ForgeApply
Try it free

ForgeApply · Job listing

DevSecOps / Cloud Hosting Engineer

GDIT

USA VA Arlington, US$128k – $173konsite

See all 236 open roles at GDIT

Tailor your resume for this GDIT job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for GDIT's site. Free trial, no card required.

About this role

Type of Requisition: Regular

Clearance Level Must Currently Possess: Interim Top Secret

Clearance Level Must Be Able to Obtain: Top Secret/SCI

Public Trust/Other Required: None

Job Family: Cyber and IT Risk Management

Job Qualifications: Skills: Autoscaling, Cloud Computing, Cloud Infrastructure, Container Orchestration, DevSecOps Certifications: None Experience: 5 + years of related experience US Citizenship Required: Yes

Job Description: DevSecOps / Cloud Hosting Engineer

Position Summary The DevSecOps / Cloud Hosting Engineer owns and operates the cloud environment hosting an operator application used in a national cyber defense command center. The environment supports independently deployed services, gateway and streaming infrastructure, and the static delivery path for the application. The engineer stands up the environment, manages its pipeline, and maintains the security controls and evidence required for authorization.

Key Responsibilities

Cloud Environment Ownership • Own the cloud hosting architecture, including network segmentation, routing, and private endpoints. • Operate the container orchestration platform, including node configuration, autoscaling, and persistent storage. • Manage content delivery, object storage origin, and load‑balanced routing. • Operate high‑capacity gateway and streaming services supporting many long‑lived client connections. • Maintain separation across development, test, and production; manage capacity, cost, and performance.

Pipeline & Infrastructure as Code • Build and maintain CI/CD pipelines enabling frequent, low‑risk releases. • Define infrastructure as code for reproducible, reviewable environments. • Integrate automated security, dependency, image, and configuration scanning. • Maintain release, promotion, and rollback procedures, including service‑level isolation under pressure.

Security Engineering & Authorization • Own the environment’s security configuration and alignment to the required control baseline. • Implement identity and access control, policy guardrails, identity federation, and managed secrets. • Implement encryption in transit and at rest using managed key services. • Own the authorization boundary and support the authorization process through boundary definition, control implementation, and evidence collection. • Maintain continuous monitoring through configuration compliance, posture management, audit trails, and flow logging; remediate findings.

Availability, Monitoring & Response • Implement monitoring and alerting capable of detecting degradation early, including streaming‑layer health. • Maintain backup, recovery, and availability capabilities for continuous operations. • Respond to environment incidents, including after hours, and lead root‑cause resolution. • Document environment behavior, dependencies, and recovery procedures.

Collaboration & Professional Currency • Work with application engineers to design deployment, scaling, configuration, and secrets handling. • Provide developer support without weakening security posture. • Contribute to hosting, deployment, and authorization‑boundary architectural decisions. • Obtain and maintain required training and certifications; certification currency is reported monthly.

Required Qualifications • Hands‑on experience owning and operating cloud infrastructure in regulated or government environments. • Production experience with container orchestration, including cluster configuration, autoscaling, and troubleshooting. • Experience operating services with many long‑lived client connections or comparable streaming systems. • Experience maintaining CI/CD pipelines with automated security scanning. • Experience defining infrastructure as code. • Experience implementing identity, access control, secrets management, and encryption. • Working knowledge of RMF or equivalent frameworks, including continuous monitoring and evidence collection. • One current cloud platform or container‑orchestration certification. • Bachelor’s degree in a technical field and 5 years of relevant experience (or equivalent experience). • Active Top Secret clearance. • U.S. citizenship. • On‑site work at a Washington, D.C.‑area government facility; not remote or hybrid.

Preferred Qualifications • Experience with AWS GovCloud, Azure Government, or similar government cloud regions; experience with FedRAMP or DoD accreditation. • Experience with Kubernetes distributions such as Amazon EKS or Azure Kubernetes Service. • Experience with Terraform, CDK, or Bicep. • Experience supporting an initial authorization to operate (ATO). • Platform certifications such as AWS DevOps Engineer, AWS Solutions Architect, Azure Solutions Architect, or CKA. • Security certifications such as AWS Security Specialty, Azure Security Engineer, Security+, or CISSP. • Experience with zero‑trust patterns, workload identity, and service mesh. • Experience operating environments subject to independent security assessment.

The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours: 40

Travel Required: Less than 10%

T elecommuting Options: Onsite

Work Location: USA VA Arlington

Additional Work Locations:

Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees ar

Tailor your resume for this GDIT role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)