Senior DevSecOps & Systems Engineer (Full Stack)

Posted Yesterday
Be an Early Applicant
Sterling, VA, USA
Hybrid
Senior level
Security
The Role
Leads secure DevSecOps automation, systems integration, infrastructure engineering, and full-stack application development. Designs CI/CD pipelines with security controls, implements infrastructure as code, hardens systems, supports RMF/ATO activities, and develops secure applications, APIs, dashboards, and automation tools. Performs requirements analysis, integration, verification, validation, monitoring, and root-cause analysis. Leads technical projects, mentors engineers, and collaborates across development, operations, and security teams.
Summary Generated by Built In

SAIC is seeking a highly skilled and versatile Senior SecDevOps & Systems Engineer with strong full-stack development capabilities to join our IT team. This role unifies three critical functions: secure DevOps automation, end-to-end systems engineering, and hands-on application development. The ideal candidate will lead the design, integration, and secure delivery of complex systems — architecting the infrastructure, building the pipelines that deploy to it, developing applications that run on it, and embedding security at every layer.

This role requires deep expertise spanning software development, IT operations, systems engineering, and security engineering, with the ability to bridge gaps between systems, teams, and processes while serving as a hands-on technical leader.

This position is hybrid-remote and requires 2 days on-site per week in Sterling, VA.

Systems Engineering & Integration Responsibilities:

  • Lead the design and implementation of integrated, end-to-end systems solutions spanning infrastructure, platform, and application layers to support enterprise objectives.
  • Perform systems requirements analysis, decomposition, and traceability from enterprise objectives to implemented capabilities.
  • Define and manage interfaces between subsystems, vendor products, and external systems, including interface control documentation.
  • Plan and execute integration, verification, and validation (IV&V) activities to prove systems meet functional, performance, and security requirements.
  • Conduct systems analysis, trade studies, and capacity planning to identify opportunities for optimization; document and defend technical decisions in formal reviews.
  • Manage and monitor integrated systems to ensure high availability, performance, and security; lead root cause analysis and implement strategic corrective actions.

SecDevOps & Automation Responsibilities:

  • Architect, implement, and maintain secure CI/CD pipelines with integrated security gates, including static and dynamic application security testing (SAST/DAST), software composition analysis (SCA), container scanning, and secrets management.
  • Develop and maintain robust automation workflows for software build, test, security validation, and deployment processes.
  • Implement infrastructure as code (IaC) with embedded security policy enforcement (policy-as-code) for cloud and hybrid environments.
  • Harden operating systems, containers, and platforms to applicable security baselines (e.g., DISA STIGs, CIS Benchmarks) and automate compliance verification.
  • Support security authorization activities, including RMF/ATO documentation, vulnerability management, remediation tracking, and audit evidence generation.
  • Ensure systems integration and delivery align with industry best practices and applicable compliance and security standards.
  • Provide expert guidance on SecDevOps tools and practices, facilitating knowledge sharing and maturing the organization's SecDevOps culture.

Full Stack Development Responsibilities:

  • Design, develop, and maintain full-stack applications, including responsive front-end interfaces, back-end services and APIs, and supporting data layers.
  • Build and integrate RESTful and/or event-driven APIs between internal systems, vendor products, and external services.
  • Apply secure coding practices (e.g., OWASP Top 10 mitigation) and participate in code reviews with a security-first mindset.
  • Develop internal tooling, dashboards, and automation utilities that enhance operational visibility and team efficiency.
  • Collaborate with development, operations, security, and other IT teams to ensure seamless, high-quality, secure software delivery.

Leadership Responsibilities:

  • Lead projects from concept through deployment and sustainment, participating in formal technical and design reviews.
  • Mentor junior engineers and developers across DevOps, systems, and software disciplines.
  • Stay current with emerging technologies in systems integration, SecDevOps, and application development, recommending adoption where beneficial.
Qualifications

Required Skills and Qualifications

  • Strong expertise in DevOps/SecDevOps methodologies and tools (e.g., Jenkins, GitLab CI, Git, Ansible, Docker, Kubernetes).
  • Demonstrated experience integrating security into CI/CD pipelines (SAST, DAST, SCA, container scanning, secrets management).
  • Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automation tasks.
  • Full-stack development proficiency, including a modern front-end framework (e.g., React, Angular, or Vue), a back-end language/framework (e.g., Node.js/TypeScript, Python, Java, or .NET), and relational and/or NoSQL databases.
  • Experience designing, building, and consuming RESTful APIs.
  • Experience with cloud services (AWS, Azure, Google Cloud), their management APIs, and cloud security services (e.g., IAM, key management, network security controls).
  • Systems engineering experience, including requirements analysis, systems integration, interface management, and verification and validation.
  • Experience with Linux and/or Windows server engineering, virtualization, and network fundamentals in enterprise or hybrid environments.
  • Knowledge of security hardening baselines (DISA STIGs, CIS Benchmarks) and vulnerability management practices.
  • Excellent problem-solving skills and the ability to work in a dynamic, fast-paced environment.
  • Strong communication and collaboration skills to work effectively across teams.
  • Proven ability to lead projects and mentor junior team members.

Preferred Skills and Qualifications

  • Certifications in security, DevOps, or cloud computing (e.g., CISSP, Security+, CKA/CKS, AWS Certified DevOps Engineer, AWS Certified Security – Specialty).
  • Experience with infrastructure as code using Terraform or CloudFormation, and policy-as-code tools (e.g., OPA, Sentinel).
  • Experience supporting RMF/ATO processes, NIST SP 800-53 controls, or FedRAMP environments.
  • Understanding of microservices architecture, container orchestration at scale, and API gateway patterns.
  • Experience with model-based systems engineering (MBSE) or formal requirements management tools (e.g., DOORS, Jama).
  • Experience with observability and monitoring stacks (e.g., Prometheus, Grafana, ELK, Splunk).
  • Active security clearance or the ability to obtain one.

Education and Experience

  • Bachelor's degree in Computer Science, Information Technology, Computer Engineering, or a related field and nine (9) or more years of related experience spanning systems integration, DevOps/SecDevOps automation, and software development.
  • Master's degree and five (7) or more years of related experience.

BI Requirement

  • Current holder of a DHS Public Trust clearance or the ability to obtain one.
  • Note: Employment will be contingent upon having/obtaining a DHS Public Trust clearance prior to starting.
About UsSAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Skills Required

  • Bachelor’s degree in Computer Science, Information Technology, Computer Engineering, or a related field, plus nine or more years of related experience
  • Alternatively, a master’s degree and seven or more years of related experience
  • Strong expertise in DevOps or SecDevOps methodologies and tools, including Jenkins, GitLab CI, Git, Ansible, Docker, and Kubernetes
  • Experience integrating SAST, DAST, SCA, container scanning, and secrets management into CI/CD pipelines
  • Proficiency in Python, Bash, or PowerShell scripting
  • Full-stack development experience with a modern front-end framework, back-end language or framework, and relational or NoSQL databases
  • Experience designing, building, and consuming RESTful APIs
  • Experience with AWS, Azure, or Google Cloud, including management APIs and cloud security services
  • Systems engineering experience in requirements analysis, systems integration, interface management, verification, and validation
  • Experience with Linux and/or Windows server engineering, virtualization, and enterprise networking fundamentals
  • Knowledge of DISA STIGs, CIS Benchmarks, and vulnerability management practices
  • Excellent problem-solving, communication, collaboration, project leadership, and mentoring skills
  • Security, DevOps, or cloud certifications such as CISSP, Security+, CKA/CKS, or AWS certifications
  • Experience with Terraform, CloudFormation, OPA, Sentinel, or other infrastructure-as-code and policy-as-code tools
  • Experience supporting RMF/ATO processes, NIST SP 800-53 controls, or FedRAMP environments
  • Understanding of microservices, large-scale container orchestration, and API gateway patterns
  • Experience with MBSE or requirements management tools such as DOORS or Jama
  • Experience with Prometheus, Grafana, ELK, Splunk, or other observability and monitoring stacks
  • Current security clearance or ability to obtain one
  • Current DHS Public Trust clearance or ability to obtain one before starting employment
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Stamford, CT
34,000 Employees

What We Do

Spectrum San Diego is a high tech security innovator, specializing in ultra-low-dose X-ray screening systems.

Similar Jobs

BlackLine Logo BlackLine

Senior Software Engineer

Cloud • Fintech • Information Technology • Machine Learning • Software • App development • Generative AI
Remote or Hybrid
USA
1810 Employees
146K-183K Annually
In-Office or Remote
3 Locations
85422 Employees
195K-457K Annually

Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

Storage Sales Specialist - US Space Force

Artificial Intelligence • Cloud • Information Technology • Consulting
In-Office or Remote
4 Locations
85422 Employees
195K-457K Annually

Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

Enterprise Account Manager

Artificial Intelligence • Cloud • Information Technology • Consulting
In-Office or Remote
4 Locations
85422 Employees
195K-457K Annually

Similar Companies Hiring

Closinglock Thumbnail
Fintech • Real Estate • Security • Software • Financial Services • Cybersecurity • PropTech
Austin, TX
110 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account