Enter a job title or keyword

DevSecOps

SteerBridge


Job Location:

Vienna, VA - USA

Yearly Salary: USD 125000 - 170000
Posted: 27 September 2026 (11 hours ago)
Application Deadline: 25 December 2026
Vacancies: 1 Vacancy

Job Summary

SteerBridge is a modern technology company delivering innovative missionfocused solutions to the U.S. Government and private sector. Leveraging deep expertise in federal acquisition digital transformation and emerging technologies we deliver agile commercialgrade capabilities that accelerate operational effectiveness and drive measurable mission success.
At the core of SteerBridge is our peopleespecially the veterans whose leadership problemsolving mindset and commitment to excellence elevate every project we support. We dont simply hire exceptional talent; we cultivate it creating meaningful career pathways for veterans military spouses and professionals who share our passion for advancing technology and strengthening the missions we serve.

POSITION OVERVIEW

SteerBridge is seeking a DevSecOps Engineer to own the security infrastructure and automation behind a mission-critical VA Disability Claims platform that supports Veterans and federal customers in AWS GovCloud. This role builds and runs the systems that security depends on: the log pipelines that feed our SIEM the CI/CD and infrastructure-as-code pipelines that deploy every environment and the scanning patching and security services deployed across our accounts.

The engineer partners closely with our security team which monitors the environment triages alerts and leads incident response. This role makes sure that team has complete reliable data and working tools and turns their requirements into code guardrails and pipelines that run automatically. The engineer will also work with cloud engineers solutions and security architects application developers and program leadership.

This is a hands-on role. The ideal candidate writes Terraform and pipeline code onboards new log sources end to end keeps security tooling deployed and healthy and fixes the root cause when a pipeline agent or integration breaks. They are comfortable reviewing a merge request debugging a broken data connector and documenting how a control is implemented.

This is a hybrid position based in Vienna VA.

KEY RESPONSIBILITIES

Security Log Pipelines

  • Own the end-to-end security log pipelines from AWS and SaaS sources into Microsoft Sentinel including CloudTrail VPC flow logs DNS query logs GuardDuty WAF identity provider and zero-trust platform logs
  • Onboard new log sources using native delivery paths (data collection endpoints and rules S3 and SQS connectors vendor streaming) and validate that data lands parses and stays complete
  • Monitor pipeline health and ingestion gaps so a silent feed is caught and fixed before the security team loses visibility
  • Manage log retention centralization and immutability in line with federal logging requirements

CI/CD and Infrastructure as Code

  • Own the GitLab CI/CD pipelines that plan and apply Terraform and Terragrunt across multiple AWS GovCloud accounts and organizations
  • Build security gates into pipelines including IaC scanning secrets detection container image scanning and dependency and SBOM checks
  • Harden the pipelines themselves: least-privilege deployment roles protected branches approval rules and state and secrets handling
  • Standardize container build and release practices for ECS and Fargate workloads including immutable image tags signed and scanned images and ECR lifecycle policies

Security Posture Compliance and Collaboration

  • Maintain the security baseline across accounts including IAM Identity Center permission sets least-privilege roles encryption and network segmentation
  • Support zero-trust access (Zscaler ZPA and ZIA) and inline inspection (Palo Alto VM-Series) configuration and change management
  • Document how controls are implemented in infrastructure and maintain runbooks that support NIST 800-53 RMF and ATO activities

REQUIRED QUALIFICATIONS

  • U.S. citizenship is required for this position under applicable federal contract requirements.
  • 5 years of hands-on experience across DevOps cloud security or security engineering preferably with AWS
  • Strong experience with infrastructure as code (Terraform required; Terragrunt a plus) and policy-as-code and IaC security scanning (e.g. Checkov tfsec)
  • Experience building and securing CI/CD pipelines (GitLab CI preferred; GitHub Actions or similar acceptable) including integrated SAST DAST SCA secrets and container image scanning (e.g. SonarQube Snyk Trivy Checkmarx) and secrets management (e.g. AWS Secrets Manager KMS)
  • Experience building log pipelines into a SIEM (Microsoft Sentinel preferred; Splunk or Elastic acceptable) including onboarding sources and troubleshooting ingestion
  • Experience deploying AWS security services including CloudTrail GuardDuty Security Hub Config and IAM across multiple accounts
  • Experience deploying and securing containerized workloads (Docker with ECS Fargate or Kubernetes)
  • Solid understanding of cloud networking identity least-privilege access and zero-trust principles
  • Scripting and automation skills in Python Bash or PowerShell
  • Strong troubleshooting communication and documentation skills (diagrams runbooks) with a methodical root-cause approach and the ability to work across development operations and security teams to balance security with delivery speed

PREFERRED QUALIFICATIONS

  • Experience in AWS GovCloud or other regulated or federal cloud environments
  • Familiarity with Vector or other log transformation tools
  • Experience with multi-account AWS Organizations service control policies or AWS landing zone patterns such as Trusted Secure Enclaves or Landing Zone Accelerator
  • Experience with Azure Monitor data collection (data collection endpoints and rules) and enough KQL to validate ingested data
  • Experience with Zscaler (ZPA and ZIA) or a comparable ZTNA or SASE platform and with Palo Alto or similar next-generation firewalls
  • Experience deploying vulnerability scanning tools such as Tenable and running AWS Systems Manager patching at scale
  • Familiarity with NIST 800-53 RMF FedRAMP or federal ATO processes
  • Certifications such as AWS Security Specialty or AWS DevOps Engineer Professional
Benefits
  • Health insurance
  • Dental insurance
  • Vision insurance
  • Life Insurance
  • 401(k) Retirement Plan with matching
  • Paid Time Off
  • Paid Federal Holidays
$125000 - $170000 a year

The posted compensation range reflects the scope and requirements of this position. A final offer will be determined based on the candidates relevant experience skills education certifications and work location along with the responsibilities of the position. Where applicable contract requirements wage determinations and federal contract labor categories may also inform the offer.

SteerBridge also offers benefits that may include health and life insurance paid time off paid holidays disability coverage retirement savings and professional development opportunities. Benefits vary by position and eligibility.

SteerBridge is proud to be an Equal Opportunity Employer.We are committed to creating a diverse and inclusive workplace where all qualified applicants and employees are treated with respect and dignityregardless of race color gender age religion national origin ancestry disability veteran status genetic information sexual orientation or any other characteristic protected by law.
We also provide reasonable accommodations for individuals with disabilities in accordance with applicable laws. If you require assistance during the application process we encourage you to reach out so we can support your needs.
If you would like information about how your application is processed please contact us.

About Company

Company Logo

SteerBridge is proud to be an Equal Opportunity Employer. We are committed to creating a diverse and inclusive workplace where all qualified applicants and employees are treated with respect and dignity—regardless of race, color, gender, age, religion, national origin, ancestry, disab ... View more

View Profile View Profile