See all jobs on Scoutfield
Search thousands of fresh jobs every day.
- Fresh listings
- Fast filters
- No subscription required

DevSecOps Engineer
Connected Logistics. Support Cybersecurity Architecture and Engineering Services for the Department of Veterans Affairs Office of Information Security Cybersecurity Operations Systems Engineering program .
Core Competencies
Role fitUse this summary to align your resume positioning with the role.
Demonstrates expertise in Cybersecurity Architecture, DevSecOps practices, and secure application development, with a strong focus on risk assessment, vulnerability management, and compliance within federal environments. Proficient in integrating security throughout the software development lifecycle and collaborating with cross-functional teams to ensure secure and reliable delivery of mission-critical capabilities.
ATS Keywords
Tailor your resumeTip: use these terms in your resume and cover letter to boost ATS matches.
Tech Stack
Tools & technologiesAbout the role
Key responsibilities & impact- Support Cybersecurity Architecture and Engineering Services for the Department of Veterans Affairs Office of Information Security Cybersecurity Operations Systems Engineering program
- Design, develop, integrate, deploy, and operate secure applications and information systems
- Integrate security throughout the software development lifecycle
- Evaluate security requirements and technology capabilities
- Identify and mitigate cybersecurity risks
- Develop solutions enabling secure and reliable delivery of mission-critical capabilities
- Work with development, security, operations, and engineering teams to incorporate automated security controls, continuous monitoring, vulnerability management, and compliance activities
- Provide technical risk analysis, including risk assessments
- Analyze and define cybersecurity and system security requirements
- Design, develop, engineer, and implement secure application, infrastructure, cloud, container, and DevSecOps solutions
- Integrate security controls and testing throughout the SDLC and CI/CD pipeline
- Implement and support automated security testing, including SAST, DAST, SCA, dependency scanning, container scanning, and infrastructure-as-code security scanning
- Evaluate security products, platforms, and tools
- Identify vulnerabilities, security deficiencies, and technical risks and coordinate remediation
- Support secure configuration, vulnerability management, continuous monitoring, and security compliance across environments
- Gather and organize technical information regarding mission objectives, system requirements, security capabilities, architectures, products, and cybersecurity initiatives
- Collaborate with developers, system engineers, security engineers, architects, and operations personnel
- Develop and maintain security-related technical documentation, engineering artifacts, procedures, implementation guidance, and risk assessment information
- Support investigation and resolution of security findings
- Promote secure coding, secure configuration, least privilege, secrets management, identity and access management, and other cybersecurity engineering practices
- Provide technical guidance, daily supervision, and direction to assigned technical staff
- Communicate cybersecurity risks, technical recommendations, remediation priorities, and implementation considerations to stakeholders
Requirements
What you’ll need- Public Trust: T4 or T5 (TS)
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Information Systems, Risk Management or a related technical discipline, or an Associate's degree in the above discipline with an additional 2 years of experience
- Minimum of five (5) years of relevant professional experience in cybersecurity, information security, DevSecOps, systems security engineering, application security, or a related technical field
- Demonstrated experience analyzing cybersecurity requirements and implementing technical security solutions
- Experience supporting DevSecOps processes and integrating cybersecurity activities into application development and deployment workflows
- Experience performing cybersecurity risk assessments and identifying appropriate technical risk mitigation approaches
- Knowledge of security principles, vulnerability management, security testing, access control, secure configuration, and continuous monitoring
- Ability to collaborate effectively with software development, security, engineering, and IT operations teams
- Ability to develop clear technical documentation and communicate security requirements and risks to technical and non-technical stakeholders
- Experience providing technical direction, supervision, or leadership to technical personnel
- Preferred: experience implementing DevSecOps practices within federal government environments
- Preferred: experience designing or operating secure CI/CD pipelines
- Preferred: experience with automated application and infrastructure security testing technologies
- Preferred: experience securing cloud-native applications, containers, Kubernetes environments, microservices, APIs, and infrastructure-as-code deployments
- Preferred: experience with source-code management, build automation, artifact repositories, container registries, and automated deployment technologies
- Preferred: familiarity with federal cybersecurity requirements, security controls, risk management, and continuous monitoring practices
- Preferred: experience supporting security authorization, assessment, remediation, and compliance activities
- Preferred: experience implementing security gates and automated compliance checks within CI/CD pipelines
- Preferred: knowledge of secure software development practices, supply-chain security, secrets management, identity and access management, and zero-trust security principles
- Relevant cybersecurity, cloud, DevSecOps, or technical certifications are desirable
Benefits
Comp & perks- Health insurance
- Dental insurance
- Vision insurance
- Life insurance
- Disability insurance
- 401(k) package
- Generous Paid Time Off
- Ongoing professional development
- Confidentiality for all applicants