Position Details
Junior DevSecOps Engineer- Cloud Migration
- Location
- Remote
- Work Setting
- Hybrid
- Employment Type
- Full Time
Position Overview
We are seeking a Junior DevSecOps Engineer to support the migration of mission systems and applications from on-premise data centers into U.S. Government cloud environments, specifically Microsoft Azure Government and AWS GovCloud (US). In this role you will work under the guidance of mid-level and senior engineers to learn and apply DevSecOps practices, assist with infrastructure automation and pipeline maintenance, and help ensure workloads meet federal security requirements as they move to the cloud. This is an excellent opportunity to build hands-on government cloud and security automation experience within a structured, mentorship-driven team.
Responsibilities
• Assist senior team members with executing the migration of on-premise applications and infrastructure to Azure Government and AWS GovCloud (US).
• Write and maintain Terraform, ARM/Bicep, or CloudFormation templates under review, learning to provision repeatable, version-controlled cloud environments.
• Support the maintenance of CI/CD pipelines (Azure DevOps, GitLab CI, GitHub Actions, Jenkins) and help troubleshoot pipeline issues.
• Run SAST, DAST, SCA, secrets scanning, and container image scans; triage findings and help track remediation with guidance from senior engineers.
• Learn and help apply DISA STIGs, CIS Benchmarks, and NIST 800-53 controls, and assist with documentation supporting FedRAMP, FISMA, and ATO processes.
• Assist with containerizing workloads and deploying to Kubernetes (AKS/EKS) under senior guidance, following secure configuration practices.
• Support configuration of IAM, Azure AD/Entra ID, and RBAC, and assist with secrets management tools (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault).
• Help configure and maintain monitoring, logging, and alerting tools (CloudWatch, Azure Monitor, ELK, Splunk, Prometheus/Grafana).
• Assist with configuring landing zones, VPCs/VNets, and hybrid connectivity under the direction of cloud architects.
• Help produce runbooks and migration documentation, and collaborate with team members, ISSOs, and application owners.
• Write and maintain Terraform, ARM/Bicep, or CloudFormation templates under review, learning to provision repeatable, version-controlled cloud environments.
• Support the maintenance of CI/CD pipelines (Azure DevOps, GitLab CI, GitHub Actions, Jenkins) and help troubleshoot pipeline issues.
• Run SAST, DAST, SCA, secrets scanning, and container image scans; triage findings and help track remediation with guidance from senior engineers.
• Learn and help apply DISA STIGs, CIS Benchmarks, and NIST 800-53 controls, and assist with documentation supporting FedRAMP, FISMA, and ATO processes.
• Assist with containerizing workloads and deploying to Kubernetes (AKS/EKS) under senior guidance, following secure configuration practices.
• Support configuration of IAM, Azure AD/Entra ID, and RBAC, and assist with secrets management tools (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault).
• Help configure and maintain monitoring, logging, and alerting tools (CloudWatch, Azure Monitor, ELK, Splunk, Prometheus/Grafana).
• Assist with configuring landing zones, VPCs/VNets, and hybrid connectivity under the direction of cloud architects.
• Help produce runbooks and migration documentation, and collaborate with team members, ISSOs, and application owners.
Qualifications
• 0–2 years of experience in DevOps, cloud engineering, systems administration, or a related IT field (internships and academic project experience considered).
• Some exposure to public cloud platforms (Azure, AWS, Google Cloud, or Oracle Cloud).
• Basic scripting ability in Python, Bash, or PowerShell.
• Familiarity with or willingness to quickly learn Infrastructure as Code tools (Terraform, Bicep/ARM, or CloudFormation).
• Basic understanding of containerization (Docker) and interest in learning orchestration (Kubernetes).
• Willingness to learn federal security frameworks: NIST 800-53, FedRAMP, FISMA, DISA STIGs, and the ATO lifecycle.
• Eligibility for a U.S. Government security clearance and U.S. Citizenship (required).
• Some exposure to public cloud platforms (Azure, AWS, Google Cloud, or Oracle Cloud).
• Basic scripting ability in Python, Bash, or PowerShell.
• Familiarity with or willingness to quickly learn Infrastructure as Code tools (Terraform, Bicep/ARM, or CloudFormation).
• Basic understanding of containerization (Docker) and interest in learning orchestration (Kubernetes).
• Willingness to learn federal security frameworks: NIST 800-53, FedRAMP, FISMA, DISA STIGs, and the ATO lifecycle.
• Eligibility for a U.S. Government security clearance and U.S. Citizenship (required).