Support DoD cybersecurity requirements by integrating security controls, automation, and compliance into DevSecOps pipelines, tooling, and configurations.
Design, implement, and maintain automated security controls for CI/CD pipelines, including SAST, DAST, SCA, container scanning, and vulnerability management.
Collaborate with engineering teams to ensure secure software supply chain practices, including SBOMs, artifact signing, and automated compliance evidence collection.
You will own end-to-end data protection: architecting security infrastructure, managing PCI/SOC2 programs, and setting the security roadmap.
You will integrate security scanning (SAST, DAST, SCA) into CI/CD pipelines and harden containerized and cloud-native environments.
You will configure IAM and SSO platforms, manage EDR/DLP/SIEM tooling, and run security awareness training.
Campminder builds software for summer camps, enabling meaningful experiences for kids. With over 100 employees, they are stable, profitable, and have a values-led culture committed to work/life balance.
Design, build, and maintain CI/CD pipelines for secure application delivery.
Automate infrastructure provisioning and deploy cloud services using AWS and Terraform.
Integrate security controls and enforce cybersecurity standards in development and deployment.
LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed. Headquartered in Tysons, Virginia, LMI serves the defense, space, healthcare, and energy sectors, helping agencies navigate complexity.
Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.
Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.
Design and build secure CI/CD pipelines with integrated security tooling to accelerate product delivery.
Harden cloud infrastructure on AWS and Azure using infrastructure-as-code and enforce policy with OPA or Sentinel.
Lead threat modeling, incident response, and mentor engineers on secure coding and operational security.
PAR Technology provides software and hardware solutions for over 100,000 restaurants in 110+ countries. A publicly traded company with a focus on innovation and collaboration, it fosters a culture of continuous improvement.
Own CI/CD and infrastructure design across application teams, using agentic AI to build and validate pipelines.
Implement security, testing, and observability as designed-in requirements across all shipped products.
Collaborate with DevSecOps peers to build shared standards and coach engineers on AI-driven development practices.
ComPsych is the worldwide leader in organizational mental health, well-being, and absence management. Their solutions touch more than 160 million lives across 200 countries, and 40% of the Fortune 500 choose them.
Design and implement secure CI/CD pipelines and DevSecOps processes for the VA COSE program.
Integrate security controls and automated testing throughout the software development lifecycle.
Collaborate with cybersecurity and development teams to ensure secure, compliant, and repeatable deployments.
9th Way Insignia is a service-disabled, veteran-owned small business that brings transformative technology to government customers. The company specializes in cybersecurity, cloud modernization, software development, and data analytics, and fosters a culture of innovation and mission-driven work.
Design, build, and maintain CI/CD pipelines for application and infrastructure delivery.
Automate infrastructure provisioning and configuration using Terraform and Ansible.
Integrate security scanning, vulnerability detection, and automated testing into software delivery pipelines.
This company delivers secure, reliable technology for critical federal acquisition systems. They offer a remote work environment and support mission-critical government technology initiatives.
Design, build, and optimize secure CI/CD pipelines within GitLab, enforcing DevSecOps principles through automated vulnerability scanning and compliance gates.
Manage and scale AWS infrastructure, optimizing workloads on EKS, EC2, S3, and RDS.
Establish comprehensive monitoring, logging, and alerting systems across EKS and EC2 nodes to ensure maximum uptime.
LMI is a digital solutions provider that accelerates government impact with innovation and speed, offering commercial-grade platforms and mission-ready AI to federal agencies. Headquartered in Tysons, Virginia, the company serves defense, space, healthcare, and energy sectors, focusing on agility and collaboration.
Improve security design and controls within GCP and Kubernetes.
Champion secure development by integrating security best practices early into the software development lifecycle.
Build and automate security tooling for vulnerability detection, remediation, and compliance verification.
Virta Health is a healthcare company that reverses type 2 diabetes and obesity through individualized nutrition and clinical support. They have raised over $350 million from top-tier investors and partner with major health plans, employers, and government organizations.
Lead the design and implementation of secure enterprise solutions for Professional Services clients across AMER.
Assess complex security architectures and guide migrations to GitLab security capabilities, including CI/CD and compliance frameworks.
Provide technical leadership throughout the engagement lifecycle, from pre-sales scoping to delivery and enablement.
GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security risk. With more than 50 million registered users and 50% of the Fortune 100 as customers, GitLab fosters a high-performance, all-remote culture driven by values and continuous learning.
Build, deploy, and maintain cloud-based IAM systems using DevSecOps practices and cloud-native architecture.
Ensure rapid and reliable delivery of code changes through CI/CD, automated testing, and deployment into production.
Lead evergreening activities, environment support, and compliance with federal requirements.
PingWind delivers services to the federal government in cybersecurity, development, IT infrastructure, and supply chain management. They are an SBA certified Service-Disabled Veteran-Owned Small Business with offices in Northern Virginia and Huntsville AL.
Own cloud security posture management, including Kubernetes and container security strategies and environment hardening.
Manage vulnerability lifecycles, prioritizing remediation based on production exposure, and execute incident response.
Embed security into the SDLC by performing design reviews, code reviews, and translating control gaps into engineering proposals.
Redox accelerates healthcare transformation with real-time data exchange via its interoperability platform, connecting over 12,000 systems. The company is a fully remote, senior team that operates with radical transparency and a strong bias toward ownership.
Serve as a crucial link between application teams and the Navy platform environment, advocating best practices and facilitating communication.
Innovate and solve complex technical problems across multiple knowledge domains, demonstrating expertise in key technologies such as Kubernetes, CI/CD, and AWS.
Implement infrastructure as code and maintain Kubernetes clusters, while building relationships with external teams and collaborating with other platform teams.
Defense Unicorns delivers mission value by streamlining software delivery for government customers. Their team of innovators, software engineers, and veterans focuses on secure, cloud-native solutions with a commitment to speed and user experience.
Design and implement security-focused tooling and guardrails for infrastructure.
Collaborate with security, SRE, and platform teams to integrate trust principles.
Build internal automation to reduce developer cognitive load while enforcing security standards.
BlueCloud is a Snowflake Elite Partner that helps enterprises migrate to AI-ready data platforms. With 450+ consultants and 200+ successful transformations, they combine expertise with AI accelerators to deliver results 40-50% faster.
Lead technical roadmap for FedRAMP Continuous Monitoring, transitioning manual reporting to automated telemetry and validation.
Design compliance-as-code frameworks and automated evidence generation to reduce manual effort during assessments and audits.
Partner with cross-functional teams to define compliance verification requirements and mentor on FedRAMP practices.
Our partner is a technology company specializing in security and compliance for public sector cloud environments. They foster a collaborative, fast-moving culture with significant autonomy and cross-functional exposure.
Support and administer enterprise DevOps platforms including GitHub Enterprise Cloud, GitHub Actions, Harness CI/CD, and JFrog Artifactory.
Design and implement reusable workflow and pipeline templates to improve delivery consistency and developer productivity.
Collaborate with cross-functional teams to balance developer enablement, operational reliability, security, and compliance at enterprise scale.
Protective helps protect customers against life's uncertainties by providing insurance and financial protection. The company operates at enterprise scale and fosters a collaborative culture focused on security, reliability, and developer productivity.
Design, build, and maintain cloud infrastructure on GCP and AWS using Terraform, optimizing CI/CD pipelines for rapid deployments.
Implement comprehensive observability including monitoring, logging, alerting, and distributed tracing to ensure platform health.
Establish and enforce security best practices, support AI/ML infrastructure, and build developer experience tooling.
Re:Build operates an advanced, end-to-end manufacturing platform that partners with industrial companies to bring products from concept to full-scale production. The company is guided by The Re:Build Way principles and aims to revitalize America's manufacturing base, creating meaningful jobs across the country.
Translate security policy into practical, deployable solutions across applications, data environments, and AI systems.
Design, build, and deploy security controls for web applications, data pipelines, APIs, and Agentic AI systems.
Implement secure-by-design practices throughout the software development lifecycle, including code-level remediations and configuration hardening.
EnableComp provides Specialty Revenue Cycle Management solutions for healthcare organizations, leveraging over 24 years of industry-leading expertise. A multi-year recipient of the Top Workplaces award, they have been recognized as Black Book's #1 Specialty RCM Solution provider in 2024 and are among the top one percent of the Inc. 5000 fastest-growing private companies in the US for eleven years.
Design, build, and maintain automation pipelines for workload packaging, validation, testing, deployment, and monitoring across AWS environments.
Collaborate with data engineers to operationalize workloads within a data lakehouse ecosystem and develop reusable infrastructure-as-code constructs using Terraform, AWS CDK, or CloudFormation.
Ensure pipelines meet enterprise security, compliance, and scalability standards while mentoring junior engineers and contributing to DevSecOps practices.
Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company uses AI to review applications and ensure fair, objective candidate evaluation, and operates in a distributed, fully remote environment.
Maintain and improve FedRAMP compliance within an AWS environment using Terraform and infrastructure-as-code.
Identify and remediate vulnerabilities in Golang and containers, and investigate cloud misconfigurations.
Develop CI/CD automation with GitHub Actions and integrate security into the software development lifecycle.
Epsilon ASI is a cloud security company that maintains FedRAMP-compliant environments. They are a growing organization seeking a skilled engineer to strengthen security and compliance.