Apply for this Job
This role resides within the Data pillar and involves designing and automating security pipelines to enhance software security posture within a DevSecOps framework. Responsibilities include automating vulnerability scans, implementing mitigations, and managing automated Docker container builds. The role may require the development of multi-enclave security pipelines, contingent on binary modification levels accepted by RAISE+. Responsibilities: Ensure zero critical and high vulnerabilities across production and development environments.
Manage and document Plan of Action & Milestones (POA&Ms) for medium-level findings.
Maintain continuous burndown of medium-level vulnerabilities.
Develop and implement mitigations in compliance with ISSM-approved timelines based on vulnerability severity.
Enhance security automation processes for streamlined vulnerability remediation.
Work closely with cybersecurity and development teams to improve security best practices within DevSecOps pipelines.
Required Skills and Experience: 10 or more years relevant experience.
Hands-on experience with Tekton for CI/CD automation.
Proficiency in Docker containerization and security hardening.
Strong understanding of security vulnerability management within a DevSecOps pipeline.
Familiarity with secure software development lifecycle (SDLC) principles.
Preferred Skills and Experience: DoD Cybersecurity Workforce (CSWF) qualification desired; must meet or be capable of satisfying DoD 8140 requirements.
Experience with Kubernetes, container security scanning tools, and infrastructure as code (IaC).
Understanding of Risk Management Framework (RMF) and Authority to Operate (ATO) processes.
Familiarity with AI/ML-driven security automation and anomaly detection.
Education and Certification Requirements: Bachelor's degree in a STEM field (Computer Science, Engineering, Cybersecurity, or related discipline).
Relevant industry certifications (e.g., Security+, CISSP, CEH, CISM) are a plus.
Citizenship and Clearance requirement: U.S. Citizenship required.
Active Secret clearance required.
TS eligible; active TS-SCI security clearance desired.
Date Posted: 04 April 2025
Apply for this Job