DevSecOps Engineer, AWS

OpenDataJobsWashington, DC
Hybrid

About The Position

Peregrine Advisors is seeking a motivated DevSecOps Engineer to own a secure delivery path for federal systems. This role involves building continuous integration and delivery (CI/CD) pipelines with integrated security gates, creating reproducible infrastructure-as-code, and implementing automation, monitoring, and evidence generation to support Risk Management Framework (RMF) authorization and continuous monitoring. The work will be performed in Amazon Web Services (AWS) or on-premises environments, with a focus on building systems that are critical to production. The company emphasizes hiring individuals who thrive on owning hard problems and delivering solutions, with opportunities for career growth within the firm.

Requirements

  • Sole United States citizenship and ability to obtain a Public Trust determination.
  • Hybrid role requiring regular commuting into Washington, DC.
  • 4+ years of DevSecOps or platform engineering experience.
  • Bachelor’s Degree in Computer Science or related field.
  • Hands-on CI/CD pipeline automation with security gates, AWS-native (CodePipeline, CodeBuild) or comparable (GitHub Actions, GitLab CI).
  • Infrastructure-as-code (CloudFormation or Terraform) and containerization.
  • Automated security testing (SAST, DAST, SCA) and vulnerability scanning.
  • Scripting in Python or Bash.
  • Git-based version control.
  • Monitoring and logging.
  • Basic proficiency in writing, PowerPoint, and Excel.

Nice To Haves

  • Federal security experience: supporting FISMA compliance, implementing NIST SP 800-53 controls, and Authority to Operate (ATO) support.
  • Amazon Web Services certification.
  • Kubernetes.
  • Secrets management (HashiCorp Vault, AWS Secrets Manager, or comparable).
  • Experience applying zero trust principles: identity-centered access, least privilege, and continuous verification.
  • Software supply-chain integrity practice: software bills of materials (SBOMs) and artifact signing.
  • Federal information technology experience.
  • Familiarity with AI-assisted developer tooling.

Responsibilities

  • Build CI/CD pipelines with automated security testing (SAST, DAST, SCA), policy-as-code checks, and controlled promotion.
  • Develop infrastructure-as-code for reproducible environments using containerization and container-image scanning.
  • Implement security measures such as least-privilege access, secrets management, and encryption by default.
  • Establish the operational fabric, including monitoring, logging, and vulnerability scanning.
  • Implement progressive delivery and low-downtime deployment strategies (e.g., blue/green, canary deployments) with automated health checks and rollback.
  • Manage incident response.
  • Track pipeline reliability and software-delivery performance metrics.
  • Generate evidence to support Authority to Operate (ATO) and continuous monitoring.
  • Contribute to the development of new capabilities, tools, and lines of business for the firm.

Benefits

  • Medical, dental, and vision with the employee premium fully paid and half of dependent premiums.
  • Employer-paid life, accidental death, and short-term and long-term disability insurance.
  • 401(k) matched 100% up to 4% of salary, vesting immediately.
  • Unlimited paid time off.
  • Sponsored professional certifications and continuing education.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service