It Concepts - San Diego, CA

posted 20 days ago

Full-time - Senior
San Diego, CA
Professional, Scientific, and Technical Services

About the position

The DevSecOps Lead at IT Concepts, Inc. is responsible for integrating DevSecOps practices into new developments and SIE Cloud efforts, ensuring compliance with DoD security standards while fostering a culture of security and innovation. This role involves designing and implementing automated CI/CD pipelines, maintaining security metrics, and guiding cross-functional teams to adopt best practices in software development and operations.

Responsibilities

  • Leads the integration of DevSecOps practices into all new developments and SIE Cloud efforts.
  • Maintains relevancy with commercial and open source DevSecOps solutions to enable the program to keep pace with industry offerings and trends.
  • Designs and implements the processes and tools to deliver an automated, CI/CD pipeline based DevSecOps system that is capable of supporting VMs, containers, and compiled software applications.
  • Sustains the CI/CD pipeline for applications in maintenance.
  • Works across the enterprise to ensure that the DevSecOps tools and processes are supporting the holistic system development, integration, and fielding effort.
  • Ensures that all software development and operational processes meet DoD-specific security standards, such as RMF, CMMC, and NIST, while implementing automated compliance checks.
  • Guides the team in maintaining and improving Infrastructure as Code (IaC) implementations, automating the provisioning and configuration of secure and scalable cloud or on-prem environments.
  • Continuously monitors security metrics, audit logs, and system health, responding to any security incidents and leading root cause analysis to prevent future issues.

Requirements

  • 10 years of experience in a relevant field and a MA/MS degree.
  • Bachelor's Degree plus 8 years work experience may be substituted for a Master's Degree.
  • 12 years work experience may be substituted for a Master's Degree.

Nice-to-haves

  • Strong leadership abilities to guide cross-functional teams in adopting DevSecOps practices.
  • Deep understanding of key DoD cybersecurity frameworks, including RMF, NIST 800-53, CMMC, and DISA STIGs.
  • Advanced knowledge of cloud environments (e.g., AWS, Azure) and containerization platforms (e.g., Docker, Kubernetes).
  • Experience with tools such as Prometheus, Grafana, Splunk, ELK Stack, Nagios, and SIEM systems.
  • Strong problem-solving and analytical skills.
  • Excellent communication and collaboration abilities.
  • Ability to work with Teams, but self-motivated to complete projects on your own.
  • Ability to work fully on-site with minimal accommodation.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service