ME00631-Senior DevSecOps Engineer Lead (Hybrid)

Momentum Engineering, Inc. fosters an employee-centric culture. Our strength lies in our people. With a high percentage of employees holding advanced degrees in engineering, computer science, and related disciplines, we bring deep technical expertise to every mission. Our team includes professionals with security clearances and full-scope polygraphs, ensuring trusted, secure support for the most sensitive national security initiatives. Additionally, our workforce is equipped with industry-leading certifications, demonstrating a commitment to continuous learning and excellence. Most importantly, our exceptional employee retention rate reflects a culture of professional growth, mission focus, and dedication—ensuring long-term stability and expertise for our customers’ critical needs.

Job Summary

  • Seeking a highly skilled Senior leveled DevSecOps Engineer to support federal programs hosted on AWS GovCloud
  • This hybrid role requires expertise in DevSecOps best practices, cloud automation, security compliance, and continuous integration/continuous deployment (CI/CD) to enhance the security, scalability, and efficiency of mission-critical applications

Primary Responsibilities

  • AWS GovCloud Architecture & Management: Design, implement, and maintain secure, scalable, and compliant AWS GovCloud environments for DoD and Civilian agency applications
  • DevSecOps Pipeline Development: Build and optimize CI/CD pipelines using tools like GitLab CI/CD, Jenkins, AWS Code Pipeline, and Terraform to automate deployments and security compliance
  • Security & Compliance: Ensure adherence to Federal cybersecurity frameworks (e.g., NIST 800-171, NIST 800-53, RMF, FedRAMP, Zero Trust). Implement STIGs, security baselines, and automated security scanning (SAST/DAST)
  • Infrastructure as Code (IaC): Automate infrastructure provisioning and configuration management using Terraform, CloudFormation, and Ansible
  • Containerization & Orchestration: Deploy and manage Docker containers and Kubernetes clusters in AWS GovCloud, leveraging services like Amazon EKS, ECS, and Fargate
  • Monitoring & Incident Response: Implement AWS CloudWatch, AWS Security Hub, GuardDuty, Splunk, or ELK for proactive monitoring, logging, and compliance reporting
  • Automation & Scripting: Develop automation scripts using Python, Bash, or PowerShell to improve deployment efficiency and security enforcement
  • Collaboration & Knowledge Sharing: Work closely with software developers, cybersecurity teams, and cloud engineers to integrate security and automation into the software development lifecycle (SDLC)

Required Qualifications

  • US citizenship with the ability to obtain a successful DoD Secret security clearance required
  • Security+ Certification
  • 7+ years of hands-on experience in DevSecOps, Cloud Engineering, or Infrastructure Automation roles
  • Strong expertise in AWS GovCloud services, security configurations, and compliance frameworks
  • Experience with CI/CD tools (GitLab CI/CD, Jenkins, AWS Code Pipeline, or similar)
  • Hands-on experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, and Ansible
  • Proficiency in containerization and orchestration (Docker, Kubernetes, EKS, ECS, Fargate)
  • Strong understanding of AWS security services (AWS IAM, GuardDuty, Security Hub,AWS KMS, AWS WAF, AWS Config, AWS Secrets Manager)
  • Knowledge of federal cybersecurity frameworks (RMF, NIST 800-171/53, STIGs, ZeroTrust)
  • Experience implementing automated security testing (SAST, DAST, vulnerability scanning, SBOM management)
  • Proficiency in scripting (Python, Bash, PowerShell) for automation and security enforcement

Desired Qualifications

  • No desired qualifications listed at this time

Exempt hourly position. 11 paid holidays, minimum of 3 weeks PTO, company sponsored group medical plan, company paid dental, vision, life insurance, and STD/LTD plans. Salary is dependent upon the candidate’s experience and qualifications.

Technical Services 1

Washington, DC

Udostępnij w:

Warunki korzystania z usługPrywatnośćPliki cookieUsługa działa z technologią Rippling