DevSecOps Engineer

NexTech Solutions LLC · Remote, US

RemoteFull-timeSenior$165,000 – $185,000Published Jul 23, 2026

Apply directly on NexTech Solutions LLC’s careers site — no account needed.

About the role

The Opportunity
We are seeking a DevSecOps Engineer with deep Kubernetes expertise to design, implement, and maintain secure, scalable cloud-native platforms. This role bridges development, security, and operations to embed security throughout the software delivery lifecycle while enabling high-velocity engineering teams.

U.S. Citizenship Requirement: Due to contractual requirements and the nature of our work supporting U.S. Government customers, this position requires U.S. citizenship.


Key Responsibilities (Principal Duties and Accountabilities *Essential Functions)

Platform & Infrastructure

  • Design, provision, and maintain production Kubernetes clusters (RKE2 / EKS / GKE / AKS) across cloud and on-premises environments
  • Manage cluster lifecycle: upgrades, node pool scaling, multi-tenancy, and namespace governance
  • Implement and maintain CNI solutions (Calico, Cilium, Multus) including advanced networking topologies such as macvlan and SR-IOV
  • Operate GitOps workflows (e. g. ArgoCD) for declarative, auditable cluster state management
  • Develop and maintain Helm charts for platform and application services

DevSecOps & CI/CD

  • Build and maintain CI/CD pipelines in GitLab CI (and/or GitHub Actions) with integrated security scanning and artifact signing
  • Integrate SAST, DAST, SCA, and container image scanning (Trivy, Grype, Semgrep) into pipeline gates
  • Implement supply-chain security controls: SBOM generation, cosign image signing, and Sigstore policy enforcement
  • Automate OS image builds using Packer (QEMU, vSphere) targeting RHEL, AlmaLinux, Debian/Ubuntu, and Windows
  • Manage secrets at scale using Vault, External Secrets Operator, or equivalent solutions

Security & Compliance

  • Enforce runtime security through admission controllers (Kyverno / OPA Gatekeeper), Pod Security Standards, and network policies
  • Own vulnerability management processes including scheduled scanning, triage, and remediation SLAs
  • Support compliance initiatives (SOC 2, FedRAMP, NIST 800-53) by maintaining audit-ready infrastructure-as-code and evidence artifacts
  • Conduct threat modeling and security architecture reviews for new platform capabilities
  • Respond to and lead post-mortems for security incidents and infrastructure outages

Observability & Reliability

  • Deploy and operate observability stacks: Prometheus, Grafana, Loki, and OpenTelemetry collectors
  • Define and track SLOs/SLAs; build alerting and on-call runbooks to drive reliability improvements
  • Implement cost observability and right-sizing workflows for cloud and on-prem workloads

Collaboration & Developer Enablement

  • Partner with development teams to design deployment patterns, resource quotas, and autoscaling strategies
  • Produce clear documentation, runbooks, and internal training materials for platform capabilities
  • Mentor junior engineers and participate in architecture decision records (ADRs)
  • Fluency in English (written and spoken)
  • Active Secret Security clearance preferred; the eligibility to obtain a secret clearance required. Preference will be given to those who have an active security clearance.

Education

  • High School Diploma Required
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS) Certification Preferred

Required Skills, Experience & Abilities

  • 5+ years of hands-on experience in a DevOps, Platform Engineering, or SRE role
  • 3+ years managing production Kubernetes clusters at scale
  • Deep proficiency with GitLab CI or GitHub Actions, including advanced pipeline patterns (DAGs, dynamic child pipelines, matrix builds)
  • Strong scripting skills in Bash and at least one higher-level language (Python, Go, or similar)
  • Solid understanding of Linux internals, networking (TCP/IP, DNS, BGP basics), and container runtimes (containerd, CRI-O)
  • Experience with infrastructure-as-code tools: Terraform / OpenTofu and Helm
  • Demonstrated experience integrating security tooling into CI/CD pipelines
  • Familiarity with cloud platforms: AWS, GCP, or Azure

Preferred Qualifications

  • Experience with GPU workloads on Kubernetes (NVIDIA / Intel device plugins, GStreamer / FFmpeg hardware acceleration pipelines)
  • Familiarity with Multus CNI and SR-IOV networking for high-throughput edge or media workloads
  • Experience building images with Packer targeting multiple hypervisors (QEMU, Hyper-V, VMware)
  • Working knowledge of service mesh technologies (Istio, Linkerd)
  • Exposure to FedRAMP, CMMC, or other regulated-environment compliance frameworks
  • Contributions to open-source infrastructure or security projects

Physical Demands & Work Environment
The physical demands and work environment described are representative of those that an employee encounters while performing the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

  • Prolonged periods of sitting at a desk and working on a computer.
  • Ability to lift up to 15 pounds on occasion (e.g., transporting laptop, presentation materials, or small equipment).
  • Frequent use of hands and fingers for typing, writing, and handling documents.
  • Clear vision and hearing required for meetings, presentations, and communication.
  • Ability to travel domestically to 15% of the time, which may include extended periods of standing, walking, or navigating airports and government facilities.
  • Ability to sit or stand for long periods of time
  • Frequent interaction with clients, executives, and government officials in both in-person and virtual settings.
  • Occasional travel to customer sites, government facilities, and industry events.
  • Travel requirements come in waves and are not known more than a few weeks/months in advance.
  • Fast-paced, deadline-driven environment requiring adaptability and responsiveness.
  • Work may occasionally be performed in secure government facilities, requiring adherence to security protocols.
  • Work may be conducted in laboratory, workshop, office, and field environments with varying conditions.

This is a remote position within the United States. Due to the requirement to obtain and maintain a U.S. Government security clearance, applicants must be U.S. citizens.


Compensation:

The anticipated base salary range for this position is up to $165,000.00 - $185,000.00 dependent on geographic location and experience. Actual compensation will be determined based on factors including relevant experience, qualifications, skills, location, and internal equity.


Benefits:
NexTech Solutions offers a comprehensive benefits package designed to support employees and their families, including competitive health, dental, and vision coverage, retirement savings options, paid time off, and additional employee benefits.


Exciting opportunities like this are better when shared. Send this role to someone you know: DevSecOps Engineer - REMOTE US


Equal Opportunity
All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. NTS will also consider qualified applicants with criminal histories consistent with relevant laws for employment.
For individuals with disabilities that need additional assistance at any point in the application and interview process, please email recruiting@nextechsol.com

Description sourced from the public Indeed listing — this role isn't indexed from the company's career page yet.

Skills

  • GitHub Actions
  • Kubernetes
  • ArgoCD
  • Helm
  • Prometheus
  • Grafana
  • Terraform
  • Docker
  • Linux

Never be applicant #200 again

Every job here is indexed straight from company career pages — often hours after it opens, before it reaches the big boards. Create a free account and get your best matches in a twice-daily digest.

  • Your best matches, twice a day
  • No duplicates, no ghost jobs, no recruiter spam
  • Every job free to browse — pay only when you apply
Get my matched jobs

Free account — no card required

93 117 live jobs · 17 642 companies tracked · 132 added today

Similar jobs

DevSecOps Engineer — NexTech Solutions LLC · Real Job Offers