Job Description
Title: DevSecOps Lead Engineer
Location: US-Remote
C: 12.94
(Remote)
US-Remote
Full-time
Company Overview
GovCIO is a team of transformerspeople who are passionate about transforming government I.T. We believe in making a difference by developing digital strategies and delivering the technology-related innovation that improves governmental operations each day.
But we can’t do it alone. We welcome and nurture an inclusive and diversified work culture. Because different backgrounds, experiences, abilities, and perspectives make us better decision-makers, problem solvers, and creators. We’re changing the face of I.T. – from our diverse staff to the end-products we develop. And we’re excited to expand our team. Are you ready to be a transformer?
We are looking for a highly motivated, experienced DevSecOps Lead Engineer with the ability to learn quickly and act independently. Deep understanding of security, cloud engineering, and DevOps are critical for this role. The selected candidate will work in a high-paced environment automating, supporting, and building medium to large scale Veterans’ solutions. Although this is a hands-on role, architect and management experience is required. The candidate will be responsible for leading the development of cloud and DevOps solutions for detecting and neutralizing cybersecurity vulnerabilities and threats. Strong emphasis on working with development teams in areas such as Authority To Operate (ATO), Infrastructure as Code (IaC), build and deployment pipelines, proactive monitoring systems, and securing the network infrastructure.
Since our environment leans heavy towards GovCloud, AWS Architect, Developer, and SysOps certifications are helpful. We will actively support your career path in that area. An ideal candidate has both Agile team experience and strong technical experience to support the qualifications for this position, especially the ability to keep releases on track by resolving DevOps-related impediments. You must have critical thinking skills, strong problem-solving abilities, and a strong track record of meeting project milestones and deadlines.
GovCIO is expanding its development organization in support of a continuously expanding portfolio of solutions. We leverage current and emerging services offered by both AWS and Azure. Our roadmap is evolving as we work to identify and continuously deliver transformative capabilities for both our internal and external customers. Join us for the opportunity to define and drive successes within a team of empowered technologists!
Responsibilities
- Manage large cross-functional projects, create and maintain a roadmap, define and track Objectives and Key Results (OKRs), create and prioritize initiatives and related backlog, coordinate cross-functional project priorities and create execution plans, drive projects to success and support launches, lead architecture/data model/integration/product interlock discussions.
- Shared responsibility with architects for DevOps vision for a portfolio of projects within a unified software development shop.
- Oversee the portfolio’s security, backup, and failover strategies.
- Responsible for technical DevOps roadmap for build, deployment, monitoring, and general automation of the development platform.
- Responsible for developing and delivering scripts and automation tools used to build, integrate, and deploy software releases.
- Responsible for monitoring and maintaining Cloud infrastructure.
- Responsible for Git/GitHub, Jira, and DevOps pipeline integrations, including Pull Request (PR) gatekeeper checks.
- Integrate GitHub, Jira, AWS with Slack to provide visibility and insight for the engineers and the business about the full development lifecycle.
- Support development teams with end-to-end automation of infrastructure management, application deployment, and monitoring in an AWS GovCloud environment.
- Responsible for maintaining federal Authority To Operate (ATO) by meeting NIST 800-53 Rev 5 Security Controls in AWS GovCloud, Azure Government, and on-premises environments (most work is in AWS GovCloud).
- Maintain ATO documentation, including Business Impact Analysis (BIA), Disaster Recover Plans (DRPs), Configuration Management Plan (CMP), Information System Contingency Plan (ISCP), System Security Plan, and Plan of Action and Milestones (POAMs) related to remediation of security findings.
- ATO technical and testing requirements include Nessus scans, database scans, penetration testing and application assessments, application security testing, software composition analysis, security configuration compliance, and security control reviews.
- Integrate PowerBI within Azure Government with AWS GovCloud and on-premises environments.
- Create scripts and/or templates to automate and/or bootstrap infrastructure provisioning and management tasks, including Terraform and CloudFormation to provision AWS services.
- Work closely with our architects and developers to drive the evolution of our Continuous Integration, Continuous Delivery (CI/CD) system.
- Monitor and support all installed systems and infrastructure.
- Contribute to the design of information and operational support systems.
- Evaluate application performance, identify potential bottlenecks, develop solutions, and implement them with the help of developers.
Qualifications
- Bachelor’s Degree in Computer Science, Engineering, or Mathematics.
- 15 or more years of professional software development experience.
Required Skills and Experience
- 2 or more years of experience in each of the following roles:
- Release or Build Manager
- DevOps or Engineering Manager/Lead
- Solutions or Infrastructure Architect
- Experience with DevOps pipelines involving:
- GitHub/Git, frontend builds (especially NPM),
- Backend builds (especially but not limited to Python and .Net core),
- Artifact/binary repositories (including but not limited to PyPi, NuGet and NPM),
- Continuous Integration Services (Azure DevOps preferred), and
- Cloud platforms such as Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP)
- Must reside and work within the continental U.S.
- Must be able to pass a Department of Veterans Affairs Public Trust clearance.
- Strong scripting skills in Python, Bash, or JavaScript. Ability to quickly pick up, maintain, or migrate PowerShell also helpful.
- Experience with infrastructure deployment/configuration using tools such as Ansible, Terraform, and CloudFormation.
- Experience with Static Application Security Tests (SAST) and Dynamic Application Security Testing (DAST) tools, especially Fortify, Sonar, and Nessus.
- Knowledge and understanding of IT architectures, distributed systems, and microservices.
- Knowledge and experience with containerization (Docker, Kubernetes, AKS).
- Outstanding troubleshooting/problem-solving abilities.
- Demonstrated experience with secure development, coding, engineering practices.
- Working knowledge of Linux platforms (especially AWS Amazon Linux 2).
- Experience with Azure DevOps.
- Experience with systems reliability, load balancing, monitoring, logging.
- Proficiency with Git, GitHub or BitBucket, and Jira.
- Strong system design, application programming, and clean code skills a must.
- Strong coding skills demonstrated by frequent, smooth, professional GitHub Pull Requests (PR) reviews.
- Strong design skills (includes ability to create diagrams and write design documentation independently).
- Understanding of systems design and architecture (enough to work with architects).
- Strong written and verbal communication skills; ability to explain complex concepts to a wide variety of individuals with varying technical skills.
- Strong understanding of Scrum and Agile.
- Demonstrated ability to execute in an agile environment, especially Scrum and/or Kanban. This especially includes ability to estimate and meet deadlines, focus on priorities, understand goals and objectives, assist with planning.
- Demonstrated ability to define backlog items in Jira and assist with refinement of product backlogs.
- Team player with demonstrated ability to:
- Work well within a team.
- Work independently.
- Meet deadlines.
- Independently learn new technologies.
- Collaborate, take direction, take initiative, and drive efforts rather than waiting to be tasked and directed.
- Thrive in a fast-paced environment.
- Must be inquisitive and resourceful: network within the organizations to ask relevant questions; interact with peer team members, product managers, architects, and key stakeholders.
- Must be able to handle sensitive and confidential information appropriately.
Preferred Skills and Experience
- Experience with a major application programming language such as Python, C#, or Java.
- Experience in Amazon Web Services, especially API Gateway, CLI, CloudFront, CloudFormation, CloudWatch, CloudTrail, EC2, ECS, ElastiCache, EventBridge, Cognito, Fargate, IAM (STS, roles, policies), Lambda, S3, S3 Glacier, SQS, SNS, VPC (subnets, gateways, route tables, EIP, ENI, NAT, NACLs, security groups, PrivateLink), WAF, and X-Ray. Equivalent experience in Azure or Google Cloud Platform (GCP) equivalents is acceptable (candidates will be expected to articulate the equivalences during a technical interview).
- Experience in Kubernetes (K8).
- Experience in DataDog and/or Grafana.
- Experience with ELK.
- Experience demonstrating and explaining technical processes/tools.
- Experience with Veterans Administration processes.
- Experience with VA Authority to Operate (ATO).
- Experience with AWS GovCloud (FedRAMP).
- Experience with Aurora PostgreSQL.
- Experience with AWS cloud-native serverless cloud environments.
- Experience with Microservices Architecture (MSA) patterns.
- Experience building a large infrastructure supporting high volume of transactions in a mission-critical environment.
- Experience with Microsoft services (IIS, .NET, SQL Server, Windows Server, Active Directory).
- One of the following AWS certifications:
- AWS Certified SysOps Administrator Associate (SOA-C02)
- AWS Certified Solutions Architect Associate (SAA-C02/C03)
COVID/Equal Opportunity Employer
COVID Policy: New employees will be required to adhere to the Company’s and its clients’ COVID-19 safety procedures. In the event that the COVID-19 vaccination mandate for Federal Contractors is enforced, you must become fully vaccinated or request and be approved for an exemption. Employees working onsite at a client location must comply with our client’s COVID-19 requirements.
GovCIO is a team of professionals who want to make a difference. And that can only happen with a diverse, happy, and cared-for team. So, we prioritize your well-being, equity for all and look for ways to make work a better place for each of us every day.
We are an Equal Opportunity Employer. All qualified applicants receive consideration for employment without regard to race, ethnicity, religious affiliation, gender, gender identity or expression, sexual orientation, national origin, or disability status. EOE AA M/ F/Vet/Disabled
Compensation Range (In compliance with Colorado’s Equal Pay for Equal Work Act for remote or positions located in CO)
$175,000