Design, implement, and maintain enterprise DevSecOps platforms and services. Build and support end-to-end CI/CD pipelines for application build, testing, security scanning, deployment, and monitoring. Integrate automated security and compliance controls throughout the software-development and cloud-infrastructure lifecycles.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
**FULLY REMOTE**
ScolerTec Inc. has multiple openings for Senior DevSecOps Engineers with extensive experience building and supporting secure cloud platforms, automated CI/CD pipelines, Infrastructure as Code, containerized applications, and integrated security controls.
The ideal candidate will have a strong background designing and maintaining enterprise DevSecOps platforms in AWS environments. This role will work closely with application-development, cloud-infrastructure, cybersecurity, compliance, operations, and quality-assurance teams to integrate security, monitoring, testing, governance, and deployment automation throughout the software-development lifecycle.
Key Responsibilities:
- Design, implement, maintain, and enhance enterprise DevSecOps platforms and services.
- Build and support end-to-end CI/CD pipelines for application build, testing, security scanning, deployment, and monitoring.
- Integrate automated security and compliance controls throughout the software-development and cloud-infrastructure lifecycles.
- Integrate vulnerability scanning, static application security testing, software-composition analysis, Infrastructure as Code scanning, container scanning, and policy-compliance checks into CI/CD workflows.
- Ensure source code, executable artifacts, container images, and Infrastructure as Code repositories are continuously scanned for vulnerabilities and evolving threats.
- Ensure all application and Infrastructure as Code changes are version-controlled, peer-reviewed, security-scanned, and approved before promotion.
- Implement automated deployment controls and approval gates across development, testing, staging, and production environments.
- Integrate change-control requirements into automated workflows to prevent unauthorized or unreviewed production deployments.
- Build and maintain Infrastructure as Code solutions for provisioning and managing AWS resources.
- Automate cloud provisioning, configuration, deployment, security enforcement, monitoring, and operational support.
- Develop and maintain reusable pipeline templates, shared workflows, automation scripts, and standardized platform components.
- Support containerized application development and deployment using Docker, Kubernetes, OpenShift, or similar technologies.
- Maintain secure and stable systems that enable continuous integration, continuous testing, continuous delivery, and continuous monitoring.
- Implement continuous monitoring and alerting for production deployments.
- Establish deployment rollback, recovery, and failure-handling procedures.
- Integrate third-party development, operations, testing, security, and monitoring tools to provide end-to-end visibility and control.
- Collaborate with cybersecurity and compliance teams to implement approved security controls and support continuous authorization and monitoring.
- Administer vulnerability-management processes and track vulnerabilities through remediation and verification.
- Collaborate with application teams to remediate pipeline, code, container, cloud-configuration, and dependency vulnerabilities.
- Provide operational support for infrastructure, databases, monitoring, deployment pipelines, and cloud platforms.
- Support modernization initiatives and migrations from on-premises systems to AWS.
- Develop automation using Python, shell scripting, Ruby, Perl, or similar languages.
- Use cloud APIs and automation frameworks to improve provisioning, deployment, system stability, and operational efficiency.
- Create and maintain DevSecOps standards, technical documentation, operating procedures, platform configurations, and end-user guidance.
- Provide training and technical support to development teams using shared pipelines and container-platform capabilities.
- Define and report DevSecOps metrics, including deployment frequency, pipeline success rate, mean time to recovery, vulnerability-remediation time, and change-failure rate.
- Participate in Agile ceremonies, architecture discussions, release planning, incident reviews, and continuous-improvement activities.
- Evaluate emerging technologies, security threats, tooling, and industry practices to continuously improve the DevSecOps platform.
Qualifications:
- Bachelor’s degree in Computer Science, Software Engineering, Information Technology, or a related field.
- 5+ years of experience in systems engineering, software development, cloud engineering, platform engineering, DevOps, or DevSecOps.
- Experience leading or making significant technical contributions to an on-premises-to-cloud migration or major modernization initiative.
- Strong understanding of Agile, DevOps, DevSecOps, and secure software-development practices.
- Experience supporting applications throughout the full delivery lifecycle, including development, testing, integration, delivery, deployment, monitoring, and operations.
- Strong analytical and troubleshooting skills with the ability to diagnose complex pipeline, application, infrastructure, and cloud-platform issues.
- Excellent written and verbal communication skills.
- Ability to work effectively with technical teams, leadership, customers, and external stakeholders.
Interested in remote work opportunities in Devops? Discover Devops Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
Must Have:
- Strong hands-on experience implementing and supporting end-to-end automated CI/CD pipelines.
- Experience managing CI/CD pipelines for multiple applications or enterprise development teams.
- Hands-on experience with Jenkins, GitLab CI/CD, Bamboo, GitHub Actions, or equivalent pipeline technologies.
- Strong experience with AWS cloud technologies and services.
- Experience automating the provisioning and management of AWS infrastructure.
- Strong background in Infrastructure as Code.
- Experience with Terraform, AWS CloudFormation, Ansible, Ansible Tower, or comparable automation technologies.
- Experience integrating security and compliance controls into CI/CD pipelines.
- Experience with source-code scanning, dependency scanning, container scanning, Infrastructure as Code scanning, and vulnerability-management processes.
- Experience with security tools such as SonarQube, Fortify, or comparable SAST and code-quality platforms.
- Experience implementing automated quality, security, compliance, and change-control gates.
- Experience with Git, Bitbucket, or comparable version-control platforms.
- Strong understanding of branching, pull-request, peer-review, release, and artifact-promotion workflows.
- Experience with Docker, Kubernetes, OpenShift, or comparable container platforms.
- Experience supporting cloud-based and hybrid-cloud environments.
- Experience with cloud APIs, automation, and infrastructure lifecycle management.
- Proficiency with Python, shell scripting, Ruby, Perl, or a similar scripting language.
- Experience supporting build and dependency-management tools such as Maven or comparable technologies.
- Experience with continuous monitoring, application and infrastructure alerting, and production operational support.
- Experience documenting DevSecOps processes, standards, pipeline configurations, and operational procedures.
- Strong understanding of enterprise security controls and compliance requirements.
- Strong security-first mindset and ability to adapt solutions to different enterprise security requirements.
Preferred Skills:
- Experience supporting federal government modernization programs.
- Experience working within NIST, FISMA, FedRAMP, or comparable compliance environments.
- Experience supporting continuous authorization and continuous-monitoring programs.
- Experience managing CI/CD platforms that support hundreds of applications.
- Experience designing reusable enterprise pipeline templates and shared platform services.
- Experience with Selenium and automated testing integration.
- Experience with Jira, Confluence, Bitbucket, Fisheye, Crucible, Maven, Fortify, and SonarQube.
- Experience integrating artifact repositories, container registries, secrets-management platforms, and policy-enforcement tools.
- Experience implementing software supply-chain security controls.
- Experience with secrets management and secure credential integration.
- Experience with observability platforms, centralized logging, metrics, tracing, and alerting.
- Experience supporting multi-cloud or hybrid-cloud platforms.
- Knowledge of deployment strategies such as blue-green, rolling, and canary deployments.
- Knowledge of disaster recovery, high availability, rollback, and resilience engineering.
- AWS, Microsoft Azure, Google Cloud Platform, or Oracle Cloud certification.
- AWS Certified DevOps Engineer – Professional certification.
- AWS Certified Solutions Architect certification.
- Certified Kubernetes Administrator or Certified Kubernetes Application Developer certification.
- Security+, Certified DevSecOps Professional, or equivalent security certification.
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
Tools & Technologies:
- AWS cloud services and APIs
- Jenkins, GitLab CI/CD, GitHub Actions, and Bamboo
- Terraform, AWS CloudFormation, Ansible, and Ansible Tower
- Docker, Kubernetes, and OpenShift
- Git, Bitbucket, Fisheye, and Crucible
- SonarQube, Fortify, and vulnerability-scanning technologies
- Maven and automated software-build tools
- Python, shell scripting, Ruby, and Perl
- Jira and Confluence
- Monitoring, logging, alerting, and compliance-reporting platforms
Communication & Organizational Skills:
- Excellent written, verbal, presentation, and technical-documentation skills.
- Consultant mindset with the ability to work with senior customer stakeholders and build strong customer relationships.
- Ability to communicate platform architecture, security risks, deployment issues, and improvement recommendations to technical and nontechnical audiences.
- Strong collaboration skills across development, operations, infrastructure, cybersecurity, quality assurance, and compliance teams..
- Strong organizational skills with the ability to manage multiple pipelines, releases, technical priorities, and production-support activities.
This is a fully remote opportunity to join a dynamic team and help deliver secure, automated, reliable, and scalable cloud platforms for a major federal modernization program.
Similar Jobs
Explore other opportunities that match your interests