Peraton Logo

Peraton

Senior DevSecOps Engineer

Posted 6 Hours Ago
Remote
Hiring Remotely in United States
135K-216K Annually
Senior level
Remote
Hiring Remotely in United States
135K-216K Annually
Senior level
Leads DevSecOps and cloud transformation across AWS Commercial and GovCloud environments. Designs secure GitLab CI/CD pipelines, automates Kubernetes and Terraform infrastructure, implements GitOps and developer self-service, and enforces IAM, compliance, vulnerability management, and security controls. Operates OpenShift and EKS platforms, leads observability and critical incident response, drives reliability improvements, develops engineering roadmaps, and mentors technical teams supporting FedRAMP and DoD environments.
The summary above was generated by AI
Responsibilities

Peraton is seeking a Senior DevSecOps Engineer to serve as the technical lead for DevSecOps and cloud transformation across a large AWS enterprise environment spanning both commercial and GovCloud. This role will help modernize software delivery by building secure, automated, and repeatable development and deployment processes with security built in from the start.


Location: Remote


Shift Schedule: 8am – 5pm Eastern Standard Time (EST)


What you will do:


DevSecOps Pipelines and Security Automation

  • Design and manage GitLab CI/CD pipelines using reusable templates, shared runners, feature flags, environment gates, and DORA metrics.
  • Automate SAST, DAST, SCA, and secrets scanning as required pipeline stages, with policy-based gates that prevent insecure builds from promotion.
  • Integrate container scanning, registry admission controls, and runtime protection using Aqua Security to enforce Kubernetes and CIS benchmarks.
  • Scan Terraform and Kubernetes configurations for security issues and remediate findings before deployment.
  • Lead Jenkins-to-GitLab CI/CD migrations and establish standardized pipeline patterns for application teams

Container Platforms and Cloud Infrastructure

  • Operate containerized workloads on OpenShift (ROSA) and Amazon EKS across AWS Commercial and GovCloud, including Spring Boot and other microservices.
  • Automate AWS and Kubernetes infrastructure with Terraform and use Ansible/Ansible Tower for configuration management, hardening, and patching.
  • Engineer AWS services including EC2, VPC, IAM, S3, EBS, ELB/ALB/NLB, Route 53, and CloudWatch, using least-privilege IAM as the baseline.
  • Implement GitOps workflows so infrastructure, application, and cluster configurations are version-controlled, reviewable, and reproducible.

App Enablement and Developer Self-Service

  • Build reusable Terraform modules and GitLab templates that allow application teams to provision namespaces, environments, and supporting AWS resources without platform-team tickets.
  • Design self-service onboarding workflows covering repository creation, CI/CD setup, RBAC and quotas, and security-gate enrollment.Publish standardized GitLab pipeline templates and golden-path patterns so security, compliance, and observability are built in automatically.
  • Maintain onboarding documentation and module catalogs, and use adoption and onboarding metrics to identify and remove friction.

Security, Compliance, and Identity

  • Implement and enforce STIG, CIS, and organizational security requirements across pipelines, platforms, and workloads.
  • Design and manage AWS and Kubernetes IAM, including RBAC, admission controls, pod security, network policies, and secrets management using AWS KMS and Secrets Manager.
  • Support vulnerability management, ATO and accreditation activities, audits, and continuous compliance reporting across FedRAMP and DoD environments.

Observability, Incident Response, and Reliability

  • Operate observability platforms including Datadog, Dynatrace, Splunk, OpenTelemetry, CloudWatch, and OpenSearch for metrics, logs, traces, dashboards, and alerting.
  • Lead critical incident response, including real-time diagnostics, stakeholder and executive communication, root-cause analysis, and corrective actions through resolution.
  • Facilitate cross-team root-cause reviews and drive resulting reliability improvements through implementation.

Leadership and Delivery

  • Lead transformation initiatives across AI, advanced analytics, and emerging technologies, translating strategy into actionable engineering roadmaps and technical responses to RFIs.
  • Establish engineering standards, review architecture, and mentor engineers across DevSecOps, cloud, security, and automation.
  • Identify and improve inefficient processes and actively participate in Agile delivery to evolve business processes and technology.
Qualifications

Basic Qualifications

  • Must be a U.S. Citizen with the ability to obtain and maintain the required Public Trust level clearance.
  • Bachelor's degree with 12 years of experience, a Master's degree with 10 years of experience, or a High School Diploma or equivalent and 16 years.
  • 8+ years of AWS experience covering networking, IT security tooling, and databases.
  • Hands-on technical expertise in DevSecOps, security automation, application development, integration, and release management.
  • Real-world experience establishing and maturing CI/CD toward progressive delivery.
  • Experience building self-service developer onboarding or platform-as-a-product capabilities using Terraform and GitLab.
  • Proven track record in senior technical or advisory roles, driving strategic change and digital adoption across business units.
  • Experience supporting FedRAMP, FISMA, or DoD-accredited cloud environments.
  • Leadership presence and communication skills to work with customers at all levels and manage communication during critical incidents.

Preferred Qualifications

  • AWS Certified Solutions Architect — Professional.
  • AWS Certified Security — Specialty.
  • Red Hat Certified Specialist in OpenShift Administration.
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD).
  • HashiCorp Certified: Terraform Associate; experience obtaining or maintaining an ATO in a FedRAMP High environment.
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Similar Jobs

2 Hours Ago
Remote
United States
150K-200K Annually
Senior level
150K-200K Annually
Senior level
Healthtech
Designs and owns CI/CD, cloud infrastructure, deployment automation, security gates, and observability across multiple application teams. Establishes shared DevSecOps standards, validates AI-generated pipelines and infrastructure, supports production operations and on-call response, and guides teams on secure, reliable software delivery. The role requires production experience with AWS or Azure, Kubernetes, containers, serverless, infrastructure as code, modern programming languages, security automation, compliance, and application monitoring.
Top Skills: Arm TemplatesAWSAzureCi/CdCloudFormationDastEncryptionHelmHipaa/HitrustIamJavaKubernetesObservabilityPolicy-As-CodePythonSastScaSecrets ScanningServerless FunctionsSoc 2Terraform
29 Days Ago
Remote or Hybrid
USA
Senior level
Senior level
Software
Lead DevSecOps role focused on embedding application security into the SDLC: implement SAST/DAST/SCA and secrets management, secure Azure deployments, integrate security into CI/CD, manage vulnerabilities and compliance, mentor teams, and automate secure infrastructure with IaC (Terraform).
Top Skills: Api SecurityAquaAzureAzure DevopsAzure Key VaultAzure Security CenterBlack DuckBurp SuiteCheckmarxCi/CdDastGithub Advanced SecurityHashicorp VaultMendMicroservicesOwasp ZapPrisma CloudSastScaSecrets ManagementSemgrepSnykSonarqubeTerraformVeracodeWiz
9 Days Ago
In-Office or Remote
Senior level
Senior level
Information Technology • Consulting
Embeds application security into the SDLC through DevSecOps processes, security assessments, repository scanning, vulnerability triage, remediation validation, and secure code review. Uses tools such as Burp Suite, CodeQL, SAST, SCA, and secret scanning across applications, APIs, cloud workloads, and infrastructure. Develops security metrics and executive dashboards, coaches development teams, participates in Agile ceremonies, and promotes secure coding and responsible AI-assisted security practices.
Top Skills: AgileApi Security Top 10APIsBurp SuiteCi/CdCloud SecurityCodeqlDependency AnalysisGithub Advanced SecurityIdentity And Access ManagementJavaOwasp Top 10PythonSastScaScrumSecret Scanning

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account