Full-Time

Principal DevSecOps Engineer

Security Automation, ATO Lead

Posted on 10/5/2025

Zaden Technologies

Zaden Technologies

11-50 employees

Defense and space software development

No salary listed

No H1B Sponsorship

Huntsville, AL, USA

In Person

US Citizenship, US Top Secret Clearance Required

Category
DevOps & Infrastructure (1)
Required Skills
Kubernetes
Linux/Unix
Helm
Requirements
  • U.S. Citizenship and ability to obtain a security clearance
  • 8+ years of experience in cybersecurity or DevSecOps roles, preferably in DoD environments
  • Proven experience leading RMF/ATO activities for Secret or TS systems at IL4 or higher
  • Deep expertise in container security including Kubernetes, Helm, image scanning/signing, and SBOM generation
  • Experience with Risk Management Framework (RMF) and NIST 800-171 requirements
  • Strong troubleshooting and problem-solving skills in complex technical environments
  • Self-starter with strong self-organizing capabilities and ability to work independently
  • Experience administering Linux systems, ideally RHEL and RHEL-based distributions
Responsibilities
  • Lead Risk Management Framework (RMF) and Authority to Operate (ATO) activities, including POA&Ms, security control tailoring, and evidence package development
  • Automate container and pipeline hardening using Iron Bank, STIG/CIS baselines, SBOM generation, and image signing
  • Define and enforce CUI/NIST 800-171 safeguards across build and runtime environments
  • Implement policy-as-code frameworks (OPA/Gatekeeper) and integrate security scanning into CI/CD pipelines
  • Partner with prime contractor and government stakeholders to meet Cloud SRG IL4/IL5 requirements
  • Troubleshoot complex security and infrastructure issues across multi-cloud environments
  • Develop and maintain security automation scripts and tooling to reduce manual effort
  • Provide technical leadership and mentorship to junior team members on security best practices
Desired Qualifications
  • Active security clearance (Secret or higher)
  • Familiarity with DoD Security Requirements Guide (SRG) and DoD DevSecOps Reference Design
  • Hands-on experience implementing Authority to Operate (ATO) processes in DoD programs
  • Experience with DSOP Container Hardening Guide and NIST 800-53 controls
  • Experience with Red Hat Enterprise Linux (RHEL) administration
  • Familiarity with Windows environments and Azure Virtual Desktop (AVD)
  • Experience with policy-as-code tools such as Open Policy Agent (OPA) or Gatekeeper
  • Knowledge of Cloud Security Requirements Guide (SRG) IL4/IL5 compliance requirements

Zaden Technologies focuses on delivering software and engineering products and consultancy services for defense and space systems. Its offerings include software development, AI-enabled solutions, DevSecOps, Agile product development, active system monitoring, and cloud computing. The company builds and maintains software and engineering systems through secure, scalable processes, integrating advanced technologies to support defense and space missions. Zaden differentiates itself by being an all-remote, minority-owned small disadvantaged LLC with DCAA-compliant accounting and billing, plus NIST 800-171 compliance and ongoing efforts toward CMMC level 3, which emphasizes strong security and regulatory compliance. Its goal is to provide reliable, compliant software and engineering services that help defense and space customers develop, deploy, and manage critical systems.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

Huntsville, Alabama

Founded

2016

Simplify Jobs

Simplify's Take

What believers are saying

  • DoD modernization priorities around digital engineering and model-based systems engineering favor Zaden's Architecture-as-Code focus.
  • Phase II partnership strategy targets three strategic partners within two months, accelerating product maturation.
  • Alabama defense ecosystem growth through Innovate Alabama's $17 million investment creates partnership and talent opportunities.

What critics are saying

  • Zeus Research outcompetes Zaden on sensor fusion and GPS-denied navigation, capturing Huntsville R&D contracts.
  • Inadequate patent filings during Phase II block Phase III SBIR contracts and DoD scrutiny.
  • CMMC Level 3 certification delays disqualify Zaden from prime defense contracts versus compliant competitors.

What makes Zaden Technologies unique

  • Icarus platform automates SysML model generation, reducing defense systems engineering time-to-market by 20%.
  • NIST 800-171 compliant with CMMC Level 3 certification pursuit enables classified defense work.
  • Three SBIR/STTR awards totaling $1.2 million validate technology and strengthen federal credibility.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Paid Holidays

401(k) Company Match

Performance Bonus

Profit Sharing

Health Insurance

Hybrid Work Options

Company News

Innovate Alabama
Sep 16th, 2024
Engineering Software Success: A Spotlight on Grant Recipient Zaden Technologies

Huntsville-based defense software company Zaden Technologies, led by CEO and President Valentine Nwachukwu, has been awarded an Innovate Alabama SBIR/STTR Supplemental Grant to develop and commercialize its Icarus technology.

INACTIVE