STN
USA Jobs Board

DevSecOps Engineer Mid

MAG Aerospace · Pennsylvania, PA
Category Engineering
Type FULL TIME
Posted 2y ago
View and Apply

Opens the original job posting in a new tab.

Job description

Position

Summary

As a company, MAG is dedicated to providing real-time situational awareness to help our customers make the world safer. At MAG, we believe that our success is due to the exceptional employees we recruit, hire, and retain. If you are interested in joining a team that is laser-focused on serving our customers with technical expertise, operational excellence, and flawless execution, then we encourage you to apply today!

MAG Aerospace is seeking a skilled and detail-oriented Mid-Level DevSecOps Engineer to join our team. As a Mid-Level DevSecOps Engineer , you will support the Wideband Control Integration Division at Tobyhanna Army Depot as the primary DevSecOps engineer of a continuous integration and continuous deployment (CI/CD) pipeline. The ideal candidate will bridge the gap between development, security, and operations by applying infrastructure-as-code (IaC) principles, maintaining secure infrastructure, and ensuring comprehensive observability across the platform. ***Must Be a US Citizen*** Must hold current DoD Security Clearance This is daily on site/ no telework Essential Duties and

Responsibilities

Other duties may be assigned.

  • Pipeline Management: Assist in designing, building, and maintaining automated CI/CD pipelines to ensure secure and efficient software delivery.
  • Infrastructure as Code (IaC): Provision and configure infrastructure utilizing declarative tools and configuration management.
  • Kubernetes Administration: Support the deployment, maintenance, and security of core platform services.
  • Security Integration: Implement policy-as-code, manage secret injection, and integrate security scanning tools into the developer workflow.
  • Observability & Monitoring: Maintain monitoring, logging, and telemetry systems to ensure platform health, uptime, and rapid incident response.
  • Support and enhance automation testing for various satellite systems for PdM Wideband Enterprise Satellite Systems (WESS)

Requirements

Knowledge and Skills

  • 3 or more years of experience in coding and software pipelines in a professional or academic environment
  • Must be able to work closely with software developers to troubleshoot deployment failures and optimize pipeline performance
  • Must have strong analytical skills to debug issues across the OS, container, and application layers.
  • Must hold or be willing to obtain a Security+ (or equivalent) certification shortly after starting in the role
  • Must be able to work within a small team
  • Must be able to self-task and make decisions
  • Must have the flexibility to work within a changing environment Education
  • Degree in Computer Science or a related engineering field and 3+ years experience in a professional working environment as a DevSecOps engineer. Desired

Requirements

Operating System & Core Infrastructure

  • Experience administering Linux environments, specifically Rocky Linux (or similar RHEL-based distributions).
  • Hands-on experience with deploying and managing RKE2 (Rancher Kubernetes Engine 2) clusters.
  • Proficiency in writing and maintaining Ansible playbooks for configuration management.
  • Experience using Terraform for infrastructure provisioning. Core Kubernetes Platform Services
  • Familiarity with container networking and security policies.
  • Understanding of persistent storage in Kubernetes using Longhorn .
  • Experience automating TLS certificate provisioning and lifecycle management via Cert-Manager .
  • Ability to enforce Kubernetes native security and governance using Kyverno (Policy-as-Code). Application & Developer Services
  • Proficiency with GitLab EE , including managing repositories, writing .gitlab-ci.yml pipelines, and maintaining GitLab Runners .
  • Experience configuring and managing artifacts, dependencies, and container images using Sonatype Nexus Repository Manager .
  • Experience managing secure access to credentials and tokens using OpenBao , integrated into Kubernetes via the External Secrets Operator . Observability, Metrics & Dashboards
  • Experience configuring the Kube-Prometheus-Stack .
  • Understanding of log aggregation and querying using Loki .
  • Familiarity with deploying and configuring Grafana Alloy for metric, log, and trace collection. Other

Qualifications

  • Must be a U.S. Citizen
  • Must have an active DoD Secret Clearance or be able to obtain one #LI-VF1 Special Note The position is contingent upon candidate’s ability to meet physical and medical requirements as needed by the position; including compliance with all applicable federal, state, and local jurisdictional requirements.

Benefits

and

Compensation

At MAG Aerospace, we value your contributions providing our employees with a robust

Total Rewards

package that supports your total well-being. Full-time and part-time employees working at least 30 hours a week on a regular basis are eligible to participate in MAG's

Total Rewards

programs. Our offerings include health, life, disability, financial, and retirement benefits as well as paid leave, professional development, and tuition assistance. Individuals that do not meet the threshold are only eligible for select offerings not inclusive of health benefits.

We encourage you to learn more about our

Total Rewards

Program by visiting the Resource page on our Careers site: https://www.magaero.com/benefits/. Salary at MAG Aerospace is determined by various factors including but not limited to location, the particular combination of education, knowledge, skills, competencies, and experience as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is up to $120000 (annualized USD).

The estimate displayed represents the typical salary range for this position and is just one component of MAG's total compensation package for employees.