Back to Jobs

DevSecOps Engineer

TrulyRemote Verified

Hand-curated global remote job with direct application link

Technical Requirements

KubernetesHelmAWS GovCloudAzure GovernmentGitLab CITerraformIstioPrometheus

About the Role

We are seeking a skilled DevSecOps Engineer to design, deploy, and maintain secure, cloud-native infrastructure supporting Department of War customers. You will work across container platforms, CI/CD pipelines, and government cloud environments to deliver hardened, compliant software systems at scale. This role sits at the intersection of platform engineering, security, and DevSecOps and requires a strong understanding of DoW policies, toolchains, and accreditation processes.

Key Responsibilities

  • Design and maintain Kubernetes-based infrastructure, including cluster provisioning, RBAC configuration, network policy, and workload management
  • Package and deploy applications using Helm charts; maintain chart repositories and manage release lifecycle across environments
  • Implement and enforce policy controls using Istio service mesh, OPA Gatekeeper, Kyverno, and related Kubernetes admission controllers
  • Build and maintain CI/CD pipelines using GitLab CI, GitHub Actions, Jenkins, or equivalent tooling; integrate automated security scanning and compliance gates
  • Deploy and operate workloads on AWS GovCloud and Azure Government; architect for high availability, disaster recovery, and cross-region compliance requirements
  • Manage and harden container images; integrate with Iron Bank, Platform One, and other DoW-approved registry sources
  • Configure and maintain observability stacks including Prometheus, Grafana, and Datadog; develop alerting, dashboards, and SLO frameworks
  • Participate in ATO processes, support STIG/CIS compliance scanning, and contribute to System Security Plans (SSPs) and documentation artifacts
  • Collaborate with development, security, and program teams to establish and refine DevSecOps practices across the software delivery lifecycle
  • Support air-gapped and classified environment deployments; design solutions for offline image transfer, registry mirroring, and artifact management
  • Coordinate with government platform teams and managed service providers to integrate and sustain vendor tooling within approved DoD software factories

Technical Environment

You will work within a modern DevSecOps stack including:

  • Container Orchestration: Kubernetes (EKS, AKS, RKE2, OpenShift)
  • Package Management: Helm, Kustomize
  • Policy & Mesh: Istio, OPA Gatekeeper, Kyverno, Calico
  • CI/CD: GitLab CI/CD, GitHub Actions, Jenkins
  • Cloud: AWS GovCloud (East/West), Azure Government
  • Registries: Iron Bank / Registry1, Harbor, Quay, AWS ECR
  • Observability: Prometheus, Grafana, Datadog, Loki, OpenTelemetry
  • Security Scanning: Trivy, Grype, Anchore, RapidFort, Twistlock/Prisma
  • IaC: Terraform, Ansible, Crossplane
DevSecOps Engineer
RapidFort
Apply