- Страна
- США
Откликайтесь
на вакансии с ИИ

DevSecOps Engineer
Позиция предлагает работу над уникальными оборонными проектами с реальным влиянием на безопасность. Компания прибыльна, предлагает отличный социальный пакет (Unlimited PTO, бонусы) и плоскую структуру управления, однако требует высокого уровня ответственности и наличия строгого допуска.
Сложность вакансии
Высокая сложность обусловлена требованием активного допуска TS/SCI с возможностью прохождения полиграфа, а также необходимостью глубоких знаний специфических государственных облачных платформ (AWS GovCloud, Azure Government). Роль требует 7–10 лет опыта и владения широким стеком технологий от Kubernetes до комплаенса по стандартам NIST и STIG.
Анализ зарплаты
Предлагаемая роль DevSecOps инженера с допуском TS/SCI в Вашингтоне (район базы Боллинг) оценивается выше среднего по рынку из-за дефицита специалистов с таким уровнем проверки. Рыночные оценки для Senior/Lead уровней в оборонном секторе США составляют $160k-$210k.
Сопроводительное письмо
I am writing to express my strong interest in the DevSecOps Engineer position at Spear AI. With over 8 years of experience in cloud engineering and a deep focus on securing CI/CD pipelines within classified environments, I am confident in my ability to support your mission-critical work for the IC and U.S. Navy. My background includes extensive hands-on experience with AWS GovCloud and Azure Government, as well as implementing Infrastructure as Code using Terraform and Ansible to meet strict STIGs and FedRAMP compliance.
In my previous roles, I have successfully navigated the ATO process and collaborated closely with ISSOs to ensure containerized workloads on Kubernetes remain secure and compliant. I am particularly drawn to Spear AI’s flat organizational structure and your commitment to shipping impactful products like sonobuoy sensors. I hold an active TS/SCI clearance and am prepared to undergo a Polygraph to support your projects on the MSIC Cloud infrastructure.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в spear-ai уже сейчас
Присоединяйтесь к Spear AI и внесите свой вклад в национальную безопасность США, работая с передовыми оборонными технологиями!
Описание вакансии
We are seeking a DevSecOps Engineer to design, implement, and manage secure DevSecOps pipelines and cloud infrastructure for an IC customer operating on MSIC Cloud infrastructure..
Spear AI is a growing defense contracting company dedicated to delivering cutting-edge solutions that support our nation’s security. As we expand, we’re building a culture where innovation meets mission-critical work. We operate with a flat organizational structure that empowers every team member to make an impact, collaborate directly with leadership, and contribute to projects that matter. Whether you’re joining our Hardware, Software, or Services division, you’ll work alongside talented professionals who are committed to excellence and advancing the capabilities that keep our nation safe and secure.
Spear AI builds sonobuoy sensors that are deployed into the water and collect edge data. We also work with the U.S. Navy to collect and process their SONAR data. You’ll have an opportunity to work on real-world projects that directly impact warfighter capabilities and mission success.
What you’ll do
We’re a small team wearing many hats, and you’d have a wide variety of responsibilities that include:
- Design, build, and maintain secure CI/CD pipelines for AI/ML applications operating on MSIC Cloud (AWS GovCloud and Azure Government)
- Integrate automated security testing, static/dynamic analysis, and compliance checks (SAST, DAST, SCA) throughout the software delivery lifecycle
- Implement and manage Infrastructure as Code (IaC) using tools such as Terraform, CloudFormation, or Bicep for classified cloud environments
- Ensure cloud infrastructure and containerized workloads (Kubernetes, Docker) comply with applicable STIGs, CIS Benchmarks, and IC security requirements
- Collaborate with ISSOs and ISSMs to support ATO processes, continuous monitoring, and security control implementation for cloud-hosted systems
- Develop and maintain automated compliance monitoring, audit logging, and alerting capabilities across AWS and Azure environments
- Implement container security, secrets management, and identity/access management (IAM) best practices for classified cloud workloads
- Support migration and deployment of AI/ML workloads to classified cloud environments, optimizing for performance, scalability, and security
- Maintain DevSecOps documentation, runbooks, and architectural diagrams for classified cloud platforms
- Evaluate and integrate emerging cloud security tools and DevSecOps practices relevant to IC mission environments
Important Skills
- 7–10 years of experience in DevSecOps, cloud engineering, or related discipline, with significant experience in classified or government cloud environments
- Active TS/SCI required; must be able to obtain a Polygraph.
- Hands-on experience with both AWS GovCloud (AWS IC) and Azure Government cloud platforms
- Proficiency with CI/CD tools (GitLab CI, Jenkins, GitHub Actions, or equivalent) in classified environments
- Strong experience with container orchestration (Kubernetes, OpenShift) and container security practices
- Expertise in Infrastructure as Code (Terraform, CloudFormation, Ansible, or Bicep)
- Solid understanding of cloud security frameworks, STIGs, and FedRAMP/IL4/IL5/IL6 compliance requirements
- Familiarity with IC and DoW cloud security policies, including CSP authorization processes
- Experience supporting or integrating with NIST RMF and ATO processes in a DevSecOps capacity
- Security certification required: CISSP, Security+, or equivalent DoW 8570/8140 compliant certification
Nice to have
- AWS Certified DevOps Engineer, AWS Certified Security Specialty, Microsoft Azure DevOps Engineer Expert, or equivalent
- Prior experience operating on MSIC Cloud infrastructure
- Experience deploying and securing AI/ML workloads in cloud environments
- Military Intelligence or IC experience
Why work with us
- We ship — We don’t work on 18-month projects that are irrelevant before they’re even finished.
- Our work has impact — We build products that are deployed to U.S. submarines and integrate with the sonobuoys we manufacture.
- We’re growing responsibly — We have the resources to hire a lot more people, but we don’t want to build a massive team of people who don’t share our values.
- We’re profitable — We aren’t burning through cash trying to make the business work. But we also have investors who believe in us and are committed to our success.
- We care about doing great work — You don’t need permission to sweat the details here.
- We don’t take ourselves too seriously — We’re building products that make the world safer. But we don’t let that get to our heads.
What we offer
- Unlimited PTO — Take the time you need to recharge and maintain work-life balance.
- Dedicated Sick Time — Your health and well-being come first.
- Comprehensive Health & Benefits – Medical, dental, and vision coverage to keep you and your family protected.
- 11 Paid Holidays — Enjoy time off throughout the year to celebrate and spend time with loved ones.
- Professional Development — Educational opportunities and resources to help you grow your skills and advance your career.
- Collaborative Environment — Work directly with leadership in our flat organizational structure, where your ideas and contributions matter.
- Mission-Driven Work — Contribute to projects that directly support national security and make a real-world impact.
- Growth Opportunities — Join us during an exciting expansion phase where you can help shape our future.
Additional benefit opportunities when you choose Spear AI:
- 401(k) with company match.
- Onsite / Remote / Flexible work arrangements or hybrid options (position dependent).
- Relocation assistance (position dependent).
- Referral bonuses.
- Performance bonuses.
- Life insurance and disability coverage.
- Technology home office setup stipend.
- Professional certification reimbursement (position dependent).
We offer competitive compensation tailored to your experience, location, and the impact you’ll make. We’re committed to equitable pay and will share a range aligned to your level and geography during the hiring process. In accordance with state law, candidates in jurisdictions such as CA, CO, WA, NY, and others, where applicable, will be provided a good-faith salary range upon request and throughout the hiring process. This is a full-time, exempt position under the Fair Labor Standards Act (FLSA) and is not eligible for overtime pay.
Compensation for this position is provided on a salaried basis and is not subject to reduction based on hours worked. At Spear AI, you’ll find more than just a job; you’ll join a mission-driven team where your work directly contributes to national security. Our flat organizational structure means your voice matters, your ideas reach leadership, and your impact is visible. As we grow, we’re committed to building robust processes and infrastructure that support both our mission and our people. We value collaboration, continuous improvement, and the expertise each team member brings to the table. If you’re looking for a place to grow professionally while working on projects that truly matter, we’d love to hear from you.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Terraform
- FedRAMP
- Kubernetes
- GitHub Actions
- CI/CD
- IAM
- Docker
- Jenkins
- DevSecOps
- CloudFormation
- Ansible
- STIGs
- AWS GovCloud
- NIST RMF
- GitLab CI
- Bicep
- SCA
- SAST
- DAST
- Azure Government
Возможные вопросы на собеседовании
Учитывая работу в закрытых облаках, важно понимать, как кандидат обеспечивает безопасность образов и рантайма.
Как вы организуете сканирование уязвимостей и управление секретами в изолированных (air-gapped) или строго регулируемых Kubernetes-кластерах?
Вакансия требует опыта работы с процессами ATO (Authorization to Operate).
Опишите ваш опыт автоматизации сбора доказательств для соответствия требованиям NIST RMF в рамках CI/CD конвейера.
Работа ведется в мультиоблачной среде (AWS/Azure).
С какими основными различиями в реализации безопасности IAM вы сталкивались при работе в AWS GovCloud по сравнению с Azure Government?
Упоминается работа с AI/ML нагрузками.
Какие специфические требования безопасности необходимо учитывать при развертывании моделей машинного обучения в защищенном облачном контуре?
Вакансия предполагает использование IaC для классифицированных сред.
Как вы обеспечиваете проверку конфигураций Terraform на соответствие стандартам STIG до момента развертывания инфраструктуры?
Похожие вакансии
Devops Middle+/Senior
DevOps Middle +/ Senior
Senior DevOps/Mlops
Middle DevOps Engineer
Senior DevOps/SRE Engineer (On-Premise инфраструктура)
DevOps - senior
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США