Senior DevSecOps Engineer

Job Locations US-VA-Reston
Requisition ID
2026-171142
Position Category
Information Technology
Clearance
Public Trust

Responsibilities

Build the paved road the Agentic AI platform runs on.

 

Peraton is seeking a Senior DevSecOps Engineer to join our team in Reston, VA — a DevSecOps / Platform Engineer who will help build and operate our Agentic AI platform across delivery, infrastructure, runtime operations, and platform health.

 

About the Role

 

You'll contribute to the technical backbone that keeps platform delivery secure, reliable, and scalable — from CI/CD pipelines and automated testing through EKS cluster operations, AWS infrastructure, monitoring, alerting, and synthetic health checking.

We're looking for an engineer who pairs strong technical execution with operational discipline and a builder mindset — someone with the judgment to design systems that are not only functional, but supportable, observable, secure, and audit-ready. You'll take ownership of meaningful areas of the platform while working alongside a team of senior DevSecOps and platform engineers.

 

Why This Role Stands Out

 

This is a chance to shape the platform layer of a highly visible and ambitious Agentic AI environment. The problems are real, the technical judgment matters, and the engineering practices are modern. For the right candidate, this role is a direct path to building systems that improve platform resilience and shape how advanced AI-enabled capabilities are delivered in secure, compliant, and production-ready ways.

 

What You'll Do

 

Key responsibilities may include, but are not limited to:

 

  • Help operate the Agentic AI platform across CI/CD, cloud infrastructure, Kubernetes operations, observability, and runtime reliability
  • Build and maintain CI/CD pipelines across GitHub Actions and/or GitLab CI, enabling secure, repeatable, and efficient delivery workflows
  • Implement and improve automated testing and quality gates within the software delivery lifecycle, including build validation, integration checks, security testing, and deployment controls
  • Plan and execute releases and deployments — coordinating change windows, managing release artifacts, running deployment automation, validating post-deployment health, and supporting rollback procedures
  • Support operational ownership of Amazon EKS / Kubernetes environments, including cluster lifecycle activities, upgrades, troubleshooting, RBAC, Helm-based deployments, pod identity, and GitOps-aligned workflows
  • Build and maintain AWS infrastructure supporting platform and application needs across services such as VPC, IAM, S3, RDS, CloudTrail, and KMS
  • Contribute to infrastructure provisioning and lifecycle management through OpenTofu / Terraform and related infrastructure-as-code practices
  • Administer user management for the platform — identity provider integration (SSO/SAML/OIDC), role-based access control (RBAC), provisioning and deprovisioning workflows, and periodic access reviews
  • Help design and operate a mature monitoring, logging, and alerting stack using CloudWatch, Prometheus/Grafana, or equivalent tooling
  • Routinely assess system logs to detect anomalies, configuration drift, misuse, and security-relevant events; triage findings and drive remediation in coordination with senior engineers and the customer security team
  • Develop actionable alerts, service health indicators, and SLO-aligned operational thresholds that support fast triage and resilient service delivery
  • Build and maintain synthetic and transactional monitoring that exercises real authentication flows, user journeys, and critical service transactions
  • Track and remediate Information Assurance Vulnerability Management (IAVM) notices and other vulnerability advisories — maintain inventory accuracy, drive patching to closure, and produce the evidence required for compliance reporting
  • Implement and maintain DAST and runtime security testing in delivery pipelines using tools such as OWASP ZAP, Burp, Nuclei, or equivalent
  • Support security-focused CI/CD practices including secrets management, least privilege, software supply chain integrity, and audit evidence generation
  • Apply modern engineering delivery patterns such as trunk-based development, merge-request-driven change, and automated release quality controls

Qualifications

What You Bring

 

Basic Qualifications

 

  • Bachelor's degree with 12 years professional experience, or Associate's degree with 14 years professional experience, or MS degree with 10 years professional experience, or high school diploma/equivalent with 16 years professional experience
  • Hands-on experience building and maintaining CI/CD pipelines in GitHub Actions, GitLab CI, or comparable systems — including pipeline-as-code, reusable workflows, and integrated quality/security gates
  • Production experience operating Kubernetes, ideally Amazon EKS — cluster upgrades, RBAC, Helm-based deployments, and troubleshooting workload issues
  • Practical AWS experience across core services: VPC, IAM, S3, RDS, CloudTrail, and KMS
  • Infrastructure-as-code experience with OpenTofu, Terraform, or comparable — writing modules, managing state, and driving change through code review
  • Experience implementing and tuning monitoring, logging, and alerting using CloudWatch, Prometheus/Grafana, or equivalent tooling
  • Familiarity with identity and access management patterns — SSO/SAML/OIDC integration, RBAC, and provisioning/deprovisioning workflows
  • Experience integrating security testing into delivery pipelines (SAST, DAST, SCA, secrets scanning, or dependency scanning) and driving findings to closure
  • Solid scripting and automation skills in Python, Go, Bash, or comparable
  • Working knowledge of secrets management, least-privilege design, and software supply chain integrity practices
  • Comfort with modern engineering delivery patterns: trunk-based development, merge-request-driven change, and automated release quality controls
  • Clear written and verbal communication — able to document runbooks, write actionable alerts, and coordinate with security, program, and customer stakeholders
  • U.S. Citizenship required
  • Must have the ability to obtain and maintain a Public Trust clearance

Preferred Qualifications

 

  • Experience operating Amazon EKS at scale, including add-on lifecycle, node group strategy, pod identity, and IRSA
  • GitOps experience with ArgoCD, Flux, or comparable
  • Experience with DAST and runtime security tooling such as OWASP ZAP, Burp Suite, Nuclei, or equivalent
  • Experience implementing SLIs/SLOs and error-budget-driven operational practices
  • Experience building synthetic and transactional monitoring that exercises real authentication flows and critical user journeys
  • Familiarity with IAVM tracking, vulnerability remediation workflows, and evidence generation for compliance reporting
  • Exposure to policy-as-code frameworks: OPA/Rego, Kyverno, or Conftest
  • Experience with software supply chain integrity: SBOM generation, image signing (Cosign/Sigstore), SLSA provenance
  • Experience supporting FedRAMP, NIST 800-53, RMF, or comparable federal compliance environments
  • Experience with distributed tracing and modern observability stacks: OpenTelemetry, Loki, Tempo, or ELK
  • Active security clearance or eligibility
  • Relevant certifications such as CKA/CKS, AWS Solutions Architect / Security, or Terraform Associate
  • Prior experience supporting AI/ML or Agentic AI platforms in production

Why Peraton

 

Peraton is a next-generation national security company delivering mission capabilities across defense, intelligence, space, cyber, and federal civilian markets. The platform work you do here directly shapes how advanced AI-enabled capabilities reach mission teams — securely, compliantly, and in production.

 

Ready to Build?

 

If you'd rather engineer the paved road than write the exception ticket — apply. We're looking for a builder who treats reliability, security, and operability as one job.

 

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range

$146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed