Hill AFB, UT, 84056, USA
4 days ago
Senior DevSecOps Engineer
**Job Description** BAE Systems is seeking a motivated, self-driven, Senior DevSecOps Platform Engineer for an exciting opportunity to support the Air Force's acquisition of the next generation Intercontinental Ballistic Missile (ICBM). This role will be working directly with an experienced software development team in creating a platform to allow development inside an environment that aligns with DevSecOps and GitOps principles towards CI/CD. You will help with rapidly deploying web applications into various cloud platforms with a security mindset. You will develop automation scripts for our CI/CD pipeline and code infrastructure for various cloud platforms through Infrastructure as Code. **Why BAE Systems?** BAE Systems is the third largest defense contractor in the world with an exceptional, mission-focused culture. The BAE Systems employees and sub-contractors located at Hill Air Force Base, Utah are aligned to the United States Air Force Nuclear Weapons Center. We support the Center in sustainment of the existing LGM-30 Minuteman III (MM III) weapon system and acquisition of its replacement, the YLGM-182A Sentinel, formerly known as Ground-Based Strategic Deterrent (GBSD). We are a valued mission partner delivering daily excellence and innovative solutions to our government customers. BAE Systems has earned accolades as a Top Workplace in Utah based on employee feedback for many consecutive years, earning special distinction for providing a healthy work-life balance for our valued employees. We work very hard to ensure this is a great place to work! **Why Utah?** You ve got to see it to believe it! Utah is an amazing state with a diverse and eclectic culture and truly offers a new experience for anyone willing to search. We are located north of Salt Lake City at the foot of the beautiful Wasatch Mountains. The area offers an incredible range of outdoors pursuits across the seasons including hiking, climbing, hunting, fishing, and camping, boating and world class skiing at resorts that hosted the 2002 Winter Olympics. The state is home to five amazing National Parks and an easy drive from two more; Grand Teton and famous first National Park in the world, Yellowstone. The Salt Lake City area offers a vast array of cultural activities and businesses including multiple professional sports teams. It is a western states hub for exceptional, cutting edge medical care with people traveling from across the region for a range of nationally renowned specialty care centers and doctors. The Salt Lake International Airport is expanding and offers easy direct access to just about anywhere you want to fly. **Why the DTO and Sentinel?** The DTO supports an array of clients and transformational initiatives across the Air and Space Force. The Sentinel Program specifically is an enormous and complex Mega-Project modernizing the entire ICBM weapon system deployed across tens of thousands of square miles in five states. Without a doubt Sentinel is one of the DOD s most important acquisition efforts for the next decade, if not longer. It includes a complete refurbishment of hundreds of aging Minuteman III ICBM facilities to secure and support a newly designed, technologically advanced ballistic missile. It will also provide an entirely new command and control system as well as vast array of required support equipment specifically engineered to operate and sustain the new weapon system over the decades ahead, and remain operational until at least 2075. **Job Details** We are seeking a skilled Senior DevSecOps Platform Engineer to join our dynamic team. This role is pivotal in ensuring our development, security, and operations practices are seamlessly integrated. The ideal candidate will be adept at automating security processes within our CI/CD pipelines, enhancing system reliability, and ensuring compliance with security standards while maintaining high performance and availability. Key Responsibilities: Platform Development: Design, implement, and maintain the infrastructure for our CI/CD pipelines, ensuring they incorporate security at every stage. Security Integration: Embed security tools and practices into the development lifecycle, including automated security testing, vulnerability assessments, and compliance checks. Automation: Automate security controls and compliance processes to enhance speed, reliability, and security of software releases. Monitoring and Response: Set up and manage systems for monitoring security threats, vulnerabilities, and compliance issues in real-time, with mechanisms for rapid response. Collaboration: Work closely with software developers, system administrators, and security analysts to ensure security is a shared responsibility across teams. Documentation: Maintain comprehensive documentation on security standards, procedures, and the platform architecture for both technical and non-technical stakeholders. Incident Management: Lead or participate in the response to security incidents, ensuring systems are hardened against future threats. Continuous Improvement: Regularly review and improve security practices and tools based on emerging threats, technology trends, and organizational needs. **Required Education, Experience, & Skills** + 7 years of directly related work experience with Bachelor s degree (or 5 years experience with MS). At least 3 years progressive responsibility providing technical leadership. + Familiar with DevSecOps and GitOps Methodologies + Knowledge of scripting languages to automate processes is required + Experience with containers and deployment into a Kubernetes clusters + Serving as a system administrator for Linux systems and Windows systems + Configure and maintain environments in Linux (RHEL and Ubuntu) + Configure, deploy and maintain containerized systems using Kubernetes, Docker, Terraform, and/or AWS Cloud Formation + Gather and analyze metrics from both operating systems and applications to assist in performance tuning and fault finding + Support AWS Cloud and/or Azure environments + Deploy and build software using npm, container and package repos, Gitlab, security tools for all phases of SDLC, and other related tools + Configuration management to achieve Infrastructure as Code (IaC) and Security as Code (SaC) + Troubleshoot build issues, script failures, network and system errors + Document processes and procedures + Familiar with NIST Controls and DFARS + Ability to demonstrate the skills and capabilities to successfully execute the duties and responsibilities of this position **Preferred Education, Experience, & Skills** + Development of solutions for complex Business Intelligence ecosystems. + Experience with secure IT systems and ATOs which comply with DoD standards and regulations for secure network operations (DoDI 8510.01, RMF, FedRamp, etc) + CompTIA Sec certification + Experience with managing container repos like Harbor or Gitlab and package repos like Verdaccio or Nexus Repository + Active DoD Secret Security Clearance **Pay Information** Full-Time Salary Range: $94728 - $161038 Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience. Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics. **Senior DevSecOps Engineer** **108967BR** EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
Confirm your E-mail: Send Email