Cognizance Technologies · 2 weeks ago
DevSecOPs and CI/CD Manager-SENIOR
Cognizance Technologies is seeking a Senior DevSecOps and CI/CD Manager to lead the design and management of CI/CD pipelines for CBER applications. The role involves embedding security and compliance within these pipelines and collaborating with various teams to ensure efficient and secure deployment workflows.
DevOpsFraud DetectionHealth CareInformation TechnologyIT Infrastructure
Responsibilities
Lead the design, implementation, and management of CI/CD pipelines for all CBER applications, including development, test, staging, and production environments
Embed security, compliance, and quality gates within CI/CD pipelines, aligning with DevSecOps principles
Ensure the automation of build, test, and deployment processes across containerized and microservices-based applications (e.g., OpenShift/Kubernetes)
Collaborate with development, architecture, database, security, and operations teams to:
Integrate automated testing, vulnerability scanning, and code analysis
Ensure secure and reliable deployment workflows
Manage pipeline tools and environments, including source control, build automation, artifact repositories, and deployment orchestration
Monitor pipeline performance, identify bottlenecks, and implement improvements to ensure efficient delivery
Support incident resolution related to CI/CD pipelines and automated deployments
Provide guidance, training, and mentoring to development and operations teams on DevSecOps best practices
Maintain documentation of CI/CD pipelines, deployment procedures, and DevSecOps processes
Support compliance with FDA, HHS, and federal security policies, including FISMA and RMF considerations
Participate in release planning, change management, and modernization initiatives to ensure alignment of CI/CD capabilities with program objectives
Track and report CI/CD metrics, including deployment success rates, pipeline performance, and security compliance
Qualification
Required
Lead the design, implementation, and management of CI/CD pipelines for all CBER applications, including development, test, staging, and production environments
Embed security, compliance, and quality gates within CI/CD pipelines, aligning with DevSecOps principles
Ensure the automation of build, test, and deployment processes across containerized and microservices-based applications (e.g., OpenShift/Kubernetes)
Collaborate with development, architecture, database, security, and operations teams to integrate automated testing, vulnerability scanning, and code analysis
Ensure secure and reliable deployment workflows
Manage pipeline tools and environments, including source control, build automation, artifact repositories, and deployment orchestration
Monitor pipeline performance, identify bottlenecks, and implement improvements to ensure efficient delivery
Support incident resolution related to CI/CD pipelines and automated deployments
Provide guidance, training, and mentoring to development and operations teams on DevSecOps best practices
Maintain documentation of CI/CD pipelines, deployment procedures, and DevSecOps processes
Support compliance with FDA, HHS, and federal security policies, including FISMA and RMF considerations
Participate in release planning, change management, and modernization initiatives to ensure alignment of CI/CD capabilities with program objectives
Track and report CI/CD metrics, including deployment success rates, pipeline performance, and security compliance
Senior-level experience implementing and managing DevSecOps culture and CI/CD pipelines in enterprise environments
Strong understanding of DevSecOps principles, including Continuous Integration, Continuous Delivery, and Continuous Deployment
Security integration in SDLC
Automated testing and vulnerability scanning
Hands-on experience with pipeline tooling, including but not limited to Jenkins, GitHub Actions, Azure DevOps, GitLab CI/CD
Containerization and orchestration (Docker, Kubernetes, OpenShift)
Artifact management and repository tools
Experience collaborating across development, operations, architecture, and security teams
Strong problem-solving, communication, and documentation skills
Knowledge of federal compliance requirements and secure software development practices
Senior-level experience (typically 8–10+ years) in DevSecOps, CI/CD, or secure software engineering
Bachelor's degree in computer science, Information Systems, or related discipline (or equivalent experience)
Ability to obtain and maintain required federal background investigation or clearance
Preferred
Existing FDA clearance preferred
DevSecOps, CI/CD, or secure software engineering: 8 years
DevSecOps Professional Certification
CISSP or CSSLP (for security integration)
AWS/Azure/Kubernetes certifications