into industry best practices, strategies, and architectures. Provides expert technical advice and recommendations to others within the organization on matters related to software engineering, including market trends, and new programs and applications. Reviews and verifies resource estimates for complex technical design, coding, and testing efforts. Identifies specific interfaces, methods, parameters, procedures, and functions, as required, to support technical solutions, serving as an escalation point for complex or unresolved issues related to requirements translation. As part of the IT Engineering job family, this position is responsible for leveraging DEVOPS, and both Waterfall and Agile practices, to design, develop, and deliver resilient, secure, multi-channel, high-volume, high-transaction, on/off-premise, cloud-based solutions. Minimum Qualifications: Minimum six (6) years experience working on project(s) involving the implementation of solutions applying development life cycles (e.g., SDLC). Minimum four (4) years in a technical leadership role with or without direct reports. Bachelors degree in Computer Science, CIS, or related field and Minimum ten (10) years experience in software development or a related field. Additional equivalent work experience may be substituted for the degree requirement.
Cybersecurity Consultant IV, Application Security (Greensboro, NC)
Kaiser Permanente Greensboro, North Carolina
Tech Summary The IS Consultant IV, Application Security position is a senior hands-on technical role responsible for leading complex application security assessments and advancing secure software development practices across the organization. The consultant will conduct secure code reviews, static and dynamic application security testing, open source component analysis, API and mobile application security assessments, threat modeling, security architecture reviews, vulnerability validation, and remediation guidance. The ideal candidate has advanced software development and application security experience using Java, Python, JavaScript, .NET, Swift, or similar technologies. The candidate should have practical experience with application security testing solutions, penetration testing tools such as Burp Suite or OWASP ZAP, and integrating security controls into CI/CD pipelines. This role requires the ability to independently lead complex assessments, define secure development standards and guardrails, evaluate third party applications, and influence architecture and engineering decisions. The consultant will collaborate with developers, architects, product owners, vendors, security leaders, and executive stakeholders to communicate technical risk clearly and provide actionable remediation recommendations. Experience with cloud native applications, APIs, mobile applications, AI enabled applications, DevSecOps automation, and healthcare or other regulated environments is preferred. Job Summary: In addition to responsibilities listed below, this position is responsible for reviewing application source code for potential security vulnerabilities by performing manual and automated security testing on applications in a running state (DAST); working with DevOps teams to integrate application security services; training DevOps personnel and developers to use application security tools; working one-on-one with developers to help them understand security vulnerabilities at hand and to identify/suggest remediation plans; and recommending application security training paths. This also includes responsibility for protecting applications in production by enrolling them for continuous assessment of existing and emerging threats, evaluating web application firewalls; tuning WAF rules; reviewing alerts; and identifying issues as appropriate. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Effectively communicates investigative findings to non-technical audiences. Collaborates with technology risk teams and business stakeholders to respond to and remediate identified issues, and determine the best approach for improving security posture. Provides recommendations to management and business stakeholders on how to remediate issues identified through security testing processes. Identifies the impact of security test plans on upstream and downstream solution components. Supports information sharing and integration procedures across cyber security through the exchange of threat intelligence and cyber security vulnerability assessment data. Contributes to cyber security intellectual capital by making process or procedure improvements, conducting brown bag training sessions, and creating new training documents. Follows established processes to ensure KPI goals are obtained and performance metrics are tracked on an ongoing basis. Recommends business line or business technology team security process improvements which align with sustainable best practices, and the strategic and tactical goals of the business. Supports continuous process improvement by participating in the development, implementation, and maintenance of standardized security tools, templates, and processes across multiple business domains. Performs complex security test data analysis in support of security vulnerability assessment processes, including root cause analysis. Serves as an escalation point on issues, dependencies, and risks related to security testing. Executes the vulnerability assessment and penetration testing plan, methodologies, and standard processes for moderately to highly complex technology initiatives across multiple IT domains by analyzing business and technology requirements. Researches and stays abreast of industry trends, emerging threats, best practices, and cutting edge techniques to creatively discover and exploit vulnerabilities, and recommend security solutions for technology systems. Provides insight and consultation on the development of testing scope and approach, and collaborates with cross-functional IT and business stakeholders to review the overall testing approach. Validates security test scenarios across various SDLC phases (e.g., development, reproduction, production) for low- to moderately-complex projects. Generates scheduled reports (e.g., status updates, risk assessment reports, remediation reports) and provides regular security metrics to IT teams and management as appropriate. Minimum Qualifications: Minimum three (3) years software or application development experience. Minimum one (1) year experience in application security (e.g., source code analysis, dynamic analysis, etc.). Bachelors degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and Minimum six (6) years experience in IT or a related field, including Minimum two (2) years in information security, network engineering, or application development. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements:
08/25/2026
Full time
Tech Summary The IS Consultant IV, Application Security position is a senior hands-on technical role responsible for leading complex application security assessments and advancing secure software development practices across the organization. The consultant will conduct secure code reviews, static and dynamic application security testing, open source component analysis, API and mobile application security assessments, threat modeling, security architecture reviews, vulnerability validation, and remediation guidance. The ideal candidate has advanced software development and application security experience using Java, Python, JavaScript, .NET, Swift, or similar technologies. The candidate should have practical experience with application security testing solutions, penetration testing tools such as Burp Suite or OWASP ZAP, and integrating security controls into CI/CD pipelines. This role requires the ability to independently lead complex assessments, define secure development standards and guardrails, evaluate third party applications, and influence architecture and engineering decisions. The consultant will collaborate with developers, architects, product owners, vendors, security leaders, and executive stakeholders to communicate technical risk clearly and provide actionable remediation recommendations. Experience with cloud native applications, APIs, mobile applications, AI enabled applications, DevSecOps automation, and healthcare or other regulated environments is preferred. Job Summary: In addition to responsibilities listed below, this position is responsible for reviewing application source code for potential security vulnerabilities by performing manual and automated security testing on applications in a running state (DAST); working with DevOps teams to integrate application security services; training DevOps personnel and developers to use application security tools; working one-on-one with developers to help them understand security vulnerabilities at hand and to identify/suggest remediation plans; and recommending application security training paths. This also includes responsibility for protecting applications in production by enrolling them for continuous assessment of existing and emerging threats, evaluating web application firewalls; tuning WAF rules; reviewing alerts; and identifying issues as appropriate. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Effectively communicates investigative findings to non-technical audiences. Collaborates with technology risk teams and business stakeholders to respond to and remediate identified issues, and determine the best approach for improving security posture. Provides recommendations to management and business stakeholders on how to remediate issues identified through security testing processes. Identifies the impact of security test plans on upstream and downstream solution components. Supports information sharing and integration procedures across cyber security through the exchange of threat intelligence and cyber security vulnerability assessment data. Contributes to cyber security intellectual capital by making process or procedure improvements, conducting brown bag training sessions, and creating new training documents. Follows established processes to ensure KPI goals are obtained and performance metrics are tracked on an ongoing basis. Recommends business line or business technology team security process improvements which align with sustainable best practices, and the strategic and tactical goals of the business. Supports continuous process improvement by participating in the development, implementation, and maintenance of standardized security tools, templates, and processes across multiple business domains. Performs complex security test data analysis in support of security vulnerability assessment processes, including root cause analysis. Serves as an escalation point on issues, dependencies, and risks related to security testing. Executes the vulnerability assessment and penetration testing plan, methodologies, and standard processes for moderately to highly complex technology initiatives across multiple IT domains by analyzing business and technology requirements. Researches and stays abreast of industry trends, emerging threats, best practices, and cutting edge techniques to creatively discover and exploit vulnerabilities, and recommend security solutions for technology systems. Provides insight and consultation on the development of testing scope and approach, and collaborates with cross-functional IT and business stakeholders to review the overall testing approach. Validates security test scenarios across various SDLC phases (e.g., development, reproduction, production) for low- to moderately-complex projects. Generates scheduled reports (e.g., status updates, risk assessment reports, remediation reports) and provides regular security metrics to IT teams and management as appropriate. Minimum Qualifications: Minimum three (3) years software or application development experience. Minimum one (1) year experience in application security (e.g., source code analysis, dynamic analysis, etc.). Bachelors degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and Minimum six (6) years experience in IT or a related field, including Minimum two (2) years in information security, network engineering, or application development. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements:
ITSM Consultant V (Senior Agile Scrum - DevOps)
Kaiser Permanente Greensboro, North Carolina
Please note, this position is designated as flexible, which means the selected candidate may be required to report to the assigned office in Greensboro, NC up to 3 days per week. Technical Summary: This senior level IT Consultant serves within the DevSecOps Platform and Automation Services organization, with a primary focus on providing project and program level oversight of our key strategic initiatives - specifically our Dev2030 and Internal Developer Portal activities. This role blends SAFe Agile Scrum Master facilitation, project/program management across technical and financial logistical areas, and business management activities. This individual will be required to work closely with engineering, platform, security, vendor partners, and developer experience teams to translate standards, developer needs, and business objectives into key artifacts, well prioritized features, and user stories. As a key participant within an agile delivery model, you will take direction from platform architects and senior stakeholders/leaders while providing clear product, program, and project direction to delivery teams. You will champion developer productivity, self service capabilities, and standardized golden paths to accelerate software delivery across the enterprise. Job Summary: This senior level employee is primarily responsible for leading the ITSM process implementation, evaluating risk matters within IT, and ensuring contingency procedures are followed and maintained. Essential Responsibilities: Conducts or oversees business-specific projects by applying deep expertise in subject area; promoting adherence to all procedures and policies; developing work plans to meet business priorities and deadlines; determining and carrying out processes and methodologies; coordinating and delegating resources to accomplish organizational goals; partnering internally and externally to make effective business decisions; solving complex problems; escalating issues or risks, as appropriate; monitoring progress and results; recognizing and capitalizing on improvement opportunities; evaluating recommendations made; and influencing the completion of project tasks by others. Practices self-leadership and promotes learning in others by building relationships with cross-functional stakeholders; communicating information and providing advice to drive projects forward; influencing team members within assigned unit; listening and responding to, seeking, and addressing performance feedback; adapting to competing demands and new responsibilities; providing feedback to others, including upward feedback to leadership and mentoring junior team members; creating and executing plans to capitalize on strengths and improve opportunity areas; and adapting to and learning from change, difficulties, and feedback. Drives ITSM process and/or service implementation for designated ITSM initiatives by leading or directing team members in the documentation of process and/or service requirements and acceptance criteria from process owners and key stakeholders; and guiding and influencing leadership in the development of the ITSM strategy. Partners with leadership to help define goals, objectives, deliverables, and guardrails within the governance framework to ensure the development and implementation of efficient, effective, measurable, and sustainable processes and/or services. Ensures accuracy and completeness of release notes, training materials, and documentation within appropriate repositories. Drives the execution of ITSM roadmaps to ensure that processes and/or services are aligned with stakeholder needs. Partners with IT functions and process/service users to lead the development and implementation of performance metrics and measurement tools. Leads ITSM process and/or service improvement efforts for designated initiatives by cultivating strong collaborative working relationships with cross-functional teams on process improvement projects. Evaluates business needs, organizational characteristics, and industry best-practices to identify gaps or deficiencies in new and existing processes, services, and service portfolios and makes recommendations for improvements or enhancements as appropriate. Develops, documents, maintains, and audits ITSM processes and procedures. Makes decisions regarding process and/or service improvements and third-party tools for implementation. Works with cross-functional stakeholders (for example, IT and business partners) to create alignment, synergy, and application of standardized processes and/or services and procedures. Ensures appropriate training is delivered to users (e.g., end-users, service/process delivery teams) to drive proper process and/or service execution. Designs and oversees the validation of performance metrics against success criteria to ensure effective control of expected deliverables. Provides recommendations and makes decisions for mitigating process and/or service performance deficiencies. Investigates complex, highly visible performance deviations to drive adherence with defined ITSM policies and procedures. Advocates and drives compliance with ITSM policies and procedures across the enterprise. Assists with negotiation of statements of work (SOWs) with service providers related to the development, implementation, delivery, and/or maintenance of ITSM processes, services, and/or tools. Minimum Qualifications: Minimum four (4) years in a leadership role working with process or service teams. Bachelors Degree in CIS, Business Administration, or related field and Minimum eight (8) years IT experience, including Minimum four (4) years implementing or supporting ITSM processes or services. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements:
08/25/2026
Full time
Please note, this position is designated as flexible, which means the selected candidate may be required to report to the assigned office in Greensboro, NC up to 3 days per week. Technical Summary: This senior level IT Consultant serves within the DevSecOps Platform and Automation Services organization, with a primary focus on providing project and program level oversight of our key strategic initiatives - specifically our Dev2030 and Internal Developer Portal activities. This role blends SAFe Agile Scrum Master facilitation, project/program management across technical and financial logistical areas, and business management activities. This individual will be required to work closely with engineering, platform, security, vendor partners, and developer experience teams to translate standards, developer needs, and business objectives into key artifacts, well prioritized features, and user stories. As a key participant within an agile delivery model, you will take direction from platform architects and senior stakeholders/leaders while providing clear product, program, and project direction to delivery teams. You will champion developer productivity, self service capabilities, and standardized golden paths to accelerate software delivery across the enterprise. Job Summary: This senior level employee is primarily responsible for leading the ITSM process implementation, evaluating risk matters within IT, and ensuring contingency procedures are followed and maintained. Essential Responsibilities: Conducts or oversees business-specific projects by applying deep expertise in subject area; promoting adherence to all procedures and policies; developing work plans to meet business priorities and deadlines; determining and carrying out processes and methodologies; coordinating and delegating resources to accomplish organizational goals; partnering internally and externally to make effective business decisions; solving complex problems; escalating issues or risks, as appropriate; monitoring progress and results; recognizing and capitalizing on improvement opportunities; evaluating recommendations made; and influencing the completion of project tasks by others. Practices self-leadership and promotes learning in others by building relationships with cross-functional stakeholders; communicating information and providing advice to drive projects forward; influencing team members within assigned unit; listening and responding to, seeking, and addressing performance feedback; adapting to competing demands and new responsibilities; providing feedback to others, including upward feedback to leadership and mentoring junior team members; creating and executing plans to capitalize on strengths and improve opportunity areas; and adapting to and learning from change, difficulties, and feedback. Drives ITSM process and/or service implementation for designated ITSM initiatives by leading or directing team members in the documentation of process and/or service requirements and acceptance criteria from process owners and key stakeholders; and guiding and influencing leadership in the development of the ITSM strategy. Partners with leadership to help define goals, objectives, deliverables, and guardrails within the governance framework to ensure the development and implementation of efficient, effective, measurable, and sustainable processes and/or services. Ensures accuracy and completeness of release notes, training materials, and documentation within appropriate repositories. Drives the execution of ITSM roadmaps to ensure that processes and/or services are aligned with stakeholder needs. Partners with IT functions and process/service users to lead the development and implementation of performance metrics and measurement tools. Leads ITSM process and/or service improvement efforts for designated initiatives by cultivating strong collaborative working relationships with cross-functional teams on process improvement projects. Evaluates business needs, organizational characteristics, and industry best-practices to identify gaps or deficiencies in new and existing processes, services, and service portfolios and makes recommendations for improvements or enhancements as appropriate. Develops, documents, maintains, and audits ITSM processes and procedures. Makes decisions regarding process and/or service improvements and third-party tools for implementation. Works with cross-functional stakeholders (for example, IT and business partners) to create alignment, synergy, and application of standardized processes and/or services and procedures. Ensures appropriate training is delivered to users (e.g., end-users, service/process delivery teams) to drive proper process and/or service execution. Designs and oversees the validation of performance metrics against success criteria to ensure effective control of expected deliverables. Provides recommendations and makes decisions for mitigating process and/or service performance deficiencies. Investigates complex, highly visible performance deviations to drive adherence with defined ITSM policies and procedures. Advocates and drives compliance with ITSM policies and procedures across the enterprise. Assists with negotiation of statements of work (SOWs) with service providers related to the development, implementation, delivery, and/or maintenance of ITSM processes, services, and/or tools. Minimum Qualifications: Minimum four (4) years in a leadership role working with process or service teams. Bachelors Degree in CIS, Business Administration, or related field and Minimum eight (8) years IT experience, including Minimum four (4) years implementing or supporting ITSM processes or services. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements:
DevSecOps Engineer (Infra/GitOps)
Zaden Technologies, Inc. Huntsville, Alabama
About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PI51eb8a49f5-
08/25/2026
Full time
About Zaden Technologies, Inc. Join Zaden Technologies on our mission to simplify the delivery and improve the utility of software products for our customers. At Zaden, we believe that our employees are our greatest assets. We hire the right candidates with the right skill sets who fit our culture of customer obsession, innovation, and continuous learning. We are our customer's biggest advocate and we are looking for like-minded individuals who encompass these same ideals. It is important to us to offer you competitive pay and comprehensive benefits with opportunities that match your life and propel your career! Zaden Technologies is hiring a DevSecOps Engineer to design, build, and manage the infrastructure foundations of our software factory environments. This role emphasizes infrastructure-as-code, Kubernetes automation, and GitOps delivery practices in support of critical defense programs. You'll work hands-on with containerization, CI/CD pipelines, and secure multi-cloud environments while implementing DoD hardening standards. Role Responsibilities: Develop and maintain infrastructure using Terraform and infrastructure-as-code practices Author Dockerfiles and deploy workloads to Kubernetes clusters using Helm Implement and manage GitOps workflows and automated cluster configuration management Harden clusters and base images per DoD guidance including STIG and Iron Bank standards Support networking, policy enforcement, and secrets management in secure multi-cloud environments Troubleshoot complex infrastructure issues and implement solutions independently Administer and maintain Linux-based systems in production environments Collaborate with development and security teams to ensure seamless CI/CD pipeline operations Required Qualifications: U.S. Citizenship and a security clearance (secret or above) Experience with Containerization and Kubernetes Terraform experience Helm experience CI/CD Experience (GitLab preferred) Strong troubleshooting skills Self-starter with ability to work independently Familiarity with administering Linux Systems Preferred Qualifications: Experience with Renovate Familiarity with DoD Security Requirements Guide (SRG) Familiarity with DoD DevSecOps Reference Guide Familiarity with Windows server administration and automation Experience with RHEL and RHEL-based Linux distributions Hands-on experience with FluxCD or similar GitOps tools Experience with policy-as-code frameworks (OPA) Understanding of DoD Cloud SRG and container hardening practices What we offer: Robust startup environment with a variety of projects to work on Growth paths and endless opportunities to learn and develop Paid holidays Employer contributions toward 401k Performance-based bonus and profit-sharing 50% coverage of health insurance for employees and their dependents The pay range for this role is: 75,000 - 110,000 USD per year(Huntsville, AL (L2 Base 110,000 - 150,000 USD per year(Huntsville, AL (L3 Senior Compensation details: 00 Yearly Salary PI51eb8a49f5-
Leidos
Principal Software Engineer / Tech Lead
Leidos Arlington, Virginia
Job Description Description Join the team transforming secure cloud operations for the future. We're seeking a Principal Engineer / Technical Lead to support the Compartmented Enterprise Services Office (CESO) in Arlington, VA. This effort is building a modern Secure Web Service (SWS) operation on a cutting edge, highly automated platform designed to support a rapidly expanding customer base. In this role, you'll help drive CESO's migration to a high security cloud environment, delivering key capabilities such as network and communication services, monitoring services, and system administration. If you're ready to make an impact on a mission critical DISA program and work with a team shaping the next generation of secure enterprise services, apply today! This position is based in Arlington, VA and is 100% on-site. Primary Responsibilities Engineering Experience in working on teams utilizing Agile workflows and processes Translate mission outcomes and prioritized product backlog items into technical delivery plans and sprint goals Lead development and integration of secure APIs, data pipelines (structured/unstructured) Experience with software development languages/environments such as: JavaScript. GitLab, Jenkins, Ansible Automation, Python, JavaScript, Java, PSSQL, YAML, and Terraform Develop automated CI/CD build/deployment pipelines using Jenkins, Ansible and Bitbucket. Implement DevSecOps practices, CI/CD pipelines, automated testing, observability, and security controls Implement software release version control, provide release management support throughout a software product's life cycle (initial software development through promotion to Test, QA and Production Environments), ensuring the consistency and reliability of software builds Organizational & Technical Leadership Define and drive long-term technical strategy and architectural direction across teams Oversee the design and delivery of scalable, secure, and maintainable software solutions Serve as a senior technical authority and escalation point for cross-team and cross-domain issues Champion engineering excellence, including automated testing, CI/CD, reliability, and security Establish standards, best practices, and governance for software development Guide the responsible adoption of generative AI tools across engineering teams People Management & Leadership Development Lead, manage, and develop senior engineers and technical teams Own performance management, career development, succession planning, and talent growth Build and sustain a high-performing, inclusive engineering culture Coach leaders on effective team management, delivery, and technical decision-making Delivery & Execution Own delivery outcomes across multiple Agile teams, ensuring predictability and quality Partner with product and business stakeholders to align roadmaps, priorities, and execution Ensure effective Agile practices, metrics, and continuous improvement using Jira Balance near-term delivery with long-term platform and technical investments Incorporate customer feedback, operational insights, and data to drive product improvements Cross-Functional & Executive Collaboration Act as a key engineering representative in cross-functional and leadership discussions Communicate technical vision, risks, and progress to senior leadership Influence product strategy through deep understanding of users and technical constraints Drive alignment across engineering, product, design, and operations Basic Qualifications Candidate must an active TS/SCI security clearance BA and 12+ years of experience. Additional years of experience may be considered in lieu of degree. Proven track record of leading multiple teams and delivering complex software systems Demonstrated leadership skills and attention to detail, including excellent organizational and documentation skills Strong background in automated testing, CI/CD, and modern software delivery practices Experience with software development languages/environments such as: JavaScript. GitLab, Jenkins, Ansible Automation, Python, JavaScript, Java, PSSQL, YAML, and Terraform Hands-on full-SDLC Agile Software Development experience, including full software lifecycle automation experience (design, development, test, deployment), including deployment to a production environment Experience designing, building, and deploying DevOps pipelines with Bitbucket, Git, Jenkins, Artifactory and Ansible (or equivalent tools) Exceptional leadership, communication, and stakeholder management skills Experience working in a high op-temp, top secret environment Previous experience tracking projects in Jira or equivalent Agile Project Management software Experience with the following technologies: GitHub Gradle PowerShell Java Full Stack Oracle 19c Webservices Preferred Qualifications Prior experienced with DISA and DISA's support to mission partners Experience designing, developing, and deploying software in a cloud environment (AWS preferred). If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares. Original Posting:June 3, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range:Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at -benefits. Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at . If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
08/22/2026
Full time
Job Description Description Join the team transforming secure cloud operations for the future. We're seeking a Principal Engineer / Technical Lead to support the Compartmented Enterprise Services Office (CESO) in Arlington, VA. This effort is building a modern Secure Web Service (SWS) operation on a cutting edge, highly automated platform designed to support a rapidly expanding customer base. In this role, you'll help drive CESO's migration to a high security cloud environment, delivering key capabilities such as network and communication services, monitoring services, and system administration. If you're ready to make an impact on a mission critical DISA program and work with a team shaping the next generation of secure enterprise services, apply today! This position is based in Arlington, VA and is 100% on-site. Primary Responsibilities Engineering Experience in working on teams utilizing Agile workflows and processes Translate mission outcomes and prioritized product backlog items into technical delivery plans and sprint goals Lead development and integration of secure APIs, data pipelines (structured/unstructured) Experience with software development languages/environments such as: JavaScript. GitLab, Jenkins, Ansible Automation, Python, JavaScript, Java, PSSQL, YAML, and Terraform Develop automated CI/CD build/deployment pipelines using Jenkins, Ansible and Bitbucket. Implement DevSecOps practices, CI/CD pipelines, automated testing, observability, and security controls Implement software release version control, provide release management support throughout a software product's life cycle (initial software development through promotion to Test, QA and Production Environments), ensuring the consistency and reliability of software builds Organizational & Technical Leadership Define and drive long-term technical strategy and architectural direction across teams Oversee the design and delivery of scalable, secure, and maintainable software solutions Serve as a senior technical authority and escalation point for cross-team and cross-domain issues Champion engineering excellence, including automated testing, CI/CD, reliability, and security Establish standards, best practices, and governance for software development Guide the responsible adoption of generative AI tools across engineering teams People Management & Leadership Development Lead, manage, and develop senior engineers and technical teams Own performance management, career development, succession planning, and talent growth Build and sustain a high-performing, inclusive engineering culture Coach leaders on effective team management, delivery, and technical decision-making Delivery & Execution Own delivery outcomes across multiple Agile teams, ensuring predictability and quality Partner with product and business stakeholders to align roadmaps, priorities, and execution Ensure effective Agile practices, metrics, and continuous improvement using Jira Balance near-term delivery with long-term platform and technical investments Incorporate customer feedback, operational insights, and data to drive product improvements Cross-Functional & Executive Collaboration Act as a key engineering representative in cross-functional and leadership discussions Communicate technical vision, risks, and progress to senior leadership Influence product strategy through deep understanding of users and technical constraints Drive alignment across engineering, product, design, and operations Basic Qualifications Candidate must an active TS/SCI security clearance BA and 12+ years of experience. Additional years of experience may be considered in lieu of degree. Proven track record of leading multiple teams and delivering complex software systems Demonstrated leadership skills and attention to detail, including excellent organizational and documentation skills Strong background in automated testing, CI/CD, and modern software delivery practices Experience with software development languages/environments such as: JavaScript. GitLab, Jenkins, Ansible Automation, Python, JavaScript, Java, PSSQL, YAML, and Terraform Hands-on full-SDLC Agile Software Development experience, including full software lifecycle automation experience (design, development, test, deployment), including deployment to a production environment Experience designing, building, and deploying DevOps pipelines with Bitbucket, Git, Jenkins, Artifactory and Ansible (or equivalent tools) Exceptional leadership, communication, and stakeholder management skills Experience working in a high op-temp, top secret environment Previous experience tracking projects in Jira or equivalent Agile Project Management software Experience with the following technologies: GitHub Gradle PowerShell Java Full Stack Oracle 19c Webservices Preferred Qualifications Prior experienced with DISA and DISA's support to mission partners Experience designing, developing, and deploying software in a cloud environment (AWS preferred). If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares. Original Posting:June 3, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range:Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at -benefits. Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at . If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board