DevSecOps Engineer - Sr
Position: DevSecOps Engineer
LCAT: Senior Data Engineer
Location: DIA HQ, Washington, DC
Required clearance and polygraph: Active TS/SCI and CI polygraph. Candidates with current CI polygraph conducted within the past 7 years highly prioritized.
Required experience and education: 8+ years of experience and bachelor's degree
Description
As a DevSecOps Engineer, you will design, build, harden, and operate CI/CD systems, cloud infrastructure, and container platforms that support the software lifecycle from code commit through production deployment. You will partner with multiple project teams to embed security controls, automate delivery workflows, and build scalable, resilient environments.
The preferred candidate is a hands-on senior engineer who can bridge database engineering, API development, DevSecOps automation, and secure platform architecture. This person should be comfortable taking an initial concept, building an MVP, working directly with platform teams, and turning the solution into reusable templates and implementation patterns for multiple database technologies.
The candidate will be responsible to design, tune, and maintain relational and NoSQL databases, including PostgreSQL, MySQL, Aurora, Oracle, MongoDB, and AWS RDS-based services. They will support database migration, backup, replication, disaster recovery, and point-in-time recovery activities. They will also support secure software delivery in accordance with DoD, IC, RMF, ICD-503, NIST SP 800-53, STIG, and continuous monitoring requirements.
Required qualifications
8+ years of experience in DevSecOps, DevOps, Cloud Engineering, or platform automation roles
Experience designing and maintaining CI/CD pipelines with GitLab CI or GitHub Actions
Experience deploying cloud infrastructure on AWS, Azure, or GCP using IaC, such as Terraform, CloudFormation, or CDK
Experience containerizing and orchestrating workloads using Docker or similar containerization and Kubernetes
Experience integrating automated security checks into CI/CD pipelines, such as SAST, SCA, or image scanning
Experience in Linux administration and proficiency in scripting languages, such as Python, Bash, or Go
Experience with Git‑based branching, tagging, and release workflows
Experience with networking fundamentals, such as DNS, routing, load balancing, or TLS
Cloud or DevOps Certifications, such as AWS Solutions Architect, CKA, CKAD
Security+ Certification
Active TS/SCI clearance; willingness to take a polygraph exam
Bachelor’s degree in a STEM field or equivalent work experience.
Experience with GitOps tooling, such as Flux, Argo CD, or Helmfile
Experience optimizing CI/CD pipelines, such as caching, artifacts, or parallelization
Experience implementing Zero Trust patterns, hardened container images, or compliance‑focused deployments such as STIG or CIS Benchmarks
Experience with AWS security services, such as GuardDuty, Macie, Inspector, or equivalent Azure or GCP tools
Experience with observability platforms such as Prometheus, Grafana, ELK, or CloudWatch
Experience with configuration management systems such as Ansible, Chef, or Puppet
Experience with AI augmented development workflows or agentic tools
Master’s degree in Physics, Computer Science, or a STEM field.
ABOUT NALLEY CONSULTING
Nalley Consulting is a Service Disabled Veteran Owned Small Business working with prime partners to staff Department of Defense and Intelligence Community positions. Created by a U.S. Navy intelligence veteran, Nalley Consulting has grown to include multiple IDIQ vehicles in several states.
Nalley Consulting fringe benefits include:
- Excellent medical, dental, and vision benefits
- PTO
- 11 paid federal holidays
- Tuition assistance
- Paid military-reserve leave
- Paid parental leave for birth or adoption
- 401k matching up to 5 percent of the base salary
- Flex time
- Company-paid short-term disability, long-term disability, and life insurance.