Lead DevSecOps Engineer

General Dynamics Information Technology•Chantilly, VA
•Onsite

About The Position

GDIT is seeking a Lead DevSecOps Engineer to drive the implementation and maturation of our unclassified engineering environment in support of a large-scale software development and modernization IDIQ program. This role will define and lead the DevSecOps strategy across a diverse application portfolio, accelerating modernization, standardization, and delivery for mission customers. You will work closely with the Lead Systems Engineer and Solutions Architect, and will be directly managed by the Solutions Architect. Together, you will establish a unified vision, architecture, and operating model that enables consistent, secure, and scalable software delivery across the program.

Requirements

  • Bachelor’s degree in Computer Science, Engineering, Information Systems, or related field; or equivalent experience.
  • 8+ years of relevant experience in DevOps/DevSecOps, software engineering, or systems engineering.
  • Demonstrated experience leading DevOps/DevSecOps implementations for complex software portfolios or large programs.
  • Hands-on experience designing and implementing CI/CD pipelines using tools such as GitLab CI, GitHub Actions, Jenkins, Azure DevOps, or similar.
  • Experience designing and implementing data pipelines (e.g., using Kafka, NiFi, Airflow, Spark, or cloud-native data services).
  • Experience working with containerization and orchestration (e.g., Docker, Kubernetes, OpenShift).
  • Proficiency with Infrastructure as Code (IaC) tools (e.g., Terraform, Ansible, CloudFormation).
  • Strong background in secure software development practices and integrating security into CI/CD pipelines (SAST, DAST, SCA, secrets management).
  • Experience supporting or integrating with systems for the Intelligence Community (IC) or similar high-security environments.
  • Strong communication skills and proven ability to collaborate with architects, systems engineers, and multi-disciplinary teams.
  • U.S. citizenship and ability to obtain and maintain the required clearance level, if not already held.

Nice To Haves

  • Prior experience implementing DevSecOps environments for IDIQ or multi-award contract vehicles.
  • Experience with cloud platforms (AWS, Azure, GCP, or IC-specific clouds) and cloud-native architectures.
  • Familiarity with microservices architectures, API-first design, and event-driven systems.
  • Experience with observability stacks (e.g., Prometheus, Grafana, ELK/EFK, Splunk, OpenTelemetry).
  • Knowledge of IC security and compliance frameworks, accreditation processes, and risk management approaches.
  • Experience defining code assessment methodologies and tools for portfolio analysis and modernization planning.
  • Demonstrated success standardizing toolchains and practices across multiple teams or organizations.
  • Relevant certifications (e.g., AWS/Azure DevOps, Kubernetes (CKA/CKAD), CISSP, Security+, SAFe DevOps).

Responsibilities

  • Lead Unclassified Environment Implementation: Architect, implement, and evolve GDIT’s unclassified DevSecOps environment to support multi-team software development and modernization efforts. Define environment patterns and templates that can be rapidly replicated across task orders and projects.
  • Strategic DevSecOps Vision & Roadmapping: Develop a unified DevSecOps strategy and technical vision for the IDIQ, aligning with the Solutions Architect and Lead Systems Engineer. Create and maintain roadmaps for tools, platforms, and practices to standardize DevSecOps across the application portfolio. Integrate modernization roadmaps across teams, ensuring consistent patterns for build, test, deploy, and operations.
  • Code Assessment & Modernization Approach: Define and implement a code assessment framework to evaluate legacy and modern applications (e.g., code quality, technical debt, security posture, cloud readiness). Recommend modernization approaches (refactor, replatform, retire, replace) based on assessment outcomes, mission priorities, and risk. Establish metrics and dashboards that provide visibility into application health, delivery performance, and modernization progress.
  • DevSecOps CI/CD & Data Pipelines: Design, implement, and optimize DevOps CI/CD pipelines for applications supporting the Intelligence Community (IC) and related environments. Design data pipelines to support data-centric applications, analytics, and mission workflows, with a focus on scalability, resilience, and security. Embed security controls, static/dynamic analysis, and compliance checks into CI/CD pipelines (“shift left” security).
  • Standardization & Tooling: Identify, evaluate, and recommend new technologies, tools, and platforms (e.g., container platforms, orchestration, IaC, security tools) to enhance the DevSecOps ecosystem. Standardize toolchains and delivery patterns to reduce fragmentation, increase reuse, and improve reliability across teams. Define and maintain reference architectures, templates, and playbooks for application onboarding, build, test, deploy, and operations.
  • Collaboration & Leadership: Partner with the Lead Systems Engineer to align DevSecOps practices with system architecture, integration, and performance requirements. Work under the direction of the Solutions Architect to ensure DevSecOps strategy aligns with overall solution architecture and customer objectives. Provide technical leadership, mentoring, and guidance to development, infrastructure, and security engineers across the program. Evangelize DevSecOps culture, automation-first mindset, and continuous improvement practices.
  • Security, Compliance & Reliability: Ensure DevSecOps practices meet IC security expectations and applicable standards (e.g., zero trust principles, secure coding, STIGs where applicable). Implement observability, monitoring, logging, and incident response patterns as part of the delivery pipeline. Drive improvements in system reliability, availability, and performance through automation and feedback loops.

Benefits

  • Variety of medical plan options, some with Health Savings Accounts
  • Dental plan options
  • Vision plan
  • 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
  • Full flex work weeks where possible
  • Variety of paid time off plans, including vacation, sick and personal time, holidays
  • Paid parental, military, bereavement and jury duty leave
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service