The Role
Administer and maintain Veracode, SonarQube, GitLab, and Jira platforms; onboard application teams; develop CI/CD pipelines; integrate security testing, code quality, compliance, and deployment automation; support vulnerability remediation; perform platform upgrades, monitoring, troubleshooting, and capacity management; and collaborate with development, infrastructure, cybersecurity, and business teams. The onsite role requires local candidates within 50 miles of Austin, Texas, and may include occasional work outside normal business hours.
Summary Generated by Built In
This is an onsite role; only local candidates will be considered.
The DevSecOps Engineer will support the Texas Department of Transportation (TxDOT). This role is responsible for the administration, implementation, maintenance, and adoption of enterprise software development, security, and delivery platforms. The engineer will serve as a technical subject matter expert, integrating security, automation, and operational best practices into the software development lifecycle (SDLC). This position will collaborate with development teams, infrastructure teams, cybersecurity personnel, and business stakeholders to improve software quality, security posture, and delivery efficiency. Core platform responsibilities include Veracode, SonarQube, GitLab, and Atlassian Jira administration, along with CI/CD pipeline development and automation.
Responsibilities
- Administer and maintain the Veracode platform, including user provisioning, role management, policy configuration, and system governance.
- Support onboarding of application teams to Veracode security scanning capabilities, including SAST, DAST, SCA, and container scanning services.
- Assist development teams with vulnerability remediation activities and security best practices.
- Administer and maintain SonarQube environments, projects, quality profiles, quality gates, and user access controls.
- Onboard application teams and integrate SonarQube into CI/CD pipelines to support code quality initiatives.
- Administer and maintain GitLab Self-Managed environments, including projects, groups, repositories, runners, permissions, and integrations.
- Perform GitLab platform upgrades, maintenance, monitoring, troubleshooting, and capacity management.
- Design, build, maintain, and optimize CI/CD pipelines, including reusable pipeline templates and automation frameworks.
- Integrate security testing, code quality validation, compliance controls, and deployment automation into software delivery workflows.
- Administer Jira projects, workflows, permissions, issue types, dashboards, reports, and automation rules, including integrations with GitLab and other enterprise tools.
Requirements
Minimum Qualifications
- 3 years of experience with DevSecOps methodologies and best practices.
- 3 years of experience with CI/CD pipeline development and automation.
- 3 years of experience with source code management and repository administration.
- 3 years of experience with application security testing tools and practices.
- 3 years of experience with scripting and automation.
- 2 years of experience administering and supporting AWS and/or Azure cloud environments, including cloud infrastructure, security, networking, automation, Infrastructure as Code (IaC), container platforms, and CI/CD integrations.
Preferred Qualifications
- 2 years of experience administering code suggestion and AI-assisted development platforms.
- 2 years of experience planning and executing migrations involving source code repositories, CI/CD platforms, or DevSecOps toolchains.
- 2 years of experience supporting application modernization, cloud migration, and DevSecOps tool integrations within cloud-hosted environments.
- Cloud certifications.
Additional Requirements
- May be required to work outside the normal business hours on weekends, evenings and holidays
- Local candidates only; must currently live within 50 miles of the Austin, Texas work location.
Work Location and Schedule
Location: 125 E. 11th Street, Austin, Texas 78701
Schedule: Monday through Friday, 8:00 AM to 5:00 PM, excluding State holidays
Work Arrangement: Onsite
Skills Required
- 3 years of experience with DevSecOps methodologies and best practices
- 3 years of experience with CI/CD pipeline development and automation
- 3 years of experience with source code management and repository administration
- 3 years of experience with application security testing tools and practices
- 3 years of experience with scripting and automation
- 2 years of experience administering and supporting AWS and/or Azure cloud environments, including cloud infrastructure, security, networking, automation, Infrastructure as Code, container platforms, and CI/CD integrations
- 2 years of experience administering code suggestion and AI-assisted development platforms
- 2 years of experience planning and executing migrations involving source code repositories, CI/CD platforms, or DevSecOps toolchains
- 2 years of experience supporting application modernization, cloud migration, and DevSecOps tool integrations within cloud-hosted environments
- Cloud certifications
- Must currently live within 50 miles of Austin, Texas
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Air InfoSec is a veteran-owned and led cybersecurity consulting and staffing firm based in Austin, Texas, focused on enhancing government security through expert staff placement.








