CareerPlanGet AI match score →
🌐 Remote💼 Full-time🗓 2026-06-25

Core

Design, implement, and maintain enterprise DevSecOps architectures integrating security throughout the SDLC for a federal customer.

Role type

Senior DevSecOps Solution Architect

Builds

Secure cloud-native and hybrid-cloud architectures, automated CI/CD pipelines, and IaC solutions

Domain

Federal cybersecurity, DevSecOps, cloud infrastructure

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Enterprise DevSecOps architecture design, CI/CD pipeline development, Infrastructure as Code (IaC), automated security testing integration (SAST/DAST/SCA), container security, compliance with NIST/FISMA/RMF/Zero Trust, technical roadmap creation, incident response support

Preferred skills

Mentoring engineering teams, reducing technical debt, evaluating emerging security technologies

Technologies

NIST, FISMA, RMF, Zero Trust, SAST, DAST, SCA, container scanning, secret management

Responsibilities

Design secure cloud-native and hybrid-cloud architectures, lead architecture reviews and security assessments, develop strategies to reduce technical debt, support continuous Authority to Operate (ATO) initiatives, provide technical mentorship to engineering teams

Seniority

Senior, hands-on IC with leadership responsibilities

Rewrite
## About the role T-Rex Solutions is seeking a Senior DevSecOps Engineer to support our FDIC customer. This role is primarily remote with potential for occasional meetings at FDIC HQ in Arlington, VA as needed. ## Responsibilities - Design, implement, and maintain enterprise DevSecOps architectures that integrate security throughout all phases of the SDLC. - Develop and optimize CI/CD pipelines to support automated, secure, and reliable application delivery. - Establish reference architectures, technical standards, engineering patterns, and best practices for DevSecOps implementations. - Design and implement Infrastructure as Code (IaC) solutions to automate infrastructure provisioning, configuration management, and deployment activities. - Integrate automated security testing into software delivery pipelines, including: Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container and image scanning, Secret detection and credential management, and Infrastructure security scanning. - Design secure cloud-native and hybrid-cloud architectures utilizing modern platform services and security controls. - Ensure compliance with federal cybersecurity requirements, including NIST, FISMA, RMF, Zero Trust, and agency-specific security standards. - Support continuous Authority to Operate (ATO) initiatives through the development of architecture artifacts, security documentation, risk assessments, and compliance evidence. - Evaluate emerging technologies, tools, and practices to improve platform security, efficiency, scalability, and resilience. - Lead architecture reviews, technical design sessions, and security assessments. - Develop strategies to reduce technical debt and improve application maintainability and operational effectiveness. - Create technical roadmaps that align DevSecOps capabilities with organizational goals and modernization initiatives. - Provide technical mentorship and leadership to DevSecOps engineers, software developers, and infrastructure teams. - Support incident response, vulnerability remediation efforts, and continuous monitoring initiatives as required. ## Requirements - Bachelor's degree in Computer Science, Software Engineering, Computer Engineering, Information Systems, Cybersecurity, or a related technical field. - Ability to obtain and maintain a Public Trust, suitability determination, or other clearance level required. - 7–10 years of progressive experience in software engineering, DevOps, DevSecOps, cloud architecture, cybersecurity engineering, or related technical disciplines. - Demonstrated experience designing and implementing enterprise DevSecOps solutions in complex environments. - Experience developing and managing CI/CD pipelines supporting secure software delivery. - Hands-on experience with Infrastructure as Code (IaC) frameworks and automated deployment methodologies. - Experience integrating automated security controls and testing into software delivery pipelines. - Experience supporting federal
Sourced via wellfound · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.
Apply on Wellfound ↗