Job Description :
We are looking for a Full-time contractor or employee for a DevOps Engineer role at one of our client sites.
Must be able to:
  • develop and maintain CI/CD pipelines and automate building, testing, and deployment of software applications.
  • collaborate effectively with software engineers, operations staff, security teams, testers, and various stakeholders to identify and implement "shift left" security measures and best practices in the CI/CD pipelines.
  • design, test, and implement secure software development practices and standards in the CI/CD pipelines.
  • automate security controls, data protection, and vulnerability management systems in CI/CD pipelines.
  • continuously monitor applications and infrastructure for security vulnerabilities and performance issues and coordinate remediation efforts.
  • develop and/or implement tools to assist in detection, prevention, and analysis of security threats in the CI/CD pipelines.
  • troubleshoot and resolve issues in the CI/CD pipelines to minimize downtime and limit impact to developers and stakeholders
  • participate in incident response and forensic analysis of cybersecurity events.
  • conduct regular security assessments, audits, and compliance checks to ensure adherence to security standards in DevSecOps practices and CI/CD pipeline.
  • provide training and awareness to development and operations teams on secure coding practices and threat mitigation.
  • In coordination and alignment with Information Security Office, document and communicate security procedures and policies.
  • stay abreast of new security technologies, industry standards and best practices, and integrate them into the pipeline architecture and design where applicable.
  • be productive working independently or in a team environment (both local and remote) with minimal supervision.
Must possess:
  • knowledge of DevSecOps methodologies, concepts, and practices
  • knowledge of DevOps Automation
  • comprehensive technical expertise in a variety of DevOps tools, including Ansible, Jenkins, Maven, Artifactory, SonarQube, Xray, Checkmarx, Jira, BitBucket, Subversion, Git/Version Control Software, or comparable technologies.
  • familiarity with information security frameworks and standards such as NIST and OWASP Top 10.
  • strong understanding of Linux administration and scripting languages (e.g., PowerShell, Bash, Python)
  • experience with microservices architecture and cloud-native development. 
  • experience with containerization and orchestration technologies like Docker and Kubernetes.

Skills(Required):
  • Professional experience in DevOps engineering, Software Development, or related field
  • Experience with programming languages such as Java and .NET
  • Experience with scripting languages such as Bash, Python, and PowerShell to automate repetitive tasks such as monitoring, deployments, and configuration management
  • Experience in Cybersecurity and implementing and automating security best practices into CI/CD pipelines
  • Experience with security testing tools such as SAST, DAST, or IAST
  • Experience setting up and managing Jenkins servers, creating and maintaining CI/CD pipelines, integrating with other tools (e.g., Git, Maven, SonarQube), writing Groovy scripts for pipeline automation, and monitoring and optimizing Jenkins performance.
  • Experience with Infrastructure as Code tools like Ansible, Terraform, or Chef
  • Experience with containerization and orchestration tools such as Docker and Kubernetes
  • Experience with automation of infrastructure provisioning and configuration management
  • Experience with Maven in building and managing Java projects, maintaining POM files, troubleshooting build issues, dependency management and versioning, and integrating with CI/CD pipelines
  • Experience with Artifactory set up, configuration, managing binary repositories, integrating with build tools (e.g., Maven and Jenkins), managing artifact lifecycle and versioning, and implementing security and access controls.
  • Experience with microservices architecture, design, development and containerization and orchestration
  • Experience with SQL and NoSQL databases
  • Experience designing, developing, testing, integrating, and implementing secure REST APIs
  • Experience with code reviews and in-depth code analysis
  • Experience with highly complex application security requirements
  • Experience with Git, Bitbucket, Subversion and version control systems
  • Experience with SonarQube set up, configuration, integrating with CI/CD pipelines, and analyzing code quality and security vulnerabilities
  • Experience with Jira and Confluence
  • Experience with Agile teams
  • Experience with coaching, training, mentoring and knowledge transfer
 
Skills(Preferred):
  • Experience with cloud technologies and platforms such as AWS and Azure
  • Experience working with legacy applications/services
  • Experience in modern web technologies such as JavaScript, Node.js, React.js, Redux, HTML5, CSS3
  • Public sector experience (Federal, State or Local Government)
  • Proficient with the Microsoft Office products, including Outlook, TEAMS, Microsoft Project, Word, Visio, Excel and PowerPoint
             

Similar Jobs you may be interested in ..