Search

DevSecOps Solutions Architect

Citizant Inc
locationHaymarket, VA 20169, USA
PublishedPublished: 6/14/2022
Technology
Full Time

Job Description

Job DescriptionDescription:

Company Description

Citizant is a leading provider of professional IT services to the U.S. government. We seek to address some of our country’s most pressing challenges in the areas of Agile application development, Enterprise Data Management, Enterprise Architecture, and Program Management support services – focusing on the U.S. Departments of Homeland Security and Treasury. We strive to hire only ethical, talented, passionate, and committed “A Players” who already align with the company’s core values: Drive, Excellence, Reputation, Responsibility, and a Better Future. No matter how large we grow, Citizant will retain its collaborative, supportive, small-company culture, where successful team effort to address external and internal customer challenges is valued above all individual contributions.


Key Responsibilities

  • Design, implement, and maintain enterprise DevSecOps architectures that integrate security throughout all phases of the SDLC.
  • Develop and optimize CI/CD pipelines to support automated, secure, and reliable application delivery.
  • Establish reference architectures, technical standards, engineering patterns, and best practices for DevSecOps implementations.
  • Design and implement Infrastructure-as-Code (IaC) solutions to automate provisioning, configuration management, and deployment.
  • Integrate automated security testing into software delivery pipelines, including: Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container and image scanning, Secret detection and credential management, and Infrastructure security scanning
  • Design secure cloud-native and hybrid cloud architectures that utilize modern platform services and security controls.
  • Ensure compliance with federal cybersecurity requirements, including NIST, FISMA, RMF, Zero Trust, and agency-specific security standards.
  • Support continuous Authority to Operate (ATO) initiatives through the development of architecture artifacts, security documentation, risk assessments, and compliance evidence.
  • Evaluate emerging technologies, tools, and practices to improve platform security, efficiency, scalability, and resilience.
  • Lead architecture reviews, technical design sessions, and security assessments.
  • Develop strategies to reduce technical debt and improve application maintainability and operational effectiveness.
  • Create technical roadmaps that align DevSecOps capabilities with organizational goals and modernization initiatives.
  • Provide technical mentorship and leadership to DevSecOps engineers, software developers, and infrastructure teams.
  • Support incident response, vulnerability remediation efforts, and continuous monitoring initiatives as required.

Requirements:

Required Qualifications

Experience

  • 7–10 years of progressive experience in software engineering, DevOps, DevSecOps, cloud architecture, cybersecurity engineering, or related technical disciplines.
  • Demonstrated experience designing and implementing enterprise DevSecOps solutions in complex environments.
  • Experience developing and managing CI/CD pipelines supporting secure software delivery.
  • Hands-on experience with Infrastructure as Code (IaC) frameworks and automated deployment methodologies.
  • Experience integrating automated security controls and testing into software delivery pipelines.
  • Experience supporting federal cybersecurity compliance requirements and security authorization processes.
  • Experience leading technical teams and providing architectural guidance across multiple projects or programs.
  • Experience supporting cloud migration, application modernization, or digital transformation initiatives.
  • Deep understanding of DevSecOps principles, methodologies, and best practices.
  • Strong knowledge of secure software development lifecycle (SSDLC) processes.
  • Expertise in CI/CD platforms and automation frameworks.
  • Strong knowledge of Microsoft Azure
  • Experience with the following toolset: GitHub Enterprise Server/Cloud, JFrog Artifactory, JFrog Xray, SonarQube, GitHub Advanced Security, GitHub Copilot, and Subject7
  • Knowledge of containerization and infrastructure technologies, including Azure Kubernetes Services (AKS), Virtual Machines, Application Gate Way, App Services, Key Vaults, ServiceNow, CyberArk, and Terraform
  • Experience implementing security automation and vulnerability management solutions.
  • Strong understanding of application security principles, secure coding practices, and threat modeling techniques.
  • Knowledge of federal cybersecurity frameworks and standards, including: NIST Cybersecurity Framework (CSF), NIST 800-53, NIST Secure Software Development Framework (SSDF), Federal Information Security Modernization Act (FISMA), Risk Management Framework (RMF), Zero Trust Architecture
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Excellent written and verbal communication skills with the ability to convey complex technical concepts to diverse audiences.

Education

  • Bachelor's degree in Computer Science, Software Engineering, Information Systems, Cybersecurity, Computer Engineering, or a related technical discipline.
  • Equivalent combinations of education, training, certifications, and relevant professional experience may be considered.

Preferred Qualifications

  • Experience supporting cloud-based federal systems operating under moderate or high-impact security requirements.
  • Experience implementing Zero Trust architecture within federal environments.

Certifications

  • One or more of the following certifications are preferred:
  • Microsoft Azure Solutions Architect Expert
  • Certified Kubernetes Administrator (CKA)
  • Certified Kubernetes Security Specialist (CKS)
  • Clearance Requirements
  • Ability to obtain and maintain a Public Trust, suitability determination, or other clearance level required by the contract.

Citizant offers a competitive benefits package, including:

  • Medical, dental, and vision insurance
  • 401(k)
  • Generous PTO
  • Company-paid life and disability insurance
  • Flexible Spending Accounts (FSA)
  • Employee Assistance Program (EAP)
  • Tuition Assistance & Professional Development Program


Additional information

Citizant strives to be an employer of choice in the Washington metropolitan area. Citizant associates accept challenging and rewarding work and in return receive excellent compensation and benefits, as well as the opportunity for personal and professional development.

Citizant is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...