Tallo logoTallo logo

DevSecOps Lead

Job

Halvik

Vienna, VA (In Person)

Full-Time

Posted 6 weeks ago (Updated 6 weeks ago) • Actively hiring

Expires 5/27/2026

Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
76
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Halvik Corp delivers a wide range of services to 13 executive agencies and 15 independent agencies. Halvik is a highly successful WOB business with more than 50 prime contracts and 500+ professionals delivering Digital Services, Advanced Analytics, Artificial Intelligence/Machine Learning, Cyber Security and Cutting-Edge Technology across the US Government. Be a part of something special! The DevSecOps Lead is responsible for architecting, securing, and operating GitLab Enterprise pipelines within the Army's ECMA (cARMY) cloud environment. This role ensures deterministic, repeatable, and fully auditable build and deployment workflows across containerized services, EC2-based runners, ECS-deployed applications, and Postgres-backed systems. The position is central to maintaining enterprise-grade DevSecOps readiness, enforcing compliance controls, and enabling rapid, reliable delivery of mission software.
Responsibilities:
Pipeline Architecture & Operations Design, implement, and maintain GitLab Enterprise CI/CD pipelines for Java/Spring Boot and containerized applications Manage EC2-based GitLab runners, autoscaling groups, and secure execution environments Build and maintain deployment workflows targeting Amazon ECS (Fargate or EC2 launch types) Implement artifact versioning, promotion workflows, and environment-specific deployment gates Ensure pipelines support deterministic AI-generated code integration and reproducible builds Security, Compliance & cARMY Integration Ensure all pipelines comply with Army ECMA/cARMY security policies, boundary controls, and audit requirements Integrate STIG-aligned scanning, dependency checks, SAST/DAST, and container security tooling Maintain traceability and documentation required for ATO, RMF, and continuous monitoring Enforce least-privilege IAM roles, credential management, and secure secrets handling Automated Testing & Quality Gates Integrate JUnit, mocking frameworks, and automated test suites into CI/CD workflows Ensure pipelines enforce quality gates before merge, promotion, or deployment Support integration testing, smoke testing, and environment validation steps Infrastructure & Environment Management Manage container registries, image hardening, and secure image lifecycle Support ECS service deployments, task definitions, and container orchestration workflows Coordinate EC2, VPC, networking, IAM, and ECS cluster configurations with platform teams Support Postgres database provisioning, migrations, and pipeline-driven schema updates Maintain environment parity across dev, test, staging, and production Cross-Team Collaboration Work closely with developers, integration teams, QA, cybersecurity, and platform engineering Provide guidance on pipeline readiness, deployment blockers, and DevSecOps best practices Support release readiness reviews and operational documentation
Required Qualifications:
10+ years experience in software development, DevOps, or platform engineering 5+ years hands-on experience with GitLab CI/CD in enterprise environments Experience operating pipelines with containers, EC2 runners, ECS deployments, and Postgres Strong background in secure DevSecOps practices, automated testing, and pipeline governance Familiarity with DoD cloud environments, preferably c
ARMY / ECMA
Experience integrating SAST/DAST, dependency scanning, and container security tools- Strong understanding of microservices, container orchestration, and cloud networking
Education:
Bachelor's degree in Computer Science, Information Systems, Software Engineering, or related field Master's degree preferred Ability to work effectively in a remote, distributed engineering environment
Clearance:
Active Secret security clearance required Halvik offers a competitive full benefits package including: Company-supported medical, dental, vision, life, STD, and LTD insurance Benefits include 11 federal holidays and PTO Eligible employees may receive performance-based incentives in recognition of individual and/or team achievements. 401(k) with company matching Flexible Spending Accounts for commuter, medical, and dependent care expenses Tuition Assistance Charitable Contribution matching Halvik Corp is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Halvik's pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Similar remote jobs

Similar jobs in Vienna, VA

Similar jobs in Virginia