MetroStar
MetroStar builds transformative and innovative technology solutions to accelerate agency missions. We're where government and tech collide.As a Sr. DevSecOps Architect III (DevSecOps) , you'll be an experienced and motivated Solution Architect with a strong emphasis on DevSecOps practices. You will play a pivotal role in designing, implementing, and overseeing the integration of security practices into our development and operations processes. Your expertise will ensure the secure and efficient delivery of our software solutions while maintaining the highest standards of cybersecurity.
We know that you can’t have great technology services without amazing people. At MetroStar, we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people, we live by our mission: A passion for our people. Value for our customers.
If you think you can see yourself delivering our mission and pursuing our goals with us, then check out the job description below!
What you’ll do:
- Collaborate with cross-functional teams to develop and refine DevSecOps strategies that align with business objectives, development goals, and security requirements.
- Design and implement secure CI/CD pipelines, automation frameworks, and deployment processes that seamlessly integrate security checks and controls.
- Champion the integration of security practices throughout the software development lifecycle (SDLC), including threat modeling, code analysis, vulnerability scanning, and penetration testing.
- Collaborate with development teams to implement security best practices, such as secure coding guidelines and secure software design principles.
- Evaluate, select, and integrate security tools and technologies that enhance the DevSecOps pipeline, such as static analysis tools, dynamic analysis tools, and container security platforms.
- Identify potential security risks and vulnerabilities in applications, infrastructure, and processes, and work with relevant stakeholders to implement appropriate mitigations.
- Provide guidance on risk assessment, risk management, and compliance with industry standards and regulations.
- Collaborate with cross-functional teams to share knowledge and promote continuous learning related to DevSecOps practices.
- Create comprehensive documentation that outlines the architecture, design decisions, security measures, and processes implemented within the DevSecOps pipeline.
What you’ll need to succeed:
- Active TS/SCI Clearance with CI poly
- At least 12 years of experience as a DevSecOps Architect or similar role, with a focus on integrating security into the software development lifecycle.
- Strong experience architecting, designing, and building DevSecOps solutions at scale, in the cloud, across multiple classification domains (IL5 to IL6+) simultaneously.
- Expert understanding of DevOps practices, CI/CD pipelines, and automation tools (e.g., Jenkins, GitLab CI/CD, Artifactory, SonarQube, Selenium).
- Expert-level experience with infrastructure as code (IaC) tools such as Terraform, CloudFormation, or Ansible.
- Familiarity with cloud platforms (e.g., AWS, Azure, GCP) and securing cloud-based applications and services.
- Strong understanding of containerization and orchestration technologies (e.g., Docker, Kubernetes, OpenShift, EKS) and securing containerized applications.
- Hands-on experience with security tools for static code analysis, dynamic application security testing (DAST), and vulnerability scanning, using tools such as Fortify, Acunetix, and Prisma Cloud.
- Proficiency in scripting languages (e.g., Python, Bash) for automation and tool integration.
- Knowledge of security best practices, common vulnerabilities, and exposure to security frameworks (e.g., OWASP, NIST).
- Strong problem-solving skills and the ability to work effectively in a fast-paced, collaborative environment.
- Excellent communication skills, both written and verbal, with the ability to convey complex security concepts to technical and non-technical stakeholders.
- Cloud certifications such as AWS Solutions Architect Associate/Professional, AWS SysOps Administrator, AWS Developer, or AWS DevOps Engineer.
Like we said, we are big fans of our people. That’s why we offer a generous benefits package, professional growth, and valuable time to recharge. Learn more about our company culture code and benefits. Plus, check out our accolades.
Studies have shown that women, people of color, and the LGBTQ+ community are less likely to apply to jobs unless they meet every single qualification. At MetroStar, we are dedicated to building a diverse, inclusive, and authentic culture, so if you’re excited about this role but your previous experience doesn’t align perfectly with every qualification in the job description, we encourage you to go ahead and apply. We pride ourselves on making great matches, and you may be the perfect match for this role or another one we have. Best of luck! – The MetroStar People & Culture Team.
What we want you to know:
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
MetroStar Systems is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
The statements herein are intended to describe the general nature and level of work being performed by employees and are not to be construed as an exhaustive list of responsibilities, duties, and skills required of personnel so classified. Furthermore, they do not establish a contract for employment and are subject to change at the discretion of MetroStar Systems.
EEO IS THE LAW MetroStar Systems, LLC (MetroStar) invites any employee and/or applicant to review the Company’s Affirmative Action Plan. This plan is available for inspection upon request by emailing
#J-18808-Ljbffr