DevOps Engineer

Sabel Systems
United States
4 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Kubernetes Security Active Directory Application Programming Interfaces (APIs) Amazon Web Services Application Firewall Systems Engineering Microsoft Azure Bash Shell Ubuntu (Operating System) CentOS Cloud Computing Cloud Computing Security
+55 more
Cloud Engineering Code Review CompTIA Security+ Cyber Security Computer Engineering Continuous Integration Linux DevOps Github Identity and Access Management Information Technology Operations Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Key Management Network Security Linux System Administration Linux Security Modules Windows Servers Network Segmentation Open Source Technology Windows PowerShell Red Hat Enterprise Linux Ansible Prometheus Runbook Security Information and Event Management Software Deployment Software Engineering SonarQube Systems Architecture Datadog Google Cloud Cloud Platform System Software Security Cyber Threat Analysis Cloudformation Containerization Gitlab-ci Kubernetes Infrastructure Automation Frameworks Information Technology Hashicorp Checkmarx CIS Benchmarks Terraform Splunk Devsecops Docker Elk Stack Jenkins Static Application Security Testing Vulnerability Analysis Golang Dynamic Application Security Testing

Job description

  • Design, build, and maintain secure cloud infrastructure and platforms for classified DoD systems, incorporating security controls at every layer (network, compute, storage, application)
  • Develop and deploy infrastructure-as-code (IaC) using secure, version-controlled approaches (Terraform, CloudFormation, Ansible); implement security controls and compliance requirements through code
  • Implement and maintain security hardening standards for Kubernetes clusters, Docker containers, Linux/Windows servers, and cloud resources in accordance with DISA STIGs, NIST guidelines, and DoD security baselines
  • Manage network security controls including firewalls, WAF (Web Application Firewalls), network segmentation, access controls (ACLs), and encryption for data in transit and at rest
  • Design and implement secrets management solutions (HashiCorp Vault, cloud-native secret managers) to protect credentials, API keys, certificates, and sensitive configuration data
  • Design, implement, and maintain secure CI/CD pipelines that enforce security controls throughout the build, test, and deployment process
  • Implement automated security scanning at multiple pipeline stages: static application security testing (SAST), dynamic application security testing (DAST), interactive application security testing (IAST), container scanning, and infrastructure-as-code scanning
  • Conduct software composition analysis (SCA) to identify and remediate vulnerable dependencies and track open-source license compliance
  • Ensure system architecture and configurations comply with DoD security requirements, including DISA Risk Management Framework (RMF), NIST security controls, FISMA requirements, and system security plans (SSPs)
  • Implement continuous monitoring and compliance scanning to detect security misconfigurations, unauthorized changes, and control violations in near-real-time
  • Configure and manage Security Information and Event Management (SIEM) systems and security monitoring tools to provide visibility into infrastructure and application security events
  • Serve as a subject matter expert in incident response for infrastructure and application security incidents; investigate security events and coordinate remediation efforts
  • Provide technical support for application development teams, assisting with deployment issues, troubleshooting, and operational runbooks
  • Develop and maintain comprehensive technical documentation including architecture diagrams, runbooks, standard operating procedures (SOPs), and security configurations
  • Collaborate with security teams, software developers, systems architects, and IT operations to integrate security into development and operations processes, * Bias for Action: Decisive. Purposeful. Agile. We move with the speed of relevance to drive impact and progress.
  • Integrity: Respect. Ethics. Transparency. We do what’s right and earn lasting trust.
  • Delivery Excellence: Customer-obsessed. Mission-focused. Quality-driven. We deliver innovative outcomes that exceed expectations.

Our EVP Promise Join Sabel Systems, where your contributions drive impact, your growth is continuously supported, and your well-being is at the center of how we work. Together we can build the future with purpose. Rewarding Impact. Building Futures Together.

Requirements

  • US Citizen with Top Secret security clearance with SCI eligibility; experience in classified environments
  • Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, Information Security, or related field; relevant professional experience may substitute
  • 10+ years of professional experience in systems administration, infrastructure operations, DevOps, cloud engineering, or cybersecurity
  • 5+ years of hands-on DevOps or DevSecOps experience including infrastructure automation, CI/CD pipeline development, and cloud platform management
  • 5+ years of hands-on cybersecurity experience including security architecture, threat modeling, vulnerability assessment, or security engineering
  • Advanced proficiency in Linux administration (Red Hat, CentOS, Ubuntu); strong understanding of Linux security, hardening, and compliance
  • Advanced expertise with Kubernetes cluster management and security; hands-on experience deploying, securing, and troubleshooting Kubernetes in production environments
  • Proficient with container technologies (Docker, Podman); understanding of container security, image scanning, and supply chain security
  • Hands-on expertise with at least one major cloud platform (AWS, Azure, GCP, or DoD-specific clouds); strong understanding of cloud security models, IAM, and compliance
  • Experience with DoD-specific cloud platforms (AWS GovCloud, Microsoft Azure Government, CloudOne, Platform One) or equivalent compliance-heavy environments
  • Expert-level scripting ability in Python, Bash, Go, or PowerShell; ability to develop complex automation solutions and tools
  • Advanced proficiency with infrastructure-as-code (IaC) tools such as Terraform, CloudFormation, Ansible, or Helm; experience implementing IaC security practices
  • Expert-level experience with CI/CD platforms (Jenkins, GitLab CI, GitHub Actions, or equivalent); ability to design and implement secure pipelines
  • Hands-on experience with security scanning tools including SAST (SonarQube, Checkmarx), DAST, container scanning, IaC scanning, and SCA tools
  • Experience with monitoring and observability platforms (Prometheus, ELK Stack, Splunk, DataDog, or equivalent); ability to design comprehensive monitoring strategies
  • Hands-on experience with SIEM systems and security monitoring; understanding of log aggregation, correlation, and alerting
  • Experience with Windows Server administration and security; knowledge of Active Directory and group policies
  • Current CompTIA Security+ (CE) certification required; CISSP, CCSK, or other advanced security certifications strongly preferred
  • Strong understanding of NIST Cybersecurity Framework, security controls, and DoD security requirements; familiarity with DISA RMF process
  • Willingness to be on-call for incident response and critical infrastructure issues; flexibility for occasional travel to classified facilities

Preferred

  • Advanced security certifications (CISSP, CCSK, CEH, OSCP, CKA) or equivalent recognized credentials
  • Kubernetes certifications (CKA, CKAD, KCNA) or equivalent demonstrated expertise
  • Cloud certifications from AWS, Azure, or GCP focusing on security and architecture
  • Experience with DISA Security Technical Implementation Guides (STIGs) and hardening guidance
  • Experience with DoD Risk Management Framework (RMF) process including system categorization, security control selection, and control implementation
  • Experience with secrets management tools (HashiCorp Vault, cloud-native secret managers) in production environments
  • Experience with Web Application Firewalls (WAF), intrusion detection/prevention systems (IDS/IPS), and network security tools
  • Experience with security incident response, forensics analysis, or threat intelligence
  • Experience with threat modeling methodologies (STRIDE, PASTA) and security architecture design
  • Experience with supply chain security, software bill of materials (SBOM), and artifact repository security
  • Familiarity with DoD acquisition processes and systems engineering practices

Benefits & conditions

Compensation will be determined in partnership with the Hiring Manager and may vary based on factors such as contract and labor category alignment, relevant experience, skills, education, certifications or licenses, and geographic location.

Sabel Systems is committed to offering all employees a competitive benefits and compensation package that is comprehensive enough to meet their goals and needs. Our employees are our most valuable asset, and one of Sabel Systems largest financial investments is our benefits program. As a valued member of the organization, employees are provided with a host of benefits to include healthcare; financial assistance in the event of illness, injury, disability, loss of work, or death; health savings accounts; retirement plans; paid time off; paid holidays; education and training program reimbursement, to name a few.

About the company

Sabel Systems designs and delivers digital engineering ecosystems for DoD programs, enabling teams to connect data, systems, and personnel within secure, scalable environments. Our solutions empower programs to make faster decisions, close sustainment gaps, and meet the digital acquisition requirements.

Rather than simply proposing transformation, we implement and operate it at scale. Our method is clear: we orchestrate existing tools into a governing system of record, ensuring government ownership of infrastructure and traceable decisions. There’s no vendor lock, no proprietary baselines, and no need for ATO rebuilds during transitions.

Sabel Systems is redefining modern defense acquisition. If you seek to solve complex challenges at scale and want your work to directly accelerate military capability while reshaping the DoD’s approach to digital engineering, this is the place for you.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all