DevSecOps Engineer
Position Overview We are seeking a talented and motivated DevSecOps Engineer with expertise in designing, implementing, and optimizing secure, scalable CI/CD pipelines in highly regulated and secure environments. The ideal candidate will play a critical role in ensuring secure software delivery while adhering to compliance requirements, such as operating within Impact Level 6 (IL6) closed environments. This role requires hands-on experience with modern DevSecOps tools, platforms, and methodologies, including GitLab, Kubernetes, image scanning, static analysis tools, and software signing tools like Cosign. The DevSecOps Engineer will collaborate with cross-functional teams, including developers, system administrators, and cybersecurity professionals, to deploy secure and resilient infrastructure, applications, and pipelines.
Key Responsibilities
- Deploy and maintain secure CI/CD pipelines that support the full software development lifecycle using tools like GitLab, Terraform Helm, or Ansible .
- Deploy and maintain multi-stage CI/CD pipelines (e.g., build, test, scan, release, deploy) for efficient, secure delivery of applications.
- Build and manage Kubernetes clusters in development, testing, and production environments.
- Ensure security best practices, including Role-Based Access Control (RBAC), namespace isolation, and secure ingress/egress traffic configurations.
- Deploy tools and processes to enable rapid provisioning and repeatability while maintaining compliance with cyber and operational standards.
- Work within a secure, air-gapped IL6 environment and implement robust processes to ensure compliance with DoD or other regulatory frameworks.
- Design solutions to securely handle sensitive data, binaries, and infrastructure in disconnected networks.
- Integrate DevSecOps tools such as image scanners, static code analysis tools, Cosign for software signing, and vulnerability management frameworks into the pipeline.
- Manage, configure, and maintain Windows Server (Active Directory, Group Policy, DNS, DHCP).
- Implement and ensure the security and availability of Windows and Linux systems, including patch management, vulnerability assessments, and compliance with organizational policies.
- Automate recurring tasks using scripting tools like PowerShell, Python, or Bash to improve operational efficiency.
- Troubleshoot issues within Windows (file systems, network connectivity, performance, and authentication).
- Plan and execute upgrades, migrations, and installations for both Windows and Linux systems.
- Collaborate with cross-functional teams to ensure systems integration and operational effectiveness.
- Develop and deliver technical documentation, including CI/CD pipeline configurations, workflow processes, and build instructions
SAIC® is a premier Fortune 500® mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives. We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom. Apply To This Job