Senior DevSecOps Engineer
CACI International IncAbout the role
The Opportunity:
Exciting opportunity to support our DOD/AF customer with cloud native solutions that implement the customer’s Zero Trust objectives. Be part of an agile development team building DevSecOps solutions for the customer’s enterprise development projects
Responsibilities:
- Design and deploy identity-focused Kubernetes-native solutions.
- Build and maintain CI/CD pipelines, automated test frameworks, and secure production deployments.
- Ensure compliance with DoD and DAF directives (e.g., STIGs, RMF, ATO).
- Provide operational support including incident response and tiered ticket troubleshooting.
Qualifications:
Required:
- US Citizenship & Active US Secret Clearance
- 7+ years Development & DevSecOps experience with Bachelors or additional relevant experience
- 2–5 years experience with scripting and automation using Python, Bash, or similar.
- 3–5 years experience designing and deploying Kubernetes-based solutions. Experience with CI/CD pipelines, containerization, and secure DevSecOps practices.
- Familiarity with DoD compliance requirements, such as ATO, STIGs, FedRAMP. 3-5 years of experience working with source version control, build/release tools and methodologies, and CI/CD pipelines.
- 3-5 years of experience providing DevSecOps implementation using Jenkins, Gitlab, or similar tools.
- 3-5 years of experience developing, testing, and maintaining containerized applications.
- 3- 5 years of experience working in AWS environments (CLI and SDK).
- 2-5 years experience with IaC tools (Terraform and Terragrunt)
- 3- 5 years of experience with integrating and managing SIEM platforms (Elastic, Fluentbit, Kibana) to collect and correlate security events and Kubernetes cluster metrics for proactive threat detection and incident response.
- 3- 5 years of experience with observability and monitoring pipelines using Prometheus, Grafana, Fluent Bit, or OpenTelemetry to capture, visualize, and analyze performance and security telemetry across containerized and microservices environments.
Desired:
- Experience working in AWS environments (CLI and SDK). Experience with designing and implementing cloud network architectures leveraging Palo Alto Next-Generation Firewalls (NGFWs) in AWS environments for secure inbound, outbound, and east-west traffic control.
- Experience with configuring and managing Palo Alto firewall policies, NAT rules, and security profiles, including SSL decryption, threat prevention, and application-based filtering.
- Experience with deploying and maintaining Palo Alto VM-Series or CN-Series firewalls integrated with Transit Gateway, Gateway Load Balancer, and VPC peering for scalable multi-VPC segmentation.
- Experience with automating Palo Alto network deployments and policy management using Terraform, Ansible, or Panorama APIs to enable repeatable, compliant infrastructure provisioning.
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Your potential is limitless. So is ours.
_______________________________________________________________________________________
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s