Skip to content

Open nowPosted 7 days ago

DevSecOps Engineer (Kubernetes)

Workable (global search)108,016 open roles

Where
Washington, DC, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDevSecOps Engineer (Kubernetes)Workable (global search) · Washington, DC, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 7 days ago

Workable (global search) median: 7 days open

The posting

About Peregrine

Peregrine Advisors is a rapidly growing AI and data innovation hub helping government solve hard problems and deliver better outcomes. We work across the full lifecycle—from strategy and governance through architecture, engineering, analytics, AI, visualization, and training—for clients including the SEC, PCAOB, DDOT, and DCAA.

Our clients describe our support as “absolutely excellent” and our people as “instrumental to organization’s success.” Winner of the United Nations COP27 Datathon, our work has earned all Exceptional CPARS ratings, SEC Chair’s Awards, the SEC Vision Award, and recognition from FDA leadership.

We are also built differently. Peregrine is the first and only social enterprise organized as a Benefit Corporation and SBA 8(a) company focused on AI and data for government. We believe business success should create client value, social value, and opportunity for our people.

As we enter our next stage of growth, we need dependable, motivated, and skilled people who have a combination of intellectual curiosity and intellectual courage. With new clients, larger programs, and expanding responsibilities, the people joining Peregrine now will have the opportunity to help shape the company we become.

People first. Ownership always.

We solve problems through people, process, and technology—in that order. Technology matters, but people make transformation happen. That principle defines our culture. Trust and motivation come before competence. We hire people we can trust, who care deeply about what they do, take ownership, learn quickly, help one another, and refuse to walk past a problem because it belongs to someone else.

At Peregrine, you are not joining simply to fill a position. You are joining a team, taking ownership of a mission, and helping build a company. If that excites you, we should talk.

At Peregrine Advisors, you will build and run the cloud infrastructure and delivery pipelines that move federal systems into production, and keep them secure and automated. But we hire people, not seats. As the work evolves, you will move to where the hardest problems are.

This is a hybrid work arrangement based in the Washington, DC metropolitan area, and the commuting cadence varies by assignment. The initial engagement requires United States citizenship and the ability to obtain a Public Trust determination.

Your first project

Your first project will likely have you owning assigned delivery pipelines and the environments beneath them. Depending on the assignment, you may:

  • Build and maintain secure cloud-native infrastructure on Amazon Web Services (AWS), and the continuous integration and continuous delivery (CI/CD) pipelines that deploy to it.
  • Define that infrastructure as code in Terraform or CloudFormation.
  • Put static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), vulnerability scanning, and secrets management into the delivery path.
  • Automate provisioning and releases with health checks and rollback built in, generate compliance evidence as part of each run, and script away repeatable operational work.
  • Support Docker and Kubernetes workloads, and chase down infrastructure, networking, deployment, and security faults.
  • Implement National Institute of Standards and Technology Special Publication 800-53 (NIST SP 800-53) controls, and keep continuous monitoring and authorization evidence current.
  • Automate work in Python, with Bash where it fits, use artificial intelligence (AI)-assisted tools to speed it up, and raise the quality of what ships.

You deliver pipelines that enforce the required controls and produce the evidence a release review needs. You automate the manual steps out of the release path, and you build progressive delivery with automated health checks and rollback so that deploying stops being an event.

This is where you start, not the shape of your career here.

Requirements

  • 4+ years of experience in DevSecOps or platform engineering
  • A bachelor's degree in computer science, information technology, cybersecurity, engineering, or a related technical discipline
  • Hands-on experience building CI/CD pipelines with security gates, using AWS-native tools (CodePipeline, CodeBuild) or comparable tools (GitHub Actions, GitLab CI)
  • Infrastructure as code with CloudFormation or Terraform, and hands-on Docker image creation and containerization
  • Experience deploying Kubernetes clusters and managing them
  • Automated security testing, such as SAST, DAST, and SCA, together with vulnerability scanning
  • Python scripting and programming; Bash is a plus
  • Proficient use of Linux operating systems and shell scripting
  • A strong understanding of computer networks, routing, load balancing, application programming interfaces, and web application architectures
  • Experience using AI-assisted development tools such as GitHub Copilot for code generation, review, and validation
  • Version control with Git
  • Experience with monitoring and logging
  • Proficiency in writing, PowerPoint, and Excel

Preferred

  • Federal security experience that includes supporting Federal Information Security Modernization Act (FISMA) compliance, implementing NIST SP 800-53 controls, and providing Authority to Operate (ATO) support
  • An AWS certification
  • Experience managing secrets with HashiCorp Vault, AWS Secrets Manager, or a similar tool
  • Experience in federal information technology

Who you are

You build security and reliability into the work from the start because they cannot be afterthoughts in a federal environment. You automate what others do by hand and leave an audit trail. You experiment, fail, learn, and repeat quickly. You would rather own an outcome than be handed a task.

What you bring

  • Hands-on ownership of assigned CI/CD pipelines, whether AWS-native or comparable, together with infrastructure as code, Docker containerization, and Kubernetes clusters for deploying real systems in AWS or a client-managed, on-premises environment.
  • The security skills a pipeline needs, including automated security testing (SAST, DAST, SCA), vulnerability scanning, secrets management, and least-privilege design.
  • Python scripting beyond pipeline configuration, with Bash alongside it, so you can automate the work the tools do not cover.
  • A working command of Linux and of how networks and web applications fit together, so you can trace a fault that sits beneath the pipeline.
  • Judgment suited to building where security and auditability are not optional.

You adapt your development workflow as AI tools evolve, using them to help implement, test, and improve the components you own. You give the tools clear context, review and test their output, and remain accountable for the code you deliver.

When we talk

Be prepared to discuss a difficult problem you worked through, the decisions you made, what happened, and what you learned. The technical assessment is a Python coding exercise.

Benefits

This is a full-time W-2 position with a salary of $120,000 to $140,000 per year.

Benefits include medical, dental, and vision insurance with the employee premium fully paid and half of dependent premiums; employer-paid life, accidental death, and short-term and long-term disability insurance; a 401(k) matched 100% up to 4% of salary, vesting immediately; unlimited paid time off; and sponsored professional certifications and continuing education.

What we offer

You will work alongside developers, engineers, data scientists, architects, and strategists, on work ranging from strategy to implementation. We support your development across assignments and clients through extensive onboarding, sponsored professional certifications such as the Data Management Capability Assessment Model (DCAM) and AWS technical certifications, and rotation across functions to expand your skills and perspective. The mission is real, the problems are hard, and you own what you ship.

What we commit to

As a Benefit Corporation, our commitment runs three ways: real, measurable value for our clients; government that works better for the public; and a team that makes everyone in it better.

We hire people who want to help build the firm, not just work at it. If that is you, apply.

Peregrine Advisors is an equal opportunity employer.

Peregrine exclusively works with OPEN Data Jobs to recruit our team. Register with OPEN Data Jobs to be considered for this and future openings.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.