SR.DEVSECOPS ENGINEER

$120,001 - $120,001/Yr

SAIC

posted 9 days ago

Full-time - Mid Level
Onsite
10,001+ employees
Professional, Scientific, and Technical Services

About the position

SAIC is seeking a Senior DevSecOps Engineer to support the Battlespace Management Command, Control, and Communications (BMC3) Program. This role requires a strong technical background in systems engineering and configuration management, with a focus on building and maintaining infrastructure as code, managing containerized applications, and implementing cloud-based security controls. The successful candidate will engage with customers and contractors, ensuring effective communication and support for technical initiatives.

Responsibilities

  • Build and maintain infrastructure as code on large scale multi-site deployments.
  • Design, deploy, and manage containerized applications using Kubernetes.
  • Design & architect CI/CD pipelines and workflows in accordance with standardized toolchain and frameworks.
  • Onboard product teams to CI/CD framework simplifying the developer experience, promoting standards & methodologies.
  • Implement and automate cloud-based security controls, governance processes and compliance validation.
  • Day to day sustainment & support of the installed Battlespace Management Command, Control, and Communications (BMC3) System baseline.
  • Support STIG implementation to DoD cyber standards.
  • Provide technical expertise and support to mitigate risks for our Role Based Access Control (RBAC) Systems.
  • Assist with capturing site variances to incorporate into the CM process, data migration (as required), application tuning, domain policies, applying security patches, submitting/closing trouble tickets (as required) and configuring the baseline to minimize downtime.
  • Attend technical exchange meetings, engineering and integration meetings, post installation follow-up meetings.
  • Submit recommended changes to configuration management (CM) personnel.
  • Work alongside DevSecOps engineers and Cybersecurity engineers to determine and implement cyber best practices to cloud-based infrastructure using Infrastructure as Code (IaC) and automation practices.
  • Completion of all applicable fielding prerequisites and post install releases (Critical System Updates (CSUs), Fast Tracks (FT), Out of Cycles (OOC), and Agile Release Events (AREs) by applicable deadlines.
  • Assist in new hire and new developer onboarding into RBAC systems as required by the program.
  • Work in air-gapped environments to create and maintain RBAC strategies for the Application Factory (AppFac) product.

Requirements

  • Bachelor's degree and 5+ years of experience as a DevSecOps or comparable technical function.
  • Active Secret security clearance.
  • Current IAT Level 2 Certification (Sec+ or higher).
  • Experience deploying, configuring, and managing Kubernetes clusters in AWS GovCloud environment.
  • Experience implementing and managing monitoring, logging, and alerting for Kubernetes clusters using tools like Splunk, Prometheus, Grafana, and ELK stack.
  • Familiarity with DISA STIG compliance.
  • Knowledge of systems engineering roles and functions, including requirements management, functional analysis, configuration management processes and procedures.
  • Administration level experience with AWS cloud.
  • Experience with ACAS, Nessus, and OpenScap for STIG mitigation.
  • Experience with STIG Mitigation playbook implementation via Ansible (or comparable configuration management tool).
  • System Administration of Linux (Windows is a plus).
  • Experience with scripting languages including but not limited to PowerShell, BASH, Python.

Nice-to-haves

  • Experience with Istio for Kubernetes clusters.
  • Ability to create architecture diagrams and document runbooks for an end-to-end RBAC solution.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service