DevSecOps Engineer Role

OpenDataJobsWashington, DC

About The Position

DevSecOps Engineers make secure delivery repeatable by designing CI/CD paths, deployment controls, and operational feedback loops that carry software from a change in source code to a running service. In federal environments, this includes assembling and maintaining security evidence for an Authority to Operate (ATO). The role collaborates across development, operations, and security, automating build, test, deployment, configuration, vulnerability management, logging, and recovery practices. DevSecOps Engineers partner with Cloud Infrastructure Engineers, owning the delivery path and its security integration.

Requirements

  • Hands-on experience with source control, automated testing, CI/CD, and deployment automation.
  • Infrastructure-as-code experience with tools such as Terraform, Amazon Web Services CloudFormation, or comparable platforms.
  • Working knowledge of container security, software supply-chain controls, and vulnerability remediation.
  • Experience with logging, monitoring, incident response, and recovery practices.
  • Ability to translate National Institute of Standards and Technology (NIST) Special Publication 800-53 control expectations into engineering work and evidence.

Nice To Haves

  • Experience supporting an ATO or working with the Risk Management Framework.
  • Experience with a specific cloud, orchestration platform, programming language, or delivery toolchain.
  • Demonstrated work with on-call operations, incident response, security assessments, or regulated release controls.

Responsibilities

  • Design CI/CD paths, deployment controls, and operational feedback loops.
  • Assemble and maintain security evidence for an Authority to Operate (ATO).
  • Automate build, test, deployment, configuration, vulnerability management, logging, and recovery practices.
  • Build CI/CD pipelines that run tests, security checks, approvals, and deployments consistently.
  • Develop Infrastructure-as-code modules and deployment patterns that are versioned and reviewable.
  • Implement container build, image-scanning, and release processes for application workloads.
  • Create observability and vulnerability-management workflows that turn operating signals into action.
  • Generate control evidence and traceability that support authorization, assessment, and continuous monitoring.

Benefits

  • Compensation, benefits, work location, and employment terms are set for each specific opening and will be stated with that opening.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service