
DevSecOps Engineer
ARETUM
full-time
Posted on:
Location Type: Remote
Location: Virginia • United States
Visit company websiteExplore more
Tech Stack
About the role
- Design, operate, and continuously improve automated CI/CD pipelines using GitLab CI to support zero-downtime deployments across multiple environments.
- Support development teams with standardized deployment tooling, automation, and operational best practices.
- Administer and support containerized workloads using Kubernetes (EKS) and Docker-based container platforms.
- Configure and manage Linux-based servers and systems.
- Implement Infrastructure as Code (IaC) using Terraform and/or AWS CDK for repeatable, auditable deployments.
- Support provisioning and configuration of AWS services including EC2, EKS, ECS, S3, RDS, VPC, Lambda, and related services.
- Coordinate infrastructure changes without performing AWS account provisioning or organizational administration.
- Integrate security scanning into CI/CD pipelines using tools such as Trivy, AWS Inspector, and AWS Security Hub.
- Perform vulnerability triage and coordinate remediation with development teams in accordance with defined timelines.
- Implement and manage IAM least-privilege policies, secrets, and encryption using AWS KMS, Secrets Manager, and SSM.
- Ensure encryption in transit and at rest across all in-scope systems.
- Configure and maintain monitoring and observability using CloudWatch, Prometheus, Grafana, and centralized logging solutions.
- Support Tier 2 and Tier 3 incident response for production systems, meeting SLA requirements.
- Participate in root-cause analysis and continuous improvement initiatives.
- Participate in Agile sprints, including backlog grooming, sprint planning, stand-ups, and retrospectives.
- Track work in JIRA, using story-point estimation and sprint metrics.
- Support reprioritization of backlog items in coordination with the COR and Product Owner.
- Produce and maintain technical documentation covering architecture, pipelines, monitoring, security, and disaster recovery.
- Support Business Continuity and Disaster Recovery (BCDR) planning, documentation, and exercises.
- Ensure all deliverables comply with ADA, Section 508, WCAG 2.2 A/AA, and digital accessibility standards.
Requirements
- 3+ years of experience in the following areas:
- Experience implementing and executing processes to create and fully maintain automated CI/CD pipelines for application deployment.
- Experience in managing version control systems.
- Experience in configuring, building, deploying and managing containers.
- Must possess systems engineering skills in configuring and managing Linux Systems.
- Must possess developer skills in programming languages, web frameworks, and databases.
- Experience deploying and configuring services using infrastructure-as-a-service providers (e.g., Amazon Web Services, Microsoft Azure, Google Compute Engine, RackSpace / OpenStack).
- Experience configuring and managing Linux-based servers to serve a dynamic website.
- Experience debugging cluster-based computing architectures.
- Comfortable using scripting or basic programming skills to solve problems.
- Experience with installation and management of open-source monitoring tools.
- Knowledge of configuration management tools (e.g., Puppet, Chef, Ansible, Salt).
- Experience with architecture for continuous integration and deployment, and continuous monitoring.
- Knowledge of containerization technologies (e.g., LXC, Docker, Rocket).
- **Preferred Qualifications**
- Bachelor’s degree.
- Cloud certifications.
Benefits
- Health Care Plan (Medical, Dental & Vision)
- Retirement Plan (401k)
- Life Insurance (Basic, Voluntary & AD&D)
- Paid Time Off
- Family Leave (Maternity, Paternity)
- Short Term & Long-Term Disability
- Training & Development
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
CI/CD pipelinesGitLab CIKubernetesDockerLinuxInfrastructure as CodeTerraformAWS CDKAWS servicesIAM policies
Soft Skills
incident responseroot-cause analysiscontinuous improvementAgile methodologytechnical documentationcollaborationproblem-solving
Certifications
Bachelor's degreeCloud certifications