BLEN is a company focused on transforming digital experiences for government agencies and businesses. They are seeking a DevSecOps Engineer to implement and maintain CI/CD pipelines while ensuring security integration throughout the software development lifecycle.
Responsibilities:
- Support DevSecOps efforts to ensure delivery of a demand model leveraging continuous everything to reduce defects while increasing productivity and time-to-market
- Assist with the establishment of CI/CD pipeline guidelines, standards, and strategies
- Communicate with development teams to ensure adherence to CI/CD guidelines and standard DevSecOps processes
- Support the technical planning, configuration, integration, verification, and validation of the pipeline toolchain
- Implement automated methods to improve system performance and reliability, including scripting, integration, and problem resolution related to the CI/CD pipeline toolchain
- Quickly learn business workflows, technical architecture, and dependent systems of the supported services
- Collaborate with cross-functional teams to integrate various DevSecOps practices as part of a CI/CD implementation
- Troubleshoot issues within the pipeline and provide solutions
- Stay updated with the latest DevSecOps trends, tools, and best practices
- Contribute to the continuous improvement of our DevSecOps processes and tooling
- Support the implementation of security measures throughout the CI/CD pipeline
- Assist in the creation and maintenance of documentation for DevSecOps processes and tools
Requirements:
- 5+ years of experience in software development or related fields
- At least two years of hands-on experience supporting DevOps/DevSecOps to reengineer and automate the software development process
- Experience in the technical aspects of DevSecOps techniques, continuous integration, continuous testing, and continuous deployment
- Proficiency with distributed source control (Git)
- Experience with dependency management tools
- Familiarity with leading CI/CD tools such as Jenkins or TFS
- Understanding of Pipeline as Code scripting technologies
- Experience with industry-standard Static Code Analysis (SCA) tools such as SonarQube, Nexus IQ Server, or Fortify
- Hands-on experience integrating SCA tools into CI/CD pipeline
- Familiarity with open-source tools for test automation such as Selenium
- Must be a US Citizen or legal resident and able to work domestically
- Must be able to attain low-level security clearance
- Experience working in a large software development program using Agile (preferably SAFe) development methodology
- Experience implementing DevSecOps for a Cloud-based system on a modernization program
- Knowledge of Cloud Service Platforms such as AWS or Azure
- Experience with container orchestration using tools such as Docker-compose
- Familiarity with Container Management Platforms such as OpenShift
- Experience with Infrastructure as Code tools such as Ansible, Chef, or Puppet
- Knowledge of Continuous Monitoring tools such as ELK Stack (Elasticsearch, Logstash/Fluentd, Kibana)
- Relevant certifications in DevOps, cloud platforms, or security