Senior DevSecOps Engineer bei DMV IT Service LLC
DMV IT Service LLC · Washington, Vereinigte Staaten Von Amerika · Onsite
- Professional
- Optionales Büro in Washington
Job Title: Senior DevSecOps Engineer
Location: Washington, DC
Employment Type: Contract
About Us:
DMV IT Service LLC is a trusted IT consulting firm founded in 2020, specializing in IT infrastructure optimization, workforce solutions, and consulting services. We help clients manage complex Oracle environments, ERP systems, and cloud solutions while ensuring security, performance, and operational efficiency.
Job Purpose:
The Senior DevSecOps Engineer will lead efforts to integrate security into development and operational pipelines, ensuring automated, secure, and reliable deployments. This hands-on role requires deep expertise in AWS, infrastructure automation, and secure CI/CD practices. The candidate will work in a SAFe-agile team, collaborating closely with developers and operations staff, and participating in key onsite events as needed.
Requirements
Key Responsibilities:
- Design, implement, and manage secure CI/CD pipelines using AWS CodePipeline, CodeBuild, and CodeDeploy.
- Automate provisioning and management of cloud infrastructure using Terraform and AWS CDK (Python).
- Implement blue/green deployment strategies for seamless, zero-downtime releases.
- Integrate security scanning (SAST, DAST, SCA) and automated vulnerability assessments into CI/CD workflows.
- Collaborate with development and operations teams to define and enforce secure coding and deployment standards.
- Monitor cloud infrastructure and applications for security risks and respond promptly to threats.
- Ensure adherence to security policies, governance frameworks, and industry standards (e.g., OWASP, NIST, CIS).
- Provide guidance and mentorship on DevSecOps practices to other team members.
- Maintain detailed documentation for deployment strategies, security configurations, and operational processes.
Required Skills & Experience:
- Proven experience as a DevSecOps Engineer with hands-on expertise in cloud security and automation projects.
- Strong proficiency in AWS services including CodePipeline, CodeBuild, CodeDeploy, IAM, EC2, Lambda, S3, and CloudFormation.
- Skilled in Python for infrastructure automation using AWS CDK.
- Extensive experience with Terraform for infrastructure-as-code (IaC).
- Knowledge of source control systems, particularly Bitbucket.
- Familiarity with containerization and orchestration tools such as Docker and Kubernetes.
- Hands-on experience with security tools like Checkmarx and SonarQube.
- Solid understanding of security frameworks including OWASP, NIST, and CIS.
- Strong communication, problem-solving, and collaboration abilities.
- Ability to work independently as well as in a cross-functional Agile team environment.
Preferred Skills & Certifications:
- AWS Certified DevOps Engineer
- Certified DevSecOps Professional (CDP)
- CISSP or other equivalent security certifications