DevSecOps Engineer, U.S. Supreme Court, Washington, D.C.
Core
DevSecOps Engineer providing security engineering support for software development, testing, and operational activities at the U.S. Supreme Court.
Role type
DevSecOps Engineer
Builds
Secure CI/CD pipelines for C#/.NET applications
Domain
Government / Microsoft-centric development environment
Deliverable
production ML models | product features | infrastructure
Required skills
C#, .NET, Visual Studio, SQL Server, Azure DevOps, GitHub, GitLab, Docker, Kubernetes, SAST, DAST, IAST, OWASP Top 10, Agile, NIST RMF
Preferred skills
Hybrid DevOps environments (on-prem + cloud), security-focused code reviews, vulnerability remediation, security test case definition
Technologies
C#, .NET, Visual Studio, SQL Server, Azure DevOps, GitHub, GitLab, Docker, Kubernetes, SAST, DAST, IAST
Responsibilities
Design, implement, and maintain secure CI/CD pipelines for C#/.NET applications; Integrate automated security testing tools (SAST, DAST, IAST) into CI/CD pipelines; Conduct security-focused code reviews aligned with OWASP Top 10; Configure and manage DevOps tools (Azure DevOps, GitLab CI/CD, or GitHub Actions); Support hybrid DevOps environments (on-prem + cloud); Utilize Docker and Kubernetes for secure deployments; Provide remediation guidance for vulnerabilities; Maintain DevSecOps documentation & provide security reports; Liaise with Information Assurance Group for compliance; Define security focused test cases and assist QA performing these tests during sprint tests.
Seniority
Mid-Senior level (5+ years experience)