Overview
DecisionPoint seeks a DevSecOps Engineer (CMS) to lead continuous integration, delivery, and security automation for an enterprise-level case management solution supporting Department of Defense mission partners. The role focuses on establishing and maintaining secure, scalable CI/CD pipelines, containerized environments, and infrastructure as code (IaC) within AWS GovCloud Impact Level (IL) 2, 4, and 5 environments.
The DevSecOps Engineer will collaborate across engineering, cybersecurity, and development teams to ensure the system’s architecture adheres to federal cybersecurity mandates, integrates with continuous monitoring tools, and achieves full lifecycle automation.
This position is fully remote.
Duties & Responsibilities
- Design, implement, and maintain CI/CD pipelines supporting build, test, and deployment automation for all environments.
- Develop and manage containerized application deployments using Docker and Kubernetes within AWS GovCloud.
- Implement Infrastructure as Code (IaC) using Terraform or CloudFormation to automate provisioning and configuration management.
- Integrate automated security scans and compliance checks aligned with DoD Risk Management Framework (RMF) and DISA STIG baselines.
- Support continuous monitoring and logging through AWS CloudWatch, GuardDuty, and third-party vulnerability management tools (e.g., Nessus, ACAS).
- Collaborate with development and cybersecurity teams to ensure secure code practices and adherence to Zero Trust architecture principles.
- Develop and maintain DevSecOps plans , playbooks, and standard operating procedures that document secure build and deployment processes.
- Lead performance tuning, scalability planning, and proactive incident response for CI/CD infrastructure.
- Manage code repositories in AWS CodeCommit, ensuring secure branching, versioning, and release management.
- Coordinate with system administrators to optimize network, storage, and compute resources supporting the CI/CD pipeline.
- Participate in Agile ceremonies to plan, execute, and review DevSecOps sprint deliverables.
- Support system authorization activities, including documentation for ATO compliance under DoDI 8510.01 (RMF).
Qualifications
Clearance Requirement:
- Must hold an active Secret clearance .
Education:
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or related field.
Experience:
- Minimum 7 years of experience in DevSecOps, software automation, or cloud infrastructure engineering.
- Demonstrated experience supporting secure cloud-based development environments within AWS GovCloud or DoD-accredited platforms.
Technical Knowledge:
- Strong knowledg