GDIT is seeking a Technology Consulting Senior Advisor (DevSecOps Engineer Lead) to secure internal assets, configure permissions, enforce role-based access, and integrate compliance controls for federal civilian agencies. The role aims to increase efficiency and support overall program, application, and capability objectives by assessing, recommending, and implementing changes to existing and new systems infrastructure.
Requirements
- Cloud experience in Azure/Cloud.gov
- Experience with SAST/DAST
- Experience with Terraform, ARM/Bicep, and Ansible
- Hands on experience with navigating Microsoft’s Azure Platform
- Azure Databricks, Azure Data Factory
- Network Architecture: Active Directory, Load traffic management (Load balancers), WAF (Web Application Firewall)
- Expert knowledge of programming languages and technologies, including Python, Java, PHP, Apex, Drupal, SharePoint, Atlassian, GitLab, .NET, Salesforce, Docker and Containers, NGINX, Postgres, Ruby on Rails
Responsibilities
- Leads the design and implementation of secure CI/CD pipelines using Azure DevOps in Azure Gov environments
- Integrate automated security scans (SAST/DAST) at each stage for early vulnerability detection
- Automate infrastructure provisioning and configuration with Infrastructure as Code tools and configuration management
- Implement continuous security monitoring within the pipeline (container image scanning, dependency vulnerability checks, code quality gates)
- Enforce compliance checkpoints before deployment to sensitive cloud environments
- Coordinate with development, operations, and security teams to embed DevSecOps best practices
- Oversee release workflows and change management processes
Other
- Secret Clearance to start
- Bachelor's degree in computer science or relevant field; master's degree or equivalent professional experience is preferred
- Comprehensive knowledge of corporate Systems/Solutions Architecture processes and trends.
- Strong leadership, organizational, and communication skills.
- Experience with software development cycles