LMI · 1 day ago
DevSecOps Engineer - Clearance Required
Maximize your interview chances
AnalyticsConsulting
Comp. & BenefitsNo H1BSecurity Clearance Required
Insider Connection @LMI
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Implement security measures and controls within CI/CD pipelines.
Conduct regular security assessments and vulnerability scans.
Ensure compliance with Navy and Department of Defense (DoD) security standards and policies.
Develop and maintain automation scripts to streamline and enhance deployment processes.
Utilize configuration management tools (e.g., Ansible, Puppet, Chef) for consistent environment setup.
Automated deployment and support of Kubernetes clusters.
Development and ongoing support of Helm Charts, CFTs and other various templates.
Design, implement, and manage CI/CD pipelines to ensure efficient and reliable software delivery.
Integrate security tools and practices into CI/CD workflows to detect and mitigate risks early.
Set up and maintain monitoring and logging solutions to detect and respond to incidents in real-time.
Collaborate with security teams to investigate and remediate security incidents and breaches.
Work closely with development, operations, and security teams to ensure seamless integration of security practices.
Provide training and guidance to team members on security best practices and DevSecOps methodologies.
Utilize IaC tools (e.g., Terraform, ARM, CloudFormation) to manage and provision infrastructure.
Ensure infrastructure is secure, scalable, and compliant with Navy requirements.
Identify and address potential security risks and vulnerabilities throughout the development lifecycle.
Implement risk mitigation strategies and conduct regular risk assessments.
Ensure all systems and applications comply with relevant regulations and standards (e.g., NIST, FISMA, RMF).
Maintain comprehensive documentation of security practices, procedures, and incident response plans.
Optimize performance and scalability of applications and infrastructure.
Conduct performance testing and implement improvements as needed.
Stay current with emerging technologies and security trends.
Evaluate and integrate new tools and technologies to enhance the security posture of Navy systems.
Develop and maintain disaster recovery plans and organization continuity strategies.
Conduct regular drills and tests to ensure preparedness for potential disruptions.
Assist in the design, development, and deployment of secure software solutions.
Ensure security is considered throughout the software development lifecycle (SDLC).
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Minimum of a SECRET security clearance
Bachelor’s degree in Computer Science or related technical field
DoD 8570 IAT Level II Certification (SEC+ or other)
5-years’ experience as a DevSecOps or Platform Engineer
Previous government technology experience – ideally with the US Navy
Minimum of 2+ years of experience programming in C# or similar.
Ability to debug, optimize code, and automate routine tasks
Systematic problem-solving approach, coupled with effective communication skills and a sense of drive
Understanding of Unix/Linux operating systems
Demonstrated experience building continuous, automated build and deploy pipelines.
Demonstrated experience in conditional procedure of build and deploy pipeline based on security scans of source and artifact.
Capable of working with software development team and platform infrastructure team to provide meaningful guidance to both for code development and deployment.
In-depth knowledge of version control of release artifacts to facilitate upgrade rollout and rollback.
Strong understanding of containerization of web applications.
Understanding and familiarity with container orchestration engines such as K8s (EKS, AKS, GKE, Kops, OpenShift)
Demonstrated Experience with AWS Code Pipeline / Code Deploy
Experience with bash shell scripting.
Experience with Agile development methodologies and working with Agile teams.
Preferred
Master’s degree in science, technology, engineering, mathematics, computer science, economics, or related technical discipline
AWS and/or Azure Associate certification
Experience working in IL6 or equivalent secure environments.
Experience with security requirements in a federal IT environment, including FedRAMP-certified providers and FISMA requirements for acquiring an ATO.
Experience working in a consultant/client environment
Company
LMI
LMI is a consulting firm dedicated to improving the management of government.
Funding
Current Stage
Late StageTotal Funding
$0.25MKey Investors
Mission Daybreak
2022-09-19Grant· $0.25M
2022-07-12Private Equity· Undisclosed
2020-12-21Acquired· by Marcus & Millichap
Recent News
Washington Technology
2024-10-28
2024-05-21
2024-05-08
Company data provided by crunchbase