Security Transformation Practitioner
Core
Designing and implementing security solutions for US federal government systems, focusing on automation, containerization, and compliance with DISA STIGs and NIST frameworks.
Role type
Senior Security Transformation Practitioner (DevSecOps/Cloud Security)
Builds
Secure containerized applications and automated security pipelines for federal defense and civilian agencies
Domain
US Federal Government / Cybersecurity / Cloud Infrastructure
Deliverable
production ML models | product features | infrastructure
Required skills
Security pipeline automation, Container orchestration (Docker, Kubernetes), DISA STIGs application, NIST 800-53 RMF, CI/CD security integration (SAST/DAST), Infrastructure as Code (IaC), Linux/Unix Administration, Scripting (Bash, Python, Go, Rust)
Preferred skills
Incident response, DevSecOps background
Technologies
Docker, Kubernetes, Jenkins, Git, Ansible, Terraform, AWS
Responsibilities
Design and deploy security solutions (Scanning, IDS/IPS, SIEM) in hybrid environments; Implement security measures for secure application development and supply chain protection; Lead closing out POA&M items for technology-related controls; Conduct risk and vulnerability assessments via automated CI jobs; Apply DISA STIGs to ensure compliance; Provide mentorship on cybersecurity best practices
Seniority
Senior, hands-on IC