V

Cyber DevSecOps Engineer

VivSoft Technologies
Full-time
Remote
United States
About the company:
VivSoft is an emerging technology company that specializes in using modern technologies to solve our clients' toughest mission challenges. We are focused on Cloud, Enterprise DevSecOps, Artificial Intelligence, and Digital Customer Experience to drive mission-enabling digital transformation. Our passion is building mission-focused, open, scalable solutions. We are a diverse team of strategists, engineers, designers, and creators experienced in building high-performance software and AI factory accelerators by embracing automation.

Job Summary:
We are seeking a talented and experienced Cyber DevSecOps Engineer to join our team on a critical Department of Defense (DoD) project. As a key member of our cybersecurity team, you will be responsible for safeguarding our systems and data from cyber threats. We value expertise and innovation, fostering a collaborative environment where your contributions are recognized. Your efforts will be crucial in ensuring the security and integrity of our Defense systems, directly supporting national security. 

Job Responsibilities

    • Develop, deploy, and maintain security solutions to protect information systems and networks from cyber threats and vulnerabilities. 
    • Continuously monitor security systems and respond to potential incidents. 
    • Perform regular security assessments, including vulnerability scans, penetration tests, and security audits, to identify and address potential security risks. 
    • Assist in the development and enforcement of security policies, procedures, and guidelines to ensure compliance with DoD cybersecurity standards. 
    • Work with IT, development, and operations teams to ensure security is integrated into all phases of system development and deployment. 
    • Manage and optimize security tools (e.g., firewalls, IDS/IPS, SIEM) to improve detection and response capabilities. 
    • Ensure compliance with DoD regulations and cybersecurity frameworks such as NIST, CIS, and DoD STIGs. 
    • Assist in the development and execution of incident response plans, conduct post-incident analysis, and implement improvements to enhance security posture. 
    • Stay up to date with the latest cybersecurity threats, technologies, and best practices to continuously improve our defenses. 

Skills / Qualifications Required:

    • Security Clearance Requirement: TS SCI
    • Hands-on experience with Kubernetes, Docker, and Open Container Initiative standards.
    • Strong understanding of network and system security principles. 
    • Experience with security tools firewalls, IDS/IPS, SIEM, vulnerability scanners). 
    • Familiarity with cybersecurity frameworks NIST, CIS, DoD STIGs. 
    • Expertise in securing CI/CD environments.
    • Solid experience in cloud computing platforms (AWS, Azure, GCP).
    • Experience with the NIST Risk Management Framework and DoD security standards.
    • Excellent problem-solving and collaboration skills to work with cross-functional teams.
    • Knowledge of DoD DevSecOps Reference Architecture, RKE2, Git/GitLab/GitOps Big Bang, Version Control, SOPS, Cybersecurity vulnerability scanning (SAST and DAST)

    • Preferred Qualifications:
    • Experience in DoD or other federal cloud environments.
    • Knowledge of DevSecOps practices and automated security integration in cloud-native environments.