Unclassified - Westminster, CO

posted 2 months ago

Full-time - Mid Level
Westminster, CO

About the position

As a DevSecOps Engineer at DCCA, you will play a critical role in ensuring the security and efficiency of our IT infrastructure. Your primary responsibility will be to integrate security practices into the DevOps process, ensuring that security is a fundamental part of our development lifecycle. You will work closely with development, operations, and security teams to implement automated security testing, vulnerability assessments, and compliance checks throughout the software development process. Your expertise will help us to identify and mitigate security risks early in the development cycle, ensuring that our solutions are not only innovative but also secure and compliant with government regulations. In this position, you will be responsible for designing and implementing security controls, monitoring systems for security breaches, and responding to incidents as they arise. You will also be tasked with developing and maintaining security policies and procedures, ensuring that all team members are trained and aware of security best practices. Your role will require you to stay up-to-date with the latest security trends and technologies, and to continuously improve our security posture through proactive measures and innovative solutions. DCCA values a culture of integrity and inclusivity, and as a DevSecOps Engineer, you will be expected to contribute to this environment by fostering collaboration and communication among team members. You will have the opportunity to work on a variety of projects, allowing you to build your skills and advance your career in a supportive and dynamic setting. Join us in our mission to provide exceptional IT services while maintaining the highest standards of security and compliance.

Responsibilities

  • Integrate security practices into the DevOps process.
  • Implement automated security testing and vulnerability assessments.
  • Conduct compliance checks throughout the software development lifecycle.
  • Design and implement security controls for IT infrastructure.
  • Monitor systems for security breaches and respond to incidents.
  • Develop and maintain security policies and procedures.
  • Train team members on security best practices.
  • Stay updated on the latest security trends and technologies.
  • Continuously improve the security posture of the organization.

Requirements

  • Active TS/SCI w/ Poly security clearance is required.
  • Experience in DevSecOps practices and methodologies.
  • Strong understanding of security principles and best practices.
  • Proficiency in automation tools and scripting languages.
  • Experience with cloud security and infrastructure as code.
  • Knowledge of compliance frameworks and regulations relevant to government IT.

Nice-to-haves

  • Experience with container security and orchestration tools.
  • Familiarity with CI/CD pipelines and tools.
  • Knowledge of threat modeling and risk assessment techniques.
  • Certifications in security (e.g., CISSP, CISM, etc.).
  • Experience working in a veteran-owned or government contracting environment.

Benefits

  • Competitive compensation package.
  • Career growth opportunities.
  • Comprehensive health insurance.
  • 401k retirement savings plan.
  • Paid time off and holidays.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service