DevSecOps Engineering Program Manager - JobID-0283
Summary
Leads and scales an enterprise DevSecOps 'Software Factory' platform used by distributed teams building tactical defense systems — running Agile delivery in Jira, driving CI/CD/Kubernetes/IaC decisions with SMEs, briefing government stakeholders, and managing program risk and DoD compliance. On-site in Fall River, MA; must be able to obtain a Secret clearance.
- All applicants must be able to obtain/maintain an active Secret U.S. Security Clearance.
- This is an on-site position. Requiring at least 3 days a week in office, based out of our Fall River, MA location.
- Partner directly with internal engineering teams and technical leads to plan, scope, and prioritize Agile iterations, sprints, and release roadmaps.
- Actively track, manage, and report work from backlog refinement through sprint execution to a verifiable "Definition of Done" (DoD) state.
- Facilitate sprint planning, daily stand-ups, backlog grooming, iteration reviews, and retrospectives to remove blockers and ensure continuous delivery momentum.
- Maintain traceability between user epics/features and contractual milestones using Jira, Confluence, and integrated PMO tools.
- Drive technical decision-making on DevSecOps tooling, CI/CD pipeline modernization, container orchestration (Kubernetes/RKE2), infrastructure-as-code (IaC), and automated testing frameworks in close coordination with technical SMEs.
- Facilitate alignment across architecture, security, and infrastructure leads to translate complex technical challenges into actionable architectural and platform decisions.
- Guide the deployment, operation, and dependency packaging of DevSecOps platforms in air-gapped, high-security, and classified environments.
- Interface directly with U.S. Government customers and program office representatives to deeply understand their operational requirements, mission needs, and strategic vision.
- Prepare and lead executive-level briefings for Government stakeholders covering program progress, schedule health, technical achievements, milestone deliveries, and proactive risk mitigations.
- Ensure engineering team roadmaps and execution stay strictly aligned with customer priorities and mission objectives.
- Engage with third-party software and tooling vendors to evaluate capabilities, manage licensing/support, and ensure tooling integrations meet security and operational standards.
- Act as the advocate for internal and external developer communities across geographically dispersed locations, gathering feedback to continuously improve platform usability, throughput, and reliability.
- Lead and facilitate Technical Interchange Meetings (TIMs), engineering reviews, and working groups across distributed teams (software, systems engineering, cybersecurity, operations, and infrastructure).
- Align cross-program dependencies, establish interface agreements, and resolve conflicting technical priorities across matrixed organizations.
- Manage team burn rate tracking and resource allocation across CLINs and project workstreams.
- Proactively identify, track, and mitigate programmatic, technical, cybersecurity, and staffing risks using structured Risk, Issue, and Opportunity (RIO) management frameworks.
- Support compliance efforts aligned with DoD frameworks (NIST SP 800-171/800-53, DISA STIGs, and Risk Management Framework / Continuous Authority to Operate [cATO]).
- Bachelor’s degree in Computer Science, Systems Engineering, Cybersecurity, Information Technology, or a related technical/management discipline (or equivalent professional experience).
- 7+ years of progressive professional experience in software engineering, DevSecOps, systems engineering, or technical project/program management in DoD or mission-critical environments.
- Demonstrated experience leading Agile teams (Scrum, Kanban, SAFe) with a proven record of driving work items to completion in Jira/Azure DevOps.
- Solid understanding of DevSecOps pipelines and tools (GitLab, Jenkins, SonarQube, Nexus/Artifactory, Anchore, Grype, Trivy, etc.).
- Familiarity with containerization and orchestration (Docker, Kubernetes, RKE2) and infrastructure-as-code concepts (Terraform, Ansible).
- Understanding of automated security integration (SAST, DAST, SCA, secrets detection, SBOM generation).
- Outstanding stakeholder presentation skills with the ability to articulate complex technical accomplishments and risk trade-offs to senior military/government leadership.
- Willingness to travel up to 10%.
- Experience supporting U.S. Navy, NAVSEA, Undersea Warfare, or related DoD defense programs.
- Direct experience managing or deploying platforms adhering to the DoD Enterprise DevSecOps Reference Design and Continuous Authorization to Operate (cATO) processes.
- Hands-on background with classified, air-gapped, or disconnected Software Factory deployments.
- Relevant Project/Agile certifications (e.g., PMP, PMI-ACP, Certified Scrum Master / CSM, SAFe Agilist).
- Relevant Technical certifications (e.g., AWS/Azure Solutions Architect, CKA/CKAD, CompTIA Security+, CISSP).
- Generous benefits package
- Competitive PTO
- Paid holidays
- 401(k) with immediate vesting and matching
- 9/80 optional schedule (2nd and 4th Friday off every month)
- Tuition Assistance Reimbursement Program
- Professional Development Resources
- Pre-Tax Commuter Benefits
- Organization-Wide Monthly Tech Connect Events
- Annual Employee Recognition Awards
- Regular Social Events and Catered Lunches
EEO Statement:
Skills
- Agile
- Ansible
- Artifactory
- AWS
- Azure
- Azure DevOps
- Certified ScrumMaster
- CI/CD
- Cissp
- Community Management
- Confluence
- Containerization
- Cybersecurity
- DAST
- DevOps
- DevSecOps
- Docker
- GitLab
- Infrastructure as Code
- Jenkins
- Jira
- Kanban
- Kubernetes
- Nist
- Program Management
- SAST
- Scrum
- SonarQube
- Terraform
- Test Automation