Skip to content

Open nowPosted 10 days ago

DevSecOps

SteerBridge45 open roles

Pay
$125,000 – $170,000 a year
Where
Vienna, VA
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDevSecOpsSteerBridge · Vienna, VA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on SteerBridge's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 10 days ago

The posting

SteerBridge is a modern technology company delivering innovative, mission‑focused solutions to the U.S. Government and private sector. Leveraging deep expertise in federal acquisition, digital transformation, and emerging technologies, we deliver agile, commercial‑grade capabilities that accelerate operational effectiveness and drive measurable mission success.

At the core of SteerBridge is our people—especially the veterans whose leadership, problem‑solving mindset, and commitment to excellence elevate every project we support. We don’t simply hire exceptional talent; we cultivate it, creating meaningful career pathways for veterans, military spouses, and professionals who share our passion for advancing technology and strengthening the missions we serve.

POSITION OVERVIEW

SteerBridge is seeking a DevSecOps Engineer to own the security infrastructure and automation behind a mission-critical VA Disability Claims platform that supports Veterans and federal customers in AWS GovCloud. This role builds and runs the systems that security depends on: the log pipelines that feed our SIEM, the CI/CD and infrastructure-as-code pipelines that deploy every environment, and the scanning, patching, and security services deployed across our accounts.

The engineer partners closely with our security team, which monitors the environment, triages alerts, and leads incident response. This role makes sure that team has complete, reliable data and working tools, and turns their requirements into code, guardrails, and pipelines that run automatically. The engineer will also work with cloud engineers, solutions and security architects, application developers, and program leadership.

This is a hands-on role. The ideal candidate writes Terraform and pipeline code, onboards new log sources end to end, keeps security tooling deployed and healthy, and fixes the root cause when a pipeline, agent, or integration breaks. They are comfortable reviewing a merge request, debugging a broken data connector, and documenting how a control is implemented.

This is a hybrid position based in Vienna, VA.

Key Responsibilities

  • Own end-to-end security log pipelines from AWS and SaaS sources into Microsoft Sentinel, including CloudTrail, VPC Flow Logs, DNS query logs, GuardDuty, WAF, identity provider, and zero-trust platform logs.
  • Onboard and validate new log sources using native delivery paths, including data collection endpoints and rules, S3/SQS connectors, and vendor streaming; monitor pipeline health, ingestion gaps, data completeness, and parsing accuracy.
  • Manage security log retention, centralization, and immutability in accordance with federal logging and compliance requirements.
  • Own GitLab CI/CD pipelines used to plan and deploy Terraform and Terragrunt across multiple AWS GovCloud accounts and organizations.
  • Implement and maintain CI/CD security controls, including IaC scanning, secrets detection, container image scanning, dependency and SBOM checks, least-privilege deployment roles, protected branches, approval rules, and secure state and secrets handling.
  • Standardize secure container build and release practices for ECS and Fargate workloads, including immutable image tags, signed and scanned images, and ECR lifecycle policies.
  • Maintain security baselines across cloud environments, including IAM Identity Center permission sets, least-privilege roles, encryption, network segmentation, zero-trust access through Zscaler ZPA/ZIA, and inline inspection using Palo Alto VM-Series.
  • Document infrastructure security controls and maintain operational runbooks supporting NIST SP 800-53, RMF, and ATO activities.

Required Qualifications

  • Eligibility requirements: U.S. citizenship is required for this position under applicable federal contract requirements. Candidate must also be able to obtain and maintain the security clearance required for the role.
  • 5+ years of hands-on experience in DevOps, cloud security, security engineering, or a related field, preferably within AWS environments.
  • Strong experience with infrastructure as code, including Terraform, and familiarity with Terragrunt, policy-as-code, and IaC security scanning tools such as Checkov or tfsec.
  • Experience building and securing CI/CD pipelines using GitLab CI, GitHub Actions, or similar platforms, including SAST, DAST, SCA, secrets detection, container image scanning, and secrets management using tools such as SonarQube, Snyk, Trivy, Checkmarx, AWS Secrets Manager, or KMS.
  • Experience building and troubleshooting security log pipelines into SIEM platforms such as Microsoft Sentinel, Splunk, or Elastic, including log-source onboarding and ingestion monitoring.
  • Experience implementing AWS security services across multi-account environments, including CloudTrail, GuardDuty, Security Hub, Config, and IAM, with a strong understanding of cloud networking, identity, least-privilege access, and zero-trust principles.
  • Experience securing containerized workloads using Docker with ECS, Fargate, or Kubernetes, along with scripting and automation skills in Python, Bash, or PowerShell and strong troubleshooting, documentation, and cross-functional communication skills.

Preferred Qualifications

  • Experience with AWS GovCloud or other regulated or federal cloud environments, including familiarity with NIST SP 800-53, RMF, FedRAMP, or federal ATO processes.
  • Experience with multi-account AWS Organizations, service control policies (SCPs), and AWS landing zone patterns such as Trusted Secure Enclaves or Landing Zone Accelerator.
  • Familiarity with Terragrunt and log transformation tools such as Vector.
  • Experience with Azure Monitor data collection, including data collection endpoints and rules, and working knowledge of KQL for validating ingested data.
  • Experience with security and infrastructure platforms such as Zscaler ZPA/ZIA, Palo Alto or comparable next-generation firewalls, Tenable vulnerability scanning, and AWS Systems Manager patching at scale.
  • Relevant certifications such as AWS Certified Security – Specialty or AWS Certified DevOps Engineer – Professional.

Benefits

  • Health insurance
  • Dental insurance
  • Vision insurance
  • Life Insurance
  • 401(k) Retirement Plan with matching
  • Paid Time Off
  • Paid Federal Holidays

SteerBridge is proud to be an Equal Opportunity Employer. We are committed to creating a diverse and inclusive workplace where all qualified applicants and employees are treated with respect and dignity—regardless of race, color, gender, age, religion, national origin, ancestry, disability, veteran status, genetic information, sexual orientation, or any other characteristic protected by law.

We also provide reasonable accommodations for individuals with disabilities in accordance with applicable laws. If you require assistance during the application process, we encourage you to reach out so we can support your needs.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against SteerBridge's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on SteerBridge's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    SteerBridge's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.