Simplify Logo

Full-Time

Devsecops Engineer

Posted on 6/23/2024

MetroStar

MetroStar

201-500 employees

Technology solutions for government agencies

Government & Public Sector
Enterprise Software

Senior

Odenton, MD, USA

Category
DevOps & Infrastructure
Site Reliability Engineering
Cloud Engineering
DevOps Engineering
Required Skills
Bash
Kubernetes
Microsoft Azure
Python
Git
Docker
AWS
Jenkins
Terraform
Ansible
Development Operations (DevOps)
Google Cloud Platform
Requirements
  • Active TS/SCI Clearance with CI poly
  • At least 6 years of experience as a DevSecOps Engineer or similar role
  • Experience building DevSecOps solutions at scale across multiple classification domains (IL5 to IL6+) simultaneously
  • Strong understanding of DevOps practices, CI/CD pipelines, and automation tools (e.g., Jenkins, GitLab CI/CD, Artifactory, SonarQube, Selenium)
  • Experience with infrastructure as code (IaC) tools such as Terraform, CloudFormation, or Ansible
  • Familiarity with cloud platforms (e.g., AWS, Azure, GCP) and securing cloud-based applications and services
  • Solid understanding of containerization and orchestration technologies (e.g., Docker, Kubernetes, OpenShift, EKS) and securing containerized applications
  • Hands-on experience with security tools for static code analysis, dynamic application security testing (DAST), and vulnerability scanning, using tools such as Fortify, Acunetix, and Prisma Cloud
  • Proficiency in scripting languages (e.g., Python, Bash) for automation and tool integration
  • Knowledge of security best practices, common vulnerabilities, and exposure to security frameworks (e.g., OWASP, NIST)
  • Strong problem-solving skills and the ability to work effectively in a fast-paced, collaborative environment
  • Excellent communication skills, both written and verbal, with the ability to convey complex security concepts to technical and non-technical stakeholders
Responsibilities
  • Collaborate with development, operations, and security teams to integrate security practices into the software development lifecycle
  • Design, implement, and maintain CI/CD pipelines that incorporate automated security testing, vulnerability scanning, and compliance checks
  • Develop and maintain infrastructure as code (IaC) templates and configurations, ensuring security best practices are applied to cloud resources and infrastructure components
  • Perform regular security assessments, code reviews, and penetration testing to identify and address vulnerabilities and weaknesses in applications, code, and infrastructure
  • Monitor and analyze system and application logs to detect and respond to security incidents
  • Implement and manage identity and access management (IAM) solutions, ensuring appropriate authentication and authorization mechanisms are in place
  • Collaborate with software engineers to provide guidance on secure coding practices and assist in remediation of security findings
  • Participate in incident response activities, helping to investigate and mitigate security incidents in a timely manner
  • Contribute to the development and maintenance of security policies, procedures, and documentation

MetroStar offers technology solutions that enhance digital experiences for government agencies by modernizing IT infrastructure and creating digital tools. They have worked with various agencies, such as the Department of Health and Human Services, to improve outdated systems and provide virtual training for law enforcement across multiple countries. Their tailored approach sets them apart from competitors, as they focus specifically on the unique needs of government clients. The goal of MetroStar is to drive efficiency and innovation in public sector operations.

Company Stage

N/A

Total Funding

$4.4M

Headquarters

Reston, Virginia

Founded

1999

Growth & Insights
Headcount

6 month growth

13%

1 year growth

13%

2 year growth

13%
Simplify Jobs

Simplify's Take

What believers are saying

  • MetroStar's recent awards and recognitions, such as being named one of Computerworld's Best Places to Work in IT, highlight a positive work environment and strong company culture.
  • The launch of innovative products like Comet and partnerships with leading platforms like Salesforce indicate a commitment to cutting-edge technology and continuous improvement.
  • Strategic hires, such as the appointment of Pete Nelson as Chief Growth Officer, suggest a focus on scaling and expanding the company's influence in the government technology sector.

What critics are saying

  • The highly competitive nature of government contracts means MetroStar must continuously innovate to stay ahead of rivals.
  • Dependence on government contracts can lead to revenue volatility, especially with changes in government budgets and priorities.

What makes MetroStar unique

  • MetroStar's specialization in government technology solutions, particularly in sectors like public health, agriculture, and law enforcement, sets it apart from competitors who may not have such a focused niche.
  • Their ability to modernize IT infrastructure and provide virtual training platforms demonstrates a unique blend of technical and educational expertise.
  • MetroStar's tailored approach to each government agency's needs, combined with their extensive experience, offers a competitive advantage in securing and maintaining government contracts.

Help us improve and share your feedback! Did you find this helpful?

INACTIVE