yandex
Страна
США
Зарплата
150 000 $ – 180 000 $
ГибридПолная занятость

DevSecOps Engineer

ИИОценка ИИ

Отличная вакансия с высокой зарплатой и работой над критически важными проектами в сфере кибербезопасности. Компания предлагает четкий стек технологий и гибридный формат работы в нескольких локациях.

Сформировано ИИ автоматически. Не является проверкой вакансии или работодателя.


Вакансия из открытого источника
Пожаловаться
+400% приглашений от HR

Улучшите резюме под эту вакансию

Возьмём требования и создадим новую версию резюме с акцентом на нужный опыт

Сложность вакансии

ЛегкоСложно
ИИОценка ИИ

Высокая сложность обусловлена строгими требованиями к гражданству США и возможности получения допуска Top Secret/SCI. Технически роль требует глубоких знаний в специфических областях, таких как hardening контейнеров, работа с Chainguard и государственными стандартами безопасности (Platform One/Iron Bank).

Сформировано ИИ автоматически. Не является проверкой вакансии или работодателя.

Анализ зарплаты

Медиана165 000 $
Рынок145 000 $ – 190 000 $
ИИОценка ИИ

Предлагаемый диапазон $150k–$180k полностью соответствует рыночным ожиданиям для Senior DevSecOps ролей в оборонном секторе США, особенно с учетом требований к высокому уровню допуска.

Сформировано ИИ автоматически. Не является проверкой вакансии или работодателя.

Сопроводительное письмо

Составьте сопроводительное письмо под эту вакансию с вашим резюме

Иллюстрация сопроводительного письмаИллюстрация сопроводительного письма

Описание вакансии

Dark Wolf is seeking a DevSecOps Engineer to support the development and sustainment of a cloud-based platform that enables cyber operations. The successful candidate will architect a centralized secure image factory, integrate proprietary scanning tools, and manage the supply chain of hardened containers. The team provides support to enhance and develop new applications, analytics, and services for the customer and to modernize capabilities through an agile, evolving requirement identification and prioritization process. This position will call for support at a main DW supported office location. Tasks may include assisting with:

  • Deploying and maintaining a centralized artifact repository on cloud-native architecture (AWS/Azure).
  • Building and maintaining CI/CD pipelines to automate the ingestion, scanning, and publishing of secure container images.
  • Integrating low-CVE base images (e.g., via Chainguard) into the development supply chain.
  • Implementing and managing automated compliance scanning tools (SAST/DAST/Fuzzing) within the build pipeline.
  • Implementing Infrastructure as Code (IaC) using Terraform or similar tools to stand up secure environments.
  • Developing best practices to increase the velocity of secure image updates and patch management.
  • Ensuring system performance and availability while troubleshooting and resolving technical issues within the container lifecycle.
  • Collaborating with other teams to develop and implement technical solutions for secure software delivery.
  • Automating repetitive tasks to increase efficiency and reduce errors in the image hardening process.
  • Documenting infrastructure configurations, processes, and procedures for secure supply chain management.

Required Qualifications:

  • Bachelor’s degree in IT Security, Information Systems, or equivalent
  • Minimum of 4+ years of experience working with commercial cloud service providers (AWS, Azure, or GCP)
  • Extensive experience with Containerization (Docker, Kubernetes) and Container Security
  • Experience designing Infrastructure as Code solutions using Terraform or Ansible
  • Strong proficiency in CI/CD tooling (GitLab CI, Jenkins, ArgoCD, or similar)
  • Experience with Linux administration and hardening
  • Demonstrated knowledge of DevSecOps processes and software supply chain security (SBOMs, signing, verification)
  • Strong analytical and problem-solving skills with the ability to work independently and manage multiple projects
  • US Citizenship and ability to be clearable up to the Top Secret clearance with SCI eligibility

Desired Qualifications:

  • Experience with Chainguard images and low-CVE container strategies
  • Experience working with Platform One, Iron Bank, or similar DoD software factories
  • Experience with proprietary fuzzing or scanning pipelines
  • Experience deploying and maintaining AWS services including ECR, S3, and RDS
  • Industry certifications, such as AWS Certified Solutions Architect, Security+, or CCNA.

This position will be supported at a hybrid capacity at any of the following DW Office locations: Herndon, VA, Omaha, NE, Colorado Springs, CO, Tampa, FL.

The estimated salary range for this position is $150,000.00 - $180,000.00, commensurate on experience and technical skillset.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

Больше похожих вакансий + автоотклики с ИИ

Умный подбор, сопроводительные письма, советы по отказам — больше приглашений.

Больше похожих вакансий + автоотклики с ИИ

Навыки

  • AWS
  • Azure
  • GCP
  • Docker
  • Kubernetes
  • Terraform
  • Ansible
  • GitLab CI
  • Jenkins
  • ArgoCD
  • Linux
  • SAST
  • DAST
  • Fuzzing
  • SBOM

Возможные вопросы на собеседовании

Проверка опыта работы с безопасностью цепочки поставок ПО, что является ключевой задачей вакансии.

Расскажите о вашем опыте работы с SBOM и инструментами подписи образов. Как вы обеспечиваете целостность контейнеров в CI/CD?

Вакансия предполагает создание 'фабрики образов'. Важно понять, как кандидат минимизирует уязвимости.

Каков ваш подход к минимизации CVE в базовых образах? Был ли у вас опыт работы с дистролесс-образами или Chainguard?

Оценка навыков автоматизации инфраструктуры.

Опишите сложную проблему, с которой вы столкнулись при использовании Terraform для развертывания в AWS/Azure, и как вы её решили.

Проверка понимания специфики работы с государственными/оборонными заказчиками.

Знакомы ли вы с концепциями Iron Bank или Platform One? Как бы вы адаптировали коммерческие DevSecOps практики под эти стандарты?

Оценка навыков траблшутинга в распределенных системах.

Как вы организуете мониторинг и аудит безопасности в кластере Kubernetes для выявления аномалий в реальном времени?

Сформировано ИИ автоматически. Не является проверкой вакансии или работодателя.

Похожие вакансии

СШАот 150 000 $
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!