DevSecOps Engineer
Summary
DevSecOps Engineer securing the software development lifecycle for Dark Wolf's government customers: hardening GitLab CI/CD pipelines, containerized apps (Docker/Kubernetes), and IaC, while integrating security scanning and secrets management. Requires 12+ years of experience, US citizenship, and an active Secret clearance; based in San Antonio, TX ($155k–$185k).
Dark Wolf is seeking a DevSecOps Engineer to join our team and play a crucial role in securing our software development lifecycle (SDLC) using automation to support web application deployments. The candidate will be responsible for understanding and securing automated CI/CD pipelines, infrastructure as code (IaC), and advising other teams on security best practices across the entire pipeline development process. Our DevSecOps engineers are asked to solve challenging security problems for unique customers and have a direct impact on the direction of software products and solutions used by those customers.
Key Responsibilities:
- Implement, secure, and improve applications using GitLab CI/CD, focusing on reviewing pipeline security scans and hardening of web applications.
- Support Certificate to Field granting to the customer's platform using knowledge of secure development practices.
- Familiar with Platform One BigBang services and technologies.
- Work within Agile frameworks such as Scrum and Kanban, utilizing Atlassian Jira and Confluence for project management and documentation.
- Understand how to deploy and manage containerized applications using Docker, Kubernetes, and ArgoCD on Red Hat Enterprise Linux environments.
- Be familiar with Infrastructure as Code (IaC) tools like Ansible and Terraform.
- Manage storage and artifact repositories using MinIO, Nexus, and S3 solutions.
- Be acquainted with monitoring system performance with tools like Grafana, Kibana, and Prometheus.
- Integrate and manage security scanning tools like Anchore, NeuVector, SonarQube, and Twistlock (Prisma Cloud) into the CI/CD pipeline to identify and mitigate vulnerabilities.
- Secure sensitive data using HashiCorp Vault and SOPS Encryption for secrets management.
- Understand PostgreSQL and other database technology.
- Familiarity in various programming languages, including JavaScript, Bash Scripting, C++, Go, PHP, Python, Rust, and TypeScript.
- Work with multiple frameworks and libraries such as .Net, FastAPI, Flask, Flutter, Rails, React, Shiny, and Vue to support web application deployments.
- Utilize build tools like Gradle and Maven, along with package managers such as Npm, Yarn, and Yum, to manage dependencies and automate builds.
Required Qualifications:
- 12+ years of proven experience in DevSecOps, with a strong background in Linux and container technologies.
- Expertise in implementing and managing CI/CD pipelines.
- High level of experience with containerization technologies (Docker, Kubernetes).
- Experience working with CI/CD tools (GitLab CI/CD).
- Expertise in working with IaC tools (Ansible, Terraform).
- Knowledge of storage and artifact repositories (MinIO, Nexus, S3).
- Familiarity with monitoring tools (Grafana, Kibana, Prometheus).
- Experience with security scanning tools (Anchore, NeuVector, SonarQube, Twistlock).
- Experience applying security remediations to systems and software.
- Experience with secrets management tools (HashiCorp Vault, SOPS).
- US Citizen and an active Secret security clearance
Desired Qualifications:
- Familiarity with programming languages (e.g., Python, Go, Bash) and frameworks/libraries (e.g., .Net, React, Rails).
- Familiarity with build tools (e.g., Gradle, Maven) and package managers (e.g., Npm, Yarn, Yum).
- Experience with databases (PostgreSQL).
This position is located in San Antonio, TX.
The estimated salary range for this position is $155,000.00 - $185,000.00, commensurate on experience and technical skillset.
We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
Skills
- Agile
- Ansible
- Argo CD
- Atlassian
- Automation
- Bash
- CI/CD
- Cloud
- Confluence
- Containerization
- C++
- DevSecOps
- Docker
- .NET
- FastAPI
- Flask
- Flutter
- GitLab
- Gradle
- Grafana
- Infrastructure as Code
- JavaScript
- Jira
- Kanban
- Kibana
- Kubernetes
- Linux
- Maven
- Npm
- PHP
- PostgreSQL
- Prometheus
- Python
- Rails
- React
- Rust
- S3
- Scrum
- SDLC
- Secrets Management
- SonarQube
- Terraform
- TypeScript
- Vault
- Vue
As published by greenhouse · 10 questions
Basics
First Name, Last Name, Email, Phone, Resume/CV, Location
Short answers (3)
- LinkedIn Profile optional
- Website optional
- Where did you hear about us? optional
Pick from a list (7)
- Are you a US Citizen?
- Do you currently hold an active security clearance?
- What is the highest level of security clearance you currently hold?
- Voluntary Self-Identification: For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file. As set forth in Dark Wolf Solutions’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law. Gender:
- Voluntary Self-Identification For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file. As set forth in Dark Wolf Solutions’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law. Are you Hispanic/Latino?
- If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows: A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability. A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service. An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense. An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985. Veteran Status:
- Form CC-305 OMB Control Number 1250-0005 Expires 05/31/2023 Voluntary Self-Identification of Disability Why are you being asked to complete this form? We are a federal contractor or subcontractor required by law to provide equal employment opportunity to qualified people with disabilities. We are also required to measure our progress toward having at least 7% of our workforce be individuals with disabilities. To do this, we must ask applicants and employees if they have a disability or have ever had a disability. Because a person may become disabled at any time, we ask all of our employees to update their information at least every five years. Identifying yourself as an individual with a disability is voluntary, and we hope that you will choose to do so. Your answer will be maintained confidentially and not be seen by selecting officials or anyone else involved in making personnel decisions. Completing the form will not negatively impact you in any way, regardless of whether you have self-identified in the past. For more information about this form or the equal employment obligations of federal contractors under Section 503 of the Rehabilitation Act, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp. How do you know if you have a disability? You are considered to have a disability if you have a physical or mental impairment or medical condition that substantially limits a major life activity, or if you have a history or record of such an impairment or medical condition. Disabilities include, but are not limited to: Autism; Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, or HIV/AIDS; Blind or low vision; Cancer; Cardiovascular or heart disease; Celiac disease; Cerebral palsy; Deaf or hard of hearing; Depression or anxiety; Diabetes; Epilepsy; Gastrointestinal disorders, for example, Crohn's Disease, or irritable bowel syndrome; Intellectual disability; Missing limbs or partially missing limbs; Nervous system condition for example, migraine headaches, Parkinson’s disease, or Multiple sclerosis (MS); Psychiatric condition, for example, bipolar disorder, schizophrenia, PTSD, or major depression. Disability Status: