About this role
Join the Nalley Consulting team as a DevSecOps Engineer .
Position: DevSecOps Engineer
LCAT: Senior Data Engineer
Location: DIA HQ, Washington, DC
Required clearance and polygraph: Active TS/SCI and CI polygraph. Candidates with current CI polygraph conducted within the past 7 years highly prioritized.
Required experience and education: 8+ years of experience and bachelor's degree
Description
As a DevSecOps Engineer, you will design, build, harden, and operate CI/CD systems, cloud infrastructure, and container platforms that support the software lifecycle from code commit through production deployment. You will partner with multiple project teams to embed security controls, automate delivery workflows, and build scalable, resilient environments.
The preferred candidate is a hands-on senior engineer who can bridge database engineering, API development, DevSecOps automation, and secure platform architecture. This person should be comfortable taking an initial concept, building an MVP, working directly with platform teams, and turning the solution into reusable templates and implementation patterns for multiple database technologies.
The candidate will be responsible to design, tune, and maintain relational and NoSQL databases, including PostgreSQL, MySQL, Aurora, Oracle, MongoDB, and AWS RDS-based services. They will support database migration, backup, replication, disaster recovery, and point-in-time recovery activities. They will also support secure software delivery in accordance with DoD, IC, RMF, ICD-503, NIST SP 800-53, STIG, and continuous monitoring requirements.
Required qualifications
- 8+ years of experience in DevSecOps, DevOps, Cloud Engineering, or platform automation roles
- Experience designing and maintaining CI/CD pipelines with GitLab CI or GitHub Actions
- Experience deploying cloud infrastructure on AWS, Azure, or GCP using IaC, such as Terraform, CloudFormation, or CDK
- Experience containerizing and orchestrating workloads using Docker or similar containerization and Kubernetes
- Experience integrating automated security checks into CI/CD pipelines, such as SAST, SCA, or image scanning
- Experience in Linux administration and proficiency in scripting languages, such as Python, Bash, or Go
- Experience with Git‑based branching, tagging, and release workflows
- Experience with networking fundamentals, such as DNS, routing, load balancing, or TLS
- Cloud or DevOps Certifications, such as AWS Solutions Architect, CKA, CKAD
- Security+ Certification
- Active TS/SCI clearance; willingness to take a polygraph exam
- Bachelor’s degree in a STEM field or equivalent work experience.
Desired qualifications
- Experience with GitOps tooling, such as Flux, Argo CD, or Helmfile
- Experience optimizing CI/CD pipelines, such as caching, artifacts, or parallelization
- Experience implementing Zero Trust patterns, hardened container images, or compliance‑focused deployments such as STIG or CIS Benchmarks
- Experience with AWS security services, such as GuardDuty, Macie, Inspector, or equivalent Azure or GCP tools
- Experience with observability platforms such as Prometheus, Grafana, ELK, or CloudWatch
- Experience with configuration management systems such as Ansible, Chef, or Puppet
- Experience with AI augmented development workflows or agentic tools
- Master’s degree in Physics, Computer Science, or a STEM field.
ABOUT NALLEY CONSULTING
Nalley Consulting is a Service Disabled Veteran Owned Small Business working with prime partners to staff Department of Defense and Intelligence Community positions. Created by a U.S. Navy intelligence veteran, Nalley Consulting has grown to include multiple IDIQ vehicles in several states.
Nalley Consulting fringe benefits include:
- Excellent medical, dental, and vision benefits
- PTO
- 11 paid federal holidays
- Tuition assistance
- Paid military-reserve leave
- Paid parental leave for birth or adoption
- 401k matching up to 5 percent of the base salary
- Flex time
- Company-paid short-term disability, long-term disability, and life insurance.
