Bowhead logo
Senior DevSecOps Engineer - Cloud
full-timeArlington County

Summary

Location

Arlington County

Type

full-time

Claim this Company

Are you the employer? Manage your company page directly.

Explore Jobs

About this role

Overview

SENIOR DEVSECOPS ENGINEER - CLOUD (NAUT):

 

Bowhead seeks a Senior DevSecOps Engineer - Cloud to support our customer on the Nautical contract in the Arlington, VA area. This position leads the implementation of secure DevSecOps practices for migrating legacy DoD applications to cloud environments.

Responsibilities

  • Design and implement CI/CD pipelines incorporating security controls for cloud environments (AWS GovCloud, Azure Government, Google Cloud for Government)
  • Develop and maintain Infrastructure as Code (IaC) using tools such as Terraform, CloudFormation, and Ansible
  • Implement automated security scanning and vulnerability assessment tools within deployment pipelines
  • Establish container security practices for Docker and Kubernetes environments
  • Ensure compliance with DoD security frameworks including NIST 800-53, FISMA, and FedRAMP
  • Collaborate with development teams to implement security best practices throughout the software development lifecycle
  • Monitor and respond to security incidents in cloud environments
  • Maintain documentation for security procedures and compliance requirements
  • Provide technical guidance on secure cloud architecture patterns
  • Lead security assessments and Authority to Operate (ATO) processes
  • Interface with the customer and external stakeholders in working groups, technical exchange meetings, and other forums
  • Chair/co-chair meetings and working groups on behalf of government representatives as directed
  • Resolve problems, allocate resources, manage personnel, and monitor performance to meet contract requirements
  • Provide daily control and supervision of employees as assigned
  • Provide planned replacement information at least 15 calendar days prior to replacement
  • Provide information within 24 hours of an unplanned replacement
  • Other duties as assigned

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Data Science, Information Systems, or related field from an ABET accredited or CAE designated institution, OR 10+ years of relevant experience in lieu of degree
  • Minimum of 10+ years of experience in DevOps/DevSecOps engineering
  • Minimum of 5+ years of experience with cloud platforms (AWS, Azure, GCP)
  • Experience with DoD security frameworks and compliance requirements
  • Proficiency in scripting languages (Python, Bash, PowerShell)
  • Experience with containerization technologies (Docker, Kubernetes)
  • Knowledge of security tools (Nessus, Qualys, Fortify, SonarQube)
  • Experience with CI/CD tools (Jenkins, GitLab CI, Azure DevOps)
  • Strong understanding of network security and encryption protocols
  • Experience managing technical personnel for IT and/or cybersecurity efforts

Preferred Qualifications:

  • Master's degree in relevant field
  • Cloud certifications (AWS Solutions Architect, Azure Solutions Architect, GCP Professional Cloud Architect)
  • Experience with legacy DoD systems migration
  • Knowledge of microservices architecture patterns
  • Experience with service mesh technologies (Istio, Linkerd)
  • DAWIA PM Practitioner certification

CERTIFICATION REQUIREMENTS:

Required: DoD 8570 IAT Level II or III certificationDesired: GIAC Security Essentials (GSEC), FITSP-D, GIAC Cloud Security Automation (GCSA), GIAC Information Security Fundamentals (GISF), (ISC)2 Systems Security Certified Practitioner (SSCP), CompTIA Security+

 

Physical Demands:

 

  • Must be able to lift 25 pounds on occasion.
  • Must be able to stand and walk for prolonged period amounts of time.
  • Must be able to twist, bend, and squat periodically.

 

SECURITY CLEARANCE REQUIREMENTS: Must be able to maintain a security clearance at the Top Secret level with SCI eligibility and maintain SAP eligibility. Due to work requirements, this position will not entertain work from home capabilities. US Citizenship is a requirement for this contract.

 

#LI-KC1

Other facts

Tech stack
DevSecOps,Cloud,CI/CD,Infrastructure as Code,Security Scanning,Vulnerability Assessment,Container Security,Compliance,Scripting,Containerization,Security Tools,CI/CD Tools,Network Security,Technical Personnel Management,DoD Security Frameworks,Cloud Platforms,Legacy Systems Migration

About Bowhead

UIC Government Services and its Bowhead Family of Companies are a division of Ukpeaġvik Iñupiat Corporation, an Alaskan Native Corporation.

Known simply as Bowhead, we are a top ANC that's been in business for nearly 25 years. Bowhead’s 3000 employees and 300 contracts provide premier support to defense and civilian government agencies across the United States, and the world.

Headquartered in Springfield, Virginia, and with 15 offices across the U.S., Bowhead offers services in Systems & Information Technology, Logistics & Marine, Engineering & Program Management, Manufacturing & Products, and Advanced Technology. Our unique, flexible, and streamlined contracting processes offer Sole Source options and numerous contract vehicles for customers’ convenience.

Team size: 1,001-5,000 employees
LinkedIn: Visit
Industry: IT Services and IT Consulting
Founding Year: 1999

What you'll do

  • The Senior DevSecOps Engineer will lead the implementation of secure DevSecOps practices for migrating legacy DoD applications to cloud environments. Responsibilities include designing CI/CD pipelines, maintaining Infrastructure as Code, and ensuring compliance with DoD security frameworks.

Join Clera's Talent Pool

Get matched with similar opportunities at top startups

This role is hosted on Bowhead's careers site.
Join our talent pool first to get notified about similar roles that match your profile.

Frequently Asked Questions

What does a Senior DevSecOps Engineer - Cloud do at Bowhead?

As a Senior DevSecOps Engineer - Cloud at Bowhead, you will: the Senior DevSecOps Engineer will lead the implementation of secure DevSecOps practices for migrating legacy DoD applications to cloud environments. Responsibilities include designing CI/CD pipelines, maintaining Infrastructure as Code, and ensuring compliance with DoD security frameworks..

Why join Bowhead as a Senior DevSecOps Engineer - Cloud?

Bowhead is a leading IT Services and IT Consulting company.

Is the Senior DevSecOps Engineer - Cloud position at Bowhead remote?

The Senior DevSecOps Engineer - Cloud position at Bowhead is based in Arlington County, Virginia, United States. Contact the company through Clera for specific work arrangement details.

How do I apply for the Senior DevSecOps Engineer - Cloud position at Bowhead?

You can apply for the Senior DevSecOps Engineer - Cloud position at Bowhead directly through Clera. Click the "Apply Now" button above to start your application. Clera's AI-powered platform will help match your profile with this opportunity and guide you through the application process. You can also learn more about Bowhead on their website.