Role Description
The Cloud DevSecOps & Automation Engineer implements and sustains DoD-compliant operating systems and the DevSecOps toolchain on NAVSUP virtual hardware in support of the Department of the Navy. This role is responsible for:
-
Installation, configuration, and sustainment of Windows Server, Microsoft SQL Server, IIS, Red Hat Enterprise Linux, and Azure DevOps environments.
-
Administration of DevSecOps and compliance tooling including SonarQube, Sonatype, Twistlock, NESSUS ACAS, and WSUS.
-
Executing patching, upgrades, backups, and restores in accordance with DoD IAVM directives.
-
Delivering CI/CD pipelines through Infrastructure as Code and container-based deployment.
Work is performed remotely from within the United States. This position requires an active Top Secret clearance, privileged system access, and an IT-I security designation.
Qualifications
-
Active Top Secret clearance.
-
IT-I security designation and privileged system access.
-
DoD 8570.01-M IAT Level II baseline certification: CompTIA Security+ CE, or an approved substitute.
-
Active enrollment and participation in the certification maintenance program.
-
Information Assurance Technical Level I training and certification.
-
Computing environment certification, current no later than six (6) months after start.
-
Five (5) years of experience across DevSecOps tooling and automation platforms.
-
Hands-on experience administering Windows Server and Red Hat Enterprise Linux in a DoD environment.
-
Demonstrated experience building CI/CD pipelines using Infrastructure as Code and container-based deployment.
-
Experience administering NESSUS ACAS and remediating scan findings.
-
Ability to work remotely from a U.S. location and to complete DoD onboarding, security, and mandatory annual training requirements on schedule.
-
Preferred: prior NAVSUP or Department of the Navy DevSecOps pipeline experience; familiarity with Navy DEVSECOPS guidance under NAVADMIN 342-20.
Requirements
-
Perform analysis, design, architectural reviews, installation, and configuration to implement DoD-compliant operating systems on NAVSUP virtual hardware.
-
Execute installations for Microsoft Windows servers, Microsoft SQL servers, Microsoft IIS, Red Hat Enterprise Linux servers, and Azure DevOps servers.
-
Configure, manage, and sustain operating system operations, including virus scanning and endpoint security.
-
Configure, manage, and sustain DevSecOps tools including SonarQube, Sonatype, and Twistlock.
-
Configure, manage, and sustain NESSUS Assured Compliance Assessment Solution (ACAS) operations.
-
Configure, manage, and sustain Windows Server Update Services (WSUS).
-
Execute all required patches, upgrades, backups, and restores in accordance with DoD Information Assurance Vulnerability Management (IAVM) directives.
-
Execute DevSecOps implementations using Infrastructure as Code (IaC) and container-based deployments, delivering CI/CD pipelines.
-
Implement automation capabilities adhering to DoD and NAVSUP standards to achieve strategic goals.
-
Execute monthly knowledge transfer and mentoring to NAVSUP BSC Government personnel, and document each event in the Monthly Knowledge Transfer Log.