DevSecOps Engineer RMF
Herndon, VA - USA
Job Summary
NetImpact Strategies is seeking a DevSecOps Engineer to support secure cloud infrastructure and applications within a Department of Defense environment. This hands-on role combines DevSecOps engineering with cybersecurity and Risk Management Framework support.
The ideal candidate will have experience with cloud platforms Kubernetes CI/CD pipelines Linux administration infrastructure automation vulnerability remediation and RMF/ATO documentation. This individual will partner with engineering and cybersecurity teams to implement secure solutions and produce the technical evidence required to obtain and maintain an Authorization to Operate.
- Design deploy maintain and troubleshoot secure cloud infrastructure and applications across development testing and production environments.
- Administer Docker and Kubernetes environments including deployments networking configuration storage scaling and upgrades.
- Develop and maintain CI/CD pipelines that automate application builds testing security scanning and deployment.
- Implement Infrastructure as Code using Terraform CloudFormation Ansible or comparable technologies.
- Administer Linux systems and troubleshoot issues across applications containers networks operating systems and cloud services.
- Implement monitoring logging alerting backup recovery and operational automation capabilities.
- Apply security baselines DISA STIGs patching requirements least-privilege access and secure configuration practices.
- Identify prioritize remediate and document vulnerabilities and security findings.
- Support DoD RMF and ATO activities by developing and maintaining SSPs POA&Ms architecture diagrams inventories data flows PPSM documentation and remediation evidence.
- Work with ISSOs ISSMs engineers developers and assessors to document NIST SP 800-53 control implementations and maintain accurate authorization packages.
- Bachelors degree in Computer Science Information Technology Cybersecurity Engineering or a related field.
- Four or more years of experience in DevOps DevSecOps cloud engineering systems engineering or a related discipline.
- Hands-on experience with Linux Docker Kubernetes Git and AWS Microsoft Azure or another major cloud platform.
- Experience developing CI/CD pipelines and implementing Infrastructure as Code using Terraform CloudFormation or comparable tools.
- Knowledge of cloud networking identity and access management secrets management encryption monitoring vulnerability management patching and system hardening.
- Familiarity with DoD RMF the ATO lifecycle NIST SP 800-53 DISA STIGs security-control documentation and POA&Ms.
- Strong troubleshooting technical-writing communication and collaboration skills.
- Experience supporting DoD or other federal information systems including eMASS and RMF/ATO documentation.
- Experience with AWS GovCloud and Kubernetes platforms such as EKS AKS Rancher/RKE2 or Red Hat OpenShift.
- Experience with security and compliance tools such as Fortify SonarQube Snyk Trivy Nessus ACAS AWS Inspector or SCAP.
- Security CISSP SecurityX AWS Azure CKA CKS or another relevant certification.
- Must be a U.S. citizen.
- Must be eligible to obtain and maintain the required U.S. Government security clearance and/or suitability determination.
- Must meet applicable DoD 8140 cybersecurity workforce qualification requirements.
At NetImpact Strategies we post salary ranges in compliance with the specific labor laws and regulations of each county and state ensuring transparency and fairness in our hiring practices. This approach reflects our commitment to adhering to legal requirements and promoting equitable pay standards across all regions where we operate. The posted salary range for this role is $120000 - $165000. The posted salary range is not an exact indication of the actual compensation offered and is instead a range of what NetImpact in good faith could compensate at the lowest and most high end of the salary general NetImpact may not pay the top of the salary range. Compensations are determined by several mitigating factors including skillset experience trainings location and other factors including benefits packages.
Perks of working at NetImpact Strategies
- Your health comes first we offer comprehensive medical dental & vision insurance that starts the first of the month after you join the team
- Invest in your future 401(k) Plan Immediately vested employer contributions; no matching required
- Work hard play hard we offer a generous Paid Time Off (PTO) policy one (1) additional day of paid wellness leave per calendar year and observeten (10) federal holidays
- Pawsitively pawesome Pet Insurance (because our little critters are part of our families too!)
- Invest in your education Tuition reimbursement internal training programs & company-sponsored industry certifications!
- Be part of a dynamic and collaborative work environment recently ranked by The Washington Post as a Top Work Place in 2019 20 & 2024!
- Have fun and celebrate and give back Team building activities community volunteering quarterly HQ days wellness events happy hours family fun events and more!
NetImpact Strategies Inc. (NetImpact) has been a Trusted Advisor driving impact through digital transformation for the Federal Government for over a decade. We solve complex problems with innovation and agility to create meaningful transformative and enduring change. As Trusted Advisors NetImpact professionals partner with customer agencies to deliver solutions that empower them to not only meet their missions but also realize their strategic vision through agile outcome-focused solutions addressing both strategic and tactical requirements. We design and implement comprehensive tailored solutions that are both mindful of the clients culture and organizational dynamics. NetImpacts core values and commitment to a customer and results-oriented delivery approach has propelled our growth and enabled us to deliver impactful value across Strategic Consulting Process Automation Cloud DevSecOps Data and Analytics and Cyber Security for the Federal Government.
ACCESSIBILITY NOTE
NetImpact Strategies is committed to complying with all applicable provisions of the Americans with Disabilities Act as amended (ADA) and applicable state and local laws. It is NetImpacts policy not to discriminate against any qualified person or applicant with regard to any terms or conditions of employment on the basis of such individuals disability. Consistent with this policy of non-discrimination NetImpact will provide reasonable accommodations to an individual with a disability as defined in the ADA or applicable law who has made NetImpact aware of his/her disability unless doing so would cause undue hardship to NetImpact. If you are an applicant and need reasonable accommodation when applying for job opportunities within NetImpact or request reasonable accommodation to utilize NetImpacts online employment application please contact.
Required Experience:
IC
About Company
Site Reliability Engineering (SRE) could be the answer to Government Digital Services SRE provides organizations with a next generation approach to optimize IT systems to become more reliable, scalable, resilient and efficient. This article originally published in Nextgov/FCW, explore ... View more