DevOps Engineer
Summary
DevOps Engineer building and securing cloud infrastructure for DoD programs using Terraform, Ansible, Kubernetes, and CI/CD pipelines with integrated security scanning.
Why Sabel Systems
Sabel Systems designs and delivers digital engineering ecosystems for DoD programs, enabling teams to connect data, systems, and personnel within secure, scalable environments. Our solutions empower programs to make faster decisions, close sustainment gaps, and meet the digital acquisition requirements.
Rather than simply proposing transformation, we implement and operate it at scale. Our method is clear: we orchestrate existing tools into a governing system of record, ensuring government ownership of infrastructure and traceable decisions. There’s no vendor lock, no proprietary baselines, and no need for ATO rebuilds during transitions.
Sabel Systems is redefining modern defense acquisition. If you seek to solve complex challenges at scale and want your work to directly accelerate military capability while reshaping the DoD’s approach to digital engineering, this is the place for you.
Complexity Simplified. Mission Amplified.
What You’ll Do
- Design, build, and maintain secure cloud infrastructure and platforms for classified DoD systems, incorporating security controls at every layer (network, compute, storage, application)
- Develop and deploy infrastructure-as-code (IaC) using secure, version-controlled approaches (Terraform, CloudFormation, Ansible); implement security controls and compliance requirements through code
- Implement and maintain security hardening standards for Kubernetes clusters, Docker containers, Linux/Windows servers, and cloud resources in accordance with DISA STIGs, NIST guidelines, and DoD security baselines
- Manage network security controls including firewalls, WAF (Web Application Firewalls), network segmentation, access controls (ACLs), and encryption for data in transit and at rest
- Design and implement secrets management solutions (HashiCorp Vault, cloud-native secret managers) to protect credentials, API keys, certificates, and sensitive configuration data
- Design, implement, and maintain secure CI/CD pipelines that enforce security controls throughout the build, test, and deployment process
- Implement automated security scanning at multiple pipeline stages: static application security testing (SAST), dynamic application security testing (DAST), interactive application security testing (IAST), container scanning, and infrastructure-as-code scanning
- Conduct software composition analysis (SCA) to identify and remediate vulnerable dependencies and track open-source license compliance
- Ensure system architecture and configurations comply with DoD security requirements, including DISA Risk Management Framework (RMF), NIST security controls, FISMA requirements, and system security plans (SSPs)
- Implement continuous monitoring and compliance scanning to detect security misconfigurations, unauthorized changes, and control violations in near-real-time
- Configure and manage Security Information and Event Management (SIEM) systems and security monitoring tools to provide visibility into infrastructure and application security events
- Serve as a subject matter expert in incident response for infrastructure and application security incidents; investigate security events and coordinate remediation efforts
- Provide technical support for application development teams, assisting with deployment issues, troubleshooting, and operational runbooks
- Develop and maintain comprehensive technical documentation including architecture diagrams, runbooks, standard operating procedures (SOPs), and security configurations
- Collaborate with security teams, software developers, systems architects, and IT operations to integrate security into development and operations processes