Job-Specific Minimum Requirements:
- Bachelor's degree in Computer Science, Information Systems, Engineering, or a related field. Additional years of relevant experience will be considered in lieu of degree.
- 7+ years of progressive IT experience, with 5+ years in a senior DevSecOps, platform engineering, or software delivery architecture role.
- Must be a United States Citizen.
- Must be eligible to obtain and maintain a U.S. Government Public Trust clearance or Secret clearance; active clearance preferred.
- Deep expertise in CI/CD pipeline design and implementation using GitLab CI/CD, GitHub Actions, and Jenkins, including authoring and maintaining enterprise Jenkins Shared Libraries in Groovy; hands-on experience with GitLab and GitHub as enterprise source control and pipeline platforms is required.
- Experience managing enterprise artifact repositories (JFrog Artifactory, Nexus, or equivalent) for versioned container images, compiled binaries, and deployment packages; familiarity with image tagging, environment promotion workflows, and registry mirroring for cross-account or air-gapped deployments.
- Proficiency with Crossplane for infrastructure composition and platform engineering, defining, provisioning, and managing cloud resources via Kubernetes-native control planes.
- Demonstrated hands-on experience with Infrastructure as Code (IaC): Terraform, AWS CloudFormation, or comparable tooling.
- Strong working knowledge of cloud-native architecture principles and Kubernetes platform strategy, including container orchestration (EKS, AKS, GKE, or equivalent), service mesh, and platform engineering patterns.
- Experience designing and implementing secure pipelines in regulated environments (FedRAMP, HIPAA, SOC 2, PCI, or NIST 800-53/SSDF), including support for GovCloud/FedRAMP Impact Level classes (Low, Moderate, High, and DoD IL2/IL4/IL5 as applicable).
- Technical leadership experience across AWS, Microsoft Azure, and Google Cloud Platform (GCP), including multi-account/multi-environment architectures and cross-cloud strategy.
- Hands-on experience designing and implementing cross-account AWS deployment architectures, including IAM cross-account role assumption (STS AssumeRole), permissions boundaries, Service Control Policies (SCPs), and deployment of infrastructure into client-owned or non-organization AWS accounts via automated CI/CD pipelines.
- Working knowledge of AWS Transit Gateway (TGW) and Aviatrix overlay networking for multi-VPC and cross-account connectivity; experience with TGW attachment configuration, RAM resource sharing, VPC CIDR planning, and route table management in enterprise multi-account AWS environments.
- Hands-on experience with pipeline-integrated security scanning tools including SonarQube (SAST/code quality), Trivy (container vulnerability scanning), TruffleHog (secret detection), OWASP Dependency Check, Hadolint (Dockerfile linting), and CryptoScan; ability to configure quality gates that block promotion on policy violations.
- Demonstrated experience in solution design and engineering governance, including architecture review boards, design authority participation, and enforcement of enterprise standards across delivery teams.
- Proven track record leading or contributing to cloud automation adoption initiatives, including platform onboarding programs, self-service infrastructure enablement, and automation maturity assessments.
- Experience supporting modernization, automation, and security-focused engineering initiatives across large-scale government or enterprise IT environments.
- Ability to collaborate effectively across Infrastructure, Security, Applications, and Platform Engineering teams to align delivery pipelines with enterprise architecture and compliance requirements.
- Experience with Agile project tracking and collaboration tooling, including Jira, for backlog management, sprint planning, and DevSecOps workflow configuration.
- Demonstrated ability to operate as a senior technical authority in an enterprise-scale organization, influencing architecture decisions across multiple teams and programs.
Preferred Skills and Qualifications:
- Experience leading or contributing to an enterprise-wide DevSecOps platform or Center of Excellence (CCOE).
- Experience supporting federal government IT programs, including FedRAMP authorization boundaries and GovCloud environments.
- Preferred Certifications: Possession of industry-recognized certifications such as Certified Kubernetes Administrator (CKA), HashiCorp Certified: Terraform Associate, AWS Certified Solutions Architect, or Microsoft Certified: Azure Administrator is highly desirable.
- Experience with Agile/SAFe delivery frameworks and tooling (Confluence, SAFe).
- Familiarity with node-based or low-code workflow automation platforms (e.g., n8n, Temporal, or equivalent) for building event-driven automation workflows, including CI/CD pipeline failure response, CVE alerting via vulnerability management tools, and automated compliance remediation against cloud configuration standards.
- Familiarity with Spec-Driven Development practices, including authoring and consuming machine-readable specifications (e.g., OpenAPI, AsyncAPI) to drive pipeline automation, contract testing, and API-first design workflows.
- Familiarity with AI coding assistants (e.g., GitHub Copilot, Amazon CodeWhisperer, Claude Code, or equivalent) and AI-assisted development best practices, including prompt engineering, code review augmentation, and responsible AI use in regulated environments.
- Familiarity with security tooling: dependency vulnerability management (Dependency Track or equivalent), container hardening (RapidFort or equivalent), - Managed File Transfer (Axway MFT or equivalent), and SIEM integration (Splunk or equivalent).
- Familiarity with GitOps delivery patterns and tooling, including ArgoCD for declarative, Kubernetes-native continuous delivery; experience managing application portfolio entries, approval conditions, and update cadence for GitOps-managed services.
- Working knowledge of build and dependency management tools: Maven and Gradle.
#techjobs