Design, build, and optimize secure CI/CD pipelines within GitLab, enforcing DevSecOps principles through automated vulnerability scanning and compliance gates.
Manage and scale AWS infrastructure, optimizing workloads on EKS, EC2, S3, and RDS.
Establish comprehensive monitoring, logging, and alerting systems across EKS and EC2 nodes to ensure maximum uptime.
LMI is a digital solutions provider that accelerates government impact with innovation and speed, offering commercial-grade platforms and mission-ready AI to federal agencies. Headquartered in Tysons, Virginia, the company serves defense, space, healthcare, and energy sectors, focusing on agility and collaboration.
Lead team-level solution design, translating mission and product needs into implementable technical architectures.
Develop architectural runway and guide integration across applications, APIs, data sources, and cloud platforms.
Work hands-on with developers through design, implementation, and troubleshooting to ensure secure, scalable delivery.
LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Headquartered in Tysons, Virginia, LMI serves the defense, space, healthcare, and energy sectors with a focus on agility and collaboration.
Design, harden, and defend containerized application infrastructure across edge and cloud environments.
Lead threat modeling, vulnerability management, and security reviews to support mission-critical systems.
Own provisioning, secrets management, and security controls for systems operating in denied or disconnected environments.
CX2 is a next-generation defense technology company building AI-enabled hardware and software platforms to detect, disrupt, and defend the electromagnetic spectrum. Backed by leading defense investors and led by founders from Meta, SpaceX, Epirus, and the DoD, the company values high responsibility and autonomy.
Lead the design and implementation of secure enterprise solutions for Professional Services clients across AMER.
Assess complex security architectures and guide migrations to GitLab security capabilities, including CI/CD and compliance frameworks.
Provide technical leadership throughout the engagement lifecycle, from pre-sales scoping to delivery and enablement.
GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security risk. With more than 50 million registered users and 50% of the Fortune 100 as customers, GitLab fosters a high-performance, all-remote culture driven by values and continuous learning.
Support DoD cybersecurity requirements by integrating security controls, automation, and compliance into DevSecOps pipelines, tooling, and configurations.
Design, implement, and maintain automated security controls for CI/CD pipelines, including SAST, DAST, SCA, container scanning, and vulnerability management.
Collaborate with engineering teams to ensure secure software supply chain practices, including SBOMs, artifact signing, and automated compliance evidence collection.
Raft is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a hyper-collaborative team that values innovation, diversity, and a culture of Ubuntu, where each member adds unique value.
Design and oversee cloud computing strategy, including adoption plans, application architecture, and system management.
Lead cloud implementation projects on IaaS and PaaS, collaborating with Cloud Service Providers like CloudOne and DAF CloudWorks.
Optimize cloud performance, enforce security compliance, and serve as a customer liaison for technical requirements.
Defense technology platform delivering high-impact technologies, technology-enabled services, and advanced manufacturing to U.S. national security customers. Backed by Falfurrias Management Partners, it combines deep domain expertise across military programs into a scalable aerospace and defense enterprise.
Design and implement cybersecurity controls for satellite software, ground systems, and mission infrastructure.
Develop secure software practices including threat modeling, code reviews, and vulnerability management.
Monitor networks for cyber threats, lead incident response, and support compliance with NIST 800-171 and CMMC.
Muon Space is an end-to-end Space Systems Provider that designs, builds, and operates LEO satellite constellations delivering mission-critical data. Founded in 2021, the company is based in Silicon Valley and offers a comprehensive benefits package including equity, medical, dental, vision, 401k, paid vacation, and parental leave.
Design and continuously improve detection and alerting controls to reduce noise and enable rapid response.
Build, test, and automate incident response playbooks to increase efficiency across the incident lifecycle.
Drive prioritization of alerts using a data-driven triage framework aligned with business impact and threat context.
Sword builds AI to heal billions, pioneering AI Care for healthcare delivery across physical therapy, women’s health, and more. With over 700,000 members and 1,000+ enterprise clients, they have raised $500 million and emphasize a culture of proactive security and AI proficiency.
Support, configure, and extend workflow applications for federal customers.
Strengthen platform security guardrails, CI/CD, and infrastructure automation.
Deploy applications to on-premises and classified environments with Linux hardening.
The company supports workflow applications for federal and commercial customers, focusing on secure and AI-assisted development. The culture emphasizes mission impact, continuous improvement, and security-conscious engineering.
Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.
Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.
Own security architecture across Azure and AWS, covering tenant design, network segmentation, and workload isolation.
Raise the engineering bar with hardened infrastructure-as-code modules, secure defaults, and policy-as-code signals at commit time.
Own vulnerability and exposure management end to end, delivering findings as pull requests, not tickets.
One Identity enables organizations to secure, manage, monitor, protect, and analyze information and infrastructure to drive innovation. With a globally distributed team, we build enterprise products at scale and foster a collaborative, improvement-driven culture.
Design, deploy, and sustain AWS-based platform services for mission-critical Department of War applications.
Administer Kubernetes clusters including lifecycle management, security, and observability.
Build CI/CD pipelines and infrastructure-as-code using Terraform, GitOps, and automation tools.
LMI is a digital solutions provider accelerating government impact with innovation and speed. Headquartered in Tysons, Virginia, the company serves defense, space, healthcare, and energy sectors with a focus on agility and collaboration.
Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.
Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.
Own vulnerability management across code, dependencies, images, and cloud config, automating triage and remediation.
Build and expand security gates in CI/CD pipelines, define secure cloud baselines, and drive least privilege identity.
Partner with DevOps on paved roads for secure-by-default development and lead incident response.
Aegis AI is a startup founded by ex-Google engineers who built Safe Browsing and reCAPTCHA, focused on stopping adversarial AI attacks. The team is flat, flexible, and fast, with engineers owning decisions and clear KPIs.
Conduct code and container vulnerability assessments using DoD scanning tools, DISA STIGs, and SRGs.
Apply SAST and DAST methodologies and integrate security controls into CI/CD pipelines.
Serve as GitLab security reviewer and coordinate remediation of security findings across teams.
This partner company supports cybersecurity and secure software delivery within U.S. Department of Defense and Navy environments. The organization offers a fully remote, mission-focused culture with opportunities to collaborate across engineering and program teams.
Integrate AppSec tools into CI/CD pipelines and manage application security vulnerabilities.
Monitor and respond to security incidents, tuning WAF policies and security rulesets.
Collaborate with IT partners to perform security reviews and remediate findings across cloud platforms.
EMCOR Group, Inc. is a Fortune 500 leader in mechanical and electrical construction, industrial and energy infrastructure, and building services. As a large company with a diverse portfolio, it emphasizes a culture of security and collaboration.
Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns.
Own the POAM process end to end, develop plans of action with target dates, track progress, and close findings proactively.
Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO, and maintain a live dashboard for all security findings.
Oddball brings quality software to the federal space, aiming to improve the daily lives of millions. It is a small company that values learning, growth, and making a big impact.
Design and implement security architecture for AWS workloads aligned with FedRAMP Moderate baseline controls.
Build and maintain security guardrails using AWS-native services (IAM, GuardDuty, Security Hub, Config, CloudTrail, KMS, WAF, Macie, Inspector).
Support ATO activities, continuous monitoring, vulnerability scanning, and incident response.
Peraton is a next-generation national security company providing mission capability integration and IT solutions to protect the nation and allies. It serves as a valued partner to government agencies and every branch of the U.S. armed forces, with a culture focused on solving daunting customer challenges.
Design, develop, and maintain reliability solutions and SRE utilities using Python in AWS environments to reduce toil and improve platform reliability.
Build observability and monitoring solutions with Grafana and AWS CloudWatch, and implement Infrastructure as Code using Terraform.
Develop CI/CD pipelines, define SRE standards and metrics, and participate in incident management and on-call rotation.
Peraton is a next-generation national security company that delivers mission-critical solutions and transformative IT services to government agencies and the U.S. armed forces. The company operates across land, sea, space, air, and cyberspace, with employees solving the most daunting challenges facing customers worldwide.
Design, implement, and maintain secure and scalable AWS cloud infrastructure supporting a federal client's architecture.
Develop ETL pipelines and automate deployments using AWS services such as S3, Redshift, Glue, Lake Formation, and Lambda.
Implement CI/CD pipelines, Infrastructure as Code, and data governance within a SAFe Agile environment.
A rapidly growing federal contractor providing secure cloud infrastructure and data solutions for federal clients. They emphasize a collaborative, SAFe Agile culture and support remote work with occasional travel to the DMV area.