DevSecOps Engineer
Washington, DC
Applications have closed
BLEN
BLEN is an 8(a) and veteran-owned digital agency that uses human-centered design and modern technology to help leading federal agencies, non-profits and enterprises to deliver compelling digital solutions.
About BLEN
BLENers are passionate about using technology to solve real-world problems. For over 20 years, we've been helping government agencies and businesses transform their digital experience. We bring fresh perspectives to every project, from modernizing legacy systems to building cloud-native applications to experimenting with technology that’s just around the corner. We value building long and enduring partnerships to solve complex challenges by putting humans at the center of all the experiences. Our team thrives on turning tricky problems into solutions that are practical, accessible and performant.
About this position
DevSecOps Engineers at BLEN play a pivotal role in our modernization program, implementing and maintaining robust Continuous Integration/Continuous Deployment (CI/CD) pipelines while integrating security at every stage of the software development lifecycle. They combine deep technical expertise, security awareness, and a holistic understanding of the software development process to streamline our delivery pipeline, enhance productivity, and ensure the security and reliability of our solutions. Our DevSecOps team collaborates closely with development, operations, and security teams to create a seamless, efficient, and secure software delivery process that meets the high standards required in government contracting environments.
BLENers are passionate about using technology to solve real-world problems. For over 20 years, we've been helping government agencies and businesses transform their digital experience. We bring fresh perspectives to every project, from modernizing legacy systems to building cloud-native applications to experimenting with technology that’s just around the corner. We value building long and enduring partnerships to solve complex challenges by putting humans at the center of all the experiences. Our team thrives on turning tricky problems into solutions that are practical, accessible and performant.
About this position
DevSecOps Engineers at BLEN play a pivotal role in our modernization program, implementing and maintaining robust Continuous Integration/Continuous Deployment (CI/CD) pipelines while integrating security at every stage of the software development lifecycle. They combine deep technical expertise, security awareness, and a holistic understanding of the software development process to streamline our delivery pipeline, enhance productivity, and ensure the security and reliability of our solutions. Our DevSecOps team collaborates closely with development, operations, and security teams to create a seamless, efficient, and secure software delivery process that meets the high standards required in government contracting environments.
What we would like from you
- As a DevSecOps Engineer at BLEN, you will be at the forefront of implementing and supporting our CI/CD pipeline, ensuring the integration of security practices throughout the software development lifecycle. Your responsibilities will include:
- Support DevSecOps efforts to ensure delivery of a demand model leveraging continuous everything to reduce defects while increasing productivity and time-to-market
- Assist with the establishment of CI/CD pipeline guidelines, standards, and strategies
- Communicate with development teams to ensure adherence to CI/CD guidelines and standard DevSecOps processes
- Support the technical planning, configuration, integration, verification, and validation of the pipeline toolchain
- Implement automated methods to improve system performance and reliability, including scripting, integration, and problem resolution related to the CI/CD pipeline toolchain
- Quickly learn business workflows, technical architecture, and dependent systems of the supported services
- Collaborate with cross-functional teams to integrate various DevSecOps practices as part of a CI/CD implementation
- Troubleshoot issues within the pipeline and provide solutions
- Stay updated with the latest DevSecOps trends, tools, and best practices
- Contribute to the continuous improvement of our DevSecOps processes and tooling
- Support the implementation of security measures throughout the CI/CD pipeline
- Assist in the creation and maintenance of documentation for DevSecOps processes and tools
- Your main goal will be to ensure our software delivery process is efficient, secure, and aligned with our modernization program's objectives through the effective implementation and support of DevSecOps practices and CI/CD pipelines.
Basic qualifications
- Essential Requirements
- 5+ years of experience in software development or related fields
- At least two years of hands-on experience supporting DevOps/DevSecOps to reengineer and automate the software development process
- Experience in the technical aspects of DevSecOps techniques, continuous integration, continuous testing, and continuous deployment
- Proficiency with distributed source control (Git)
- Experience with dependency management tools
- Familiarity with leading CI/CD tools such as Jenkins or TFS
- Understanding of Pipeline as Code scripting technologies
- Experience with industry-standard Static Code Analysis (SCA) tools such as SonarQube, Nexus IQ Server, or Fortify
- Hands-on experience integrating SCA tools into CI/CD pipeline
- Familiarity with open-source tools for test automation such as Selenium
- Preferred Skills and Experience
- Experience working in a large software development program using Agile (preferably SAFe) development methodology
- Experience implementing DevSecOps for a Cloud-based system on a modernization program
- Knowledge of Cloud Service Platforms such as AWS or Azure
- Experience with container orchestration using tools such as Docker-compose
- Familiarity with Container Management Platforms such as OpenShift
- Experience with Infrastructure as Code tools such as Ansible, Chef, or Puppet
- Knowledge of Continuous Monitoring tools such as ELK Stack (Elasticsearch, Logstash/Fluentd, Kibana)
- Relevant certifications in DevOps, cloud platforms, or security
Requirement
- Must be a US Citizen or legal resident and able to work domestically
- Must be able to attain low-level security clearance
Perks
- Work from anywhere.
- Competitive pay.
- A contribution to your health benefit.
- The chance to work on high-visibility projects and make a significant impact.
Get to know us
- We are a small, creative and highly technical team.
- Our heroes are the scrappy folks that dare to dream and do great things. We love people that care more about doing the right thing than taking a shortcut.
- We believe in finishing projects and floor our clients by how much we cared about their project.
- We believe in integrity and because we're small, we are very selective of our partners and clients.
- We do not use phrases like 'human resource' because you are NOT a resource. You are a team member and we will treat you like one.
What you should expect from us
- We will treat you fairly.
- We give you space to grow both personally and professionally.
- We will hear your ideas even when we disagree -- especially when we disagree.
- We will be equitable with our success and be honest with our challenges.
- We will always tell you the truth. Even when the truth is difficult.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
2
0
0
Categories:
DevSecOps Jobs
Security Engineering Jobs
Tags: Agile Ansible Automation AWS Azure CI/CD Clearance Cloud Code analysis DevOps DevSecOps Docker Elasticsearch ELK Jenkins Monitoring Puppet Scripting SDLC Security Clearance Selenium SonarQube
Perks/benefits: Competitive pay
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Systems Security Officer jobsInformation System Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Manager jobsSenior Network Security Engineer jobsSenior Cybersecurity Engineer jobsInformation Security Specialist jobsSecurity Consultant jobsSenior Information Security Analyst jobsSenior Penetration Tester jobsSecurity Specialist jobsCyber Security Specialist jobsIT Security Engineer jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsIT Security Analyst jobsPrincipal Security Engineer jobsInformation System Security Officer (ISSO) jobsStaff Security Engineer jobsCloud Security Architect jobsCyber Security Architect jobsSecurity Operations Analyst jobsSenior Information Security Engineer jobsSystems Administrator jobsThreat Intelligence Analyst jobs
GDPR jobsSaaS jobsForensics jobsEncryption jobsMalware jobsTop Secret jobsEDR jobsSDLC jobsSplunk jobsRMF jobsSQL jobsIDS jobsIPS jobsBash jobsCompTIA jobsIntrusion detection jobsDoDD 8570 jobsDocker jobsThreat detection jobsFinance jobsITIL jobsOWASP jobsTCP/IP jobsTerraform jobsActive Directory jobs
VPN jobsCRISC jobsGIAC jobsUNIX jobsClearance Required jobsIT infrastructure jobsBanking jobsSANS jobsJavaScript jobsPolygraph jobsAnsible jobsHIPAA jobsJira jobsDNS jobsMITRE ATT&CK jobsSOX jobsOSCP jobsCCSP jobsData Analytics jobsMachine Learning jobsSOC 2 jobsSecurity strategy jobsSOAR jobsGCIH jobsCISO jobs