Metron
DevSecOps Engineer
Reston, VA
Sponsorship not specified$171k-$800kDetected 8 days ago
PythonBashPowerShellAzureKubernetesTerraformAnsibleHelmCI/CDPrometheusGrafanaDevOpsPlatform EngineeringCybersecuritySupply ChainSystems EngineeringZero TrustProblem Solving
About the role
- About Metron Metron is an employee-owned company dedicated to delivering innovative solutions for the most challenging national security problems.
- For over 40 years, our principled approach to problem-solving has yielded creative solutions at the intersection of advanced mathematics, computer science, physics, and engineering.
- Our people are leaders in their technical fields and are passionate about solving challenging problems.
Responsibilities
- Design, implement, and improve secure CI/CD patterns in Azure DevOps, including reusable YAML templates, quality gates, artifact controls, and release safeguards
- Support secure release workflows across development, test, integration, staging, and production environments
- Integrate security and quality checks into build and release workflows, including SAST, SCA, dependency scanning, secrets scanning, code-quality gates, container scanning, and artifact validation
- Support tools such as Nexus, SonarQube, Azure DevOps artifacts, and related code-quality or artifact-management platforms
- Partner with cybersecurity to align CI/CD controls with SSP, RMF, NIST, CMMC, STIG, Zero Trust, audit, and program requirements
- Partner with platform engineering on secure Kubernetes/K3s deployment standards, including namespaces, RBAC, ServiceAccounts, Helm, ingress, TLS, storage, quotas, and workload security
- Create documentation, examples, runbooks, and onboarding materials for secure pipeline and deployment workflows
Requirements
- 5+ years of experience in DevOps, DevSecOps, platform engineering, software delivery, systems engineering, or a closely related technical role
- Hands-on experience with Azure DevOps pipelines, YAML, build/release workflows, repositories, artifacts, permissions, or agent-based builds
- Experience implementing security, quality, or compliance controls in CI/CD workflows
- Experience with secure software delivery practices such as SAST, SCA, dependency scanning, secrets handling, code-quality gates, artifact controls, or container scanning
- Experience with Kubernetes, K3s, containers, Helm, or similar deployment technologies
- Experience with scripting or automation using PowerShell, Bash, Python, or similar languages
- Ability to write clear technical documentation, runbooks, onboarding guides, and troubleshooting procedures
Nice to have
- Active U.S. security clearance
- Experience with Azure DevOps Server
- Experience integrating or administering Nexus, SonarQube, or similar artifact and code-quality platforms
- Experience with SBOM generation, SCA, container scanning, artifact signing, provenance, or software supply-chain security
- Experience with policy-as-code, OPA/Gatekeeper, Kubernetes admission controls, or secure workload policies
- Experience with Infrastructure-as-Code or Configuration-as-Code practices using Terraform, Ansible, Bicep, CloudFormation, or similar tools
- Experience with Prometheus, Grafana, Loki, or similar observability platforms
- Experience in defense contracting, government programs, CMMC, NIST 800-171, RMF, STIGs, or other compliance-driven environments
Compensation
- $171k-$800k
Benefits
- Medical, Dental and Vision Insurance
- Accompanying FSA
- Track recurring developer pain points, pipeline health, scan outcomes, release blockers, and control gaps
Company info
- About Metron
- Metron is an employee-owned company dedicated to delivering innovative solutions for the most challenging national security problems.
- We look for individuals who share this same passion and can apply their experience in real-world settings.
Visa & Work Authorization
- security clearance
This listing is sourced directly from Metron's careers page and normalized into a canonical job model.