Sr. DevSecOps Engineer I (6737)

Posted 3 Days Ago
Be an Early Applicant
Reston, VA, USA
In-Office
170K-235K Annually
Senior level
Information Technology • Consulting
The Role
Designs, maintains, and supports secure DevSecOps pipelines across classified environments. Responsibilities include operating GitLab CI and Jenkins, enforcing security scanning and STIG compliance, maintaining AWS infrastructure through CloudFormation, troubleshooting Linux and AWS resources, managing Keycloak access, supporting OpenShift and Docker deployments, monitoring Prisma Cloud scans, and documenting managed tools. The role also provides Tier 1–3 customer support and collaborates with development teams and enterprise stakeholders.
Summary Generated by Built In

As a DevSecOps Engineer I, you’ll play a critical role in designing, implementing, and maintaining secure and efficient software development and deployment pipelines. You will collaborate with cross-functional teams to integrate security practices seamlessly into the development and operations lifecycle, ensuring the delivery of high-quality, secure, and reliable software solutions.

We know that you can’t have great technology services without amazing people. At MetroStar, we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people, we live by our mission: A passion for our people. Value for our customers.

What you’ll do:

  • Provide technical support to development teams working across multiple classification environments by responding to tickets, troubleshooting issues, and onboarding teams to the various managed DevSecOps tools. 
  • Support CI/CD pipeline operations across GitLab CI and Jenkins for dozens of development teams, ensuring adherence to automated security scanning and STIG compliance validation. 
  • Maintain and update Infrastructure as Code (IaC) templates using primarily CloudFormation to manage DevSecOps tool infrastructure across AWS environments, including patching, backup and recovery, and hardening. 
  • Analyze system and application logs using Linux command-line tools (e.g., grep, awk, tail) to troubleshoot customer-reported issues and service problems, including AWS resource monitoring (EC2, RDS, Security Groups) and infrastructure troubleshooting.  
  • Support identity and access management operations using Keycloak, assist with user onboarding, troubleshooting authentication issues, and maintaining user and group access for managed DevSecOps tools. 
  • Maintain and develop technical documentation and user guide for managed DevSecOps tools, utilizing GitLab wikis and Pages to support team and customer knowledge sharing. 
  • Support containerized tool deployments in OpenShift by troubleshooting container issues, monitoring Prisma security scan results, and maintaining existing Docker image builds and OpenShift configurations using console and CLI tools.

What you’ll need to succeed:

  • Active TS/SCI with CI Poly security clearance.
  • Certification to satisfy IAT Level 2 (e.g., Security+, GSEC, SSCP, or similar).
  • 7+ years of experience as a DevSecOps Engineer or similar role, with a strong focus on infrastructure automation, scalability, and reliability across the software development lifecycle; and delivering delivering DevSecOps services across multiple classified domains (e.g., IL5, IL6+).
  • Experience with DevOps practices, CI/CD pipelines, containerization, and other automation tools (e.g., Jenkins, GitLab CI/CD, Artifactory, SonarQube, and/or Prisma Cloud).  
  • Experience with scripting languages (e.g., Python, Bash), in a Linux environment (e.g., RHEL, Oracle Linux, or similar).
  • Experience with infrastructure as code (IaC) tools (e.g., Terraform and/or CloudFormation, Ansible).  
  • Experience with Tier 1-3 customer support and ticketing systems (e.g., GitLab Service Desk or ServiceNow).
  • Understanding of AWS capabilities (e.g., EC2, S3, IAM, RDS, etc) and architecting secure cloud-based infrastructure and services.
  • Hands-on experience configuring applications and systems to comply with Secure Technical Implementation Guides (STIG) and Security Requirements Guide (SRG) by implementing security best practices.   
  • Knowledge of security best practices, common vulnerabilities, and exposure to security frameworks (e.g., OWASP, NIST, OpenSCAP).
  • Ability to work independently and communicate with stakeholders across a global enterprise and cross-functional teams to drive project completion.

SALARY RANGE: $170,000 - $235,000

The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including: 

  • The candidate's professional background and relevant work experience
  • The specific responsibilities of the role and organizational needs
  • Internal equity and alignment with current team compensation
  • This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include:
    • Performance-based bonuses
    • Company-paid training and/or certifications
    • Referral bonuses

To apply for this position, please submit your resume via the form below or through our careers page: https://www.metrostar.com/jobs/

Application Deadline:  Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.

Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.

Benefits: All full-time employees are eligible to participate in our benefits programs:

  • Health, dental, and vision insurance
  • 401(k) retirement plan with company match
  • Paid time off (PTO) and holidays
  • Parental Leave and dependent care
  • Flexible work arrangements
  • Professional development opportunities
  • Employee assistance and wellness programs

Like we said, we are big fans of our people. That’s why we offer a generous benefits package, professional growth, and valuable time to recharge. Learn more about our company culture code and benefits. Plus, check out our accolades.

Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment based on merit and without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, status as a protected veteran, or any other status protected by applicable federal, state, local, or international law.

 What we want you to know:

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

 Not ready to apply now? 

Sign up to join our newsletter here.

Skills Required

  • Active TS/SCI security clearance with CI Polygraph
  • IAT Level 2 certification, such as Security+, GSEC, SSCP, or equivalent
  • 7+ years of experience as a DevSecOps Engineer or in a similar role
  • Experience delivering DevSecOps services across multiple classified domains, such as IL5 and IL6+
  • Experience with DevOps practices, CI/CD pipelines, containerization, and automation tools such as Jenkins, GitLab CI/CD, Artifactory, SonarQube, or Prisma Cloud
  • Experience with Python or Bash scripting in a Linux environment
  • Experience with infrastructure as code tools such as Terraform, CloudFormation, or Ansible
  • Experience with Tier 1–3 customer support and ticketing systems such as GitLab Service Desk or ServiceNow
  • Understanding of AWS capabilities including EC2, S3, IAM, and RDS
  • Experience architecting secure cloud-based infrastructure and services
  • Hands-on experience configuring systems to comply with STIG and SRG requirements
  • Knowledge of security best practices and common vulnerabilities
  • Exposure to OWASP, NIST, or OpenSCAP security frameworks and tools
  • Ability to work independently and communicate with global enterprise stakeholders and cross-functional teams
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
250 Employees
Year Founded: 1999

What We Do

MetroStar is a digital services and management consulting company specializing in emerging technologies within the public sector. MetroStar is a mission accelerator - we embrace disruptions in tech to propel progress. Through our user-centric capabilities, we create new paths to government innovation and shape thoughtful outcomes for the people.

Similar Jobs

Cloudera Logo Cloudera

Manager, Applied AI Strategy and Operations

Artificial Intelligence • Cloud • Software • Big Data Analytics
In-Office or Remote
5 Locations
3092 Employees
144K-162K Annually
Hybrid
Sterling, VA, USA
205000 Employees
38K-66K Hourly
Hybrid
Falls Church, VA, USA
205000 Employees
43K-67K Hourly
Hybrid
Arlington, VA, USA
205000 Employees
43K-67K Hourly

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account