1

Aws Devsecops Jobs in Virginia (NOW HIRING)

DevSecOps Engineer

Stafford, VA · On-site

$120K - $130K/yr

The DevSecOps/Security Engineer will collaborate closely with engineers, security teams, product ... Build, configure, secure, and support AWS environments and serverless computing services.

New

Description As a Sr. DevSecOps Engineer III, you'll play a critical role in designing, implementing ... Expert understanding of AWS capabilities (EC2, S3, IAM, RDS, etc) and architecting secure cloud ...

DevSecOps Engineer

Reston, VA · On-site

$120K - $140K/yr

The DevSecOps Engineer builds and operates the secure delivery pipelines for the platform on AWS-native tooling. You will implement CI/CD, infrastructure-as-code, and security automation, embedding ...

Hands-On Cloud AWS Architect

Hampton, VA · On-site

$112.90 - $257/hr

Experience with cloud-native and DevSecOps practices, including CI/CD pipelines, infrastructure as ... AWS Certified Solutions Architect - Professional and 8570 IAT II Security+ CE Certifications Nice ...

DevSecOps Engineer

Reston, VA · On-site

$120K - $140K/yr

The DevSecOps Engineer builds and operates the secure delivery pipelines for the platform on AWS-native tooling. You will implement CI/CD, infrastructure-as-code, and security automation, embedding ...

DevSecOps Engineer

Reston, VA · On-site

$120K - $140K/yr

The DevSecOps Engineer builds and operates the secure delivery pipelines for the platform on AWS-native tooling. You will implement CI/CD, infrastructure-as-code, and security automation, embedding ...

UiPath RPA Solution Architect Certification, UiPath Agentic AI Certification Azure / AWS DevSecOps Certified General AI/ML Certifications Cultural Fit: * Excellent communication and collaboration ...

DevSecOps Engineer

Reston, VA · On-site

$120 - $150/hr

Build and maintain CI/CD pipelines using AWS-native tooling (CodePipeline, CodeBuild) * Implement ... Familiarity with AI-assisted DevSecOps tooling #J-18808-Ljbffr

DevSecOps Engineer

Ashburn, VA · On-site

$108K - $168K/yr

Proficiency in managing AWS services like EC2, ECS, ECR, EKS, NLB, ALB, RDS, S3, Kafka, Cloud ... AWS or DevOps/ DevSecOps certifications preferred. * This federal program requires the candidates ...

Proficiency in managing AWS services like EC2, ECS, ECR, EKS, NLB, ALB, RDS, S3, Kafka, Cloud ... AWS or DevOps/ DevSecOps certifications preferred. * This federal program requires the candidates ...

DevSecOps Engineer

Ashburn, VA · On-site

$108K - $168K/yr

Experience with AWS or another cloud PaaS provider.Solid understanding of configuration, deployment ... AWS or DevOps/ DevSecOps certifications preferred.This federal program requires the candidates to ...

Preferred Certifications: • UiPath RPA Solution Architect Certification, UiPath Agentic AI Certification • Azure / AWS DevSecOps Certified • General AI/ML Certifications Cultural Fit:

DevSecOps Engineer

Mclean, VA

$53.25 - $73/hr

As a DevSecOps Engineer, you will work with our growing DevSecOps practice delivering features to ... AWS Certified DevOps Engineer * AWS Certified Solution Architect Professional * Experience ...

Showing results 21-40

Aws Devsecops information

What is an AWS DevSecOps?

AWS DevSecOps professionals are experts who integrate security practices within the DevOps process specifically on Amazon Web Services (AWS) platforms. They automate security controls, monitor for vulnerabilities, and ensure compliance throughout the development lifecycle. Their role ensures that applications and infrastructure on AWS are secure, scalable, and resilient, enabling organizations to deliver software rapidly without compromising security.

What skills and qualifications are needed to thrive as an AWS DevSecOps engineer?

To excel as an AWS DevSecOps engineer, you need expertise in cloud infrastructure, security best practices, automation, and a solid understanding of AWS services, typically supported by certifications like AWS Certified DevOps Engineer and AWS Certified Security Specialty. Familiarity with tools such as AWS CloudFormation, Terraform, CI/CD pipelines, containerization technologies (e.g., Docker, Kubernetes), and security scanning tools is essential. Strong problem-solving skills, collaboration, and a proactive mindset help you anticipate risks and work effectively across development and security teams. These skills are crucial for building secure, scalable cloud solutions while accelerating deployment and minimizing vulnerabilities.

How does an AWS DevSecOps engineer collaborate with development and security teams to ensure secure CI/CD pipelines?

An AWS DevSecOps engineer works closely with both development and security teams to embed security practices throughout the software development lifecycle. They participate in code reviews, integrate automated security testing tools into CI/CD pipelines, and provide feedback to developers on vulnerabilities or compliance issues. Regular meetings and shared dashboards help align priorities and ensure transparency, fostering a collaborative environment to proactively address security concerns without slowing down development.

What is the difference between Aws Devsecops vs Cloud Security Engineer?

AspectAws DevsecopsCloud Security Engineer
CertificationsAWS Certified DevOps Engineer, Security SpecialtyCertified Cloud Security Professional (CCSP), AWS Security Specialty
Work EnvironmentDevOps teams, cloud infrastructure, automationSecurity teams, cloud environments, risk assessment
Industry UsageTech, finance, healthcare with cloud adoptionAny industry with cloud infrastructure needs

While both roles focus on cloud security, Aws Devsecops emphasizes integrating security into DevOps processes on AWS, including automation and CI/CD pipelines. Cloud Security Engineers primarily focus on securing cloud environments, managing risks, and implementing security controls. The roles often overlap but differ in their core focus areas and daily tasks.

Is AWS DevSecOps a good career?

AWS DevSecOps is a growing field that combines cloud infrastructure management, security, and automation, making it valuable for organizations adopting cloud solutions. Professionals in this role typically need skills in AWS services, security best practices, and DevOps tools like CI/CD pipelines. It offers strong job demand and opportunities for specialization and certification, such as AWS Security or DevOps certifications.

Is AWS DevSecOps still in demand?

AWS DevSecOps professionals are in high demand due to the increasing need for integrating security into cloud development and operations. Skills in automation, CI/CD tools, and cloud security best practices are highly valued, and certifications like AWS Security Specialty can enhance job prospects.

What cities in Virginia are hiring for Aws Devsecops jobs?

Cities in Virginia with the most Aws Devsecops job openings:

Infographic showing various Aws Devsecops job openings in Virginia as of August 2026, with employment types broken down into 83% Full Time, 11% Part Time, and 6% Contract. Highlights an 77% Physical, 8% Hybrid, and 15% Remote job distribution.

DevSecOps Engineer

Wilcore Technologies

Stafford, VA • On-site

$120K - $130K/yr

Full-time

Posted 2 days ago

New


Job description

Description:

We are hiring a DevSecOps to support a pivotal federal program making a positive impact on millions of Americans’ daily lives.

This is a hands-on engineering role for someone who can combine DevSecOps expertise with practical cybersecurity and remediation experience. The DevSecOps/Security Engineer will collaborate closely with engineers, security teams, product leadership, and external stakeholders to strengthen the program’s cloud infrastructure, automate secure development practices, address security findings, and achieve and maintain an Authorization to Operate (ATO).


What You’ll Be Doing

  • Design, implement, maintain, and document secure CI/CD pipelines using modern DevSecOps practices.
  • Develop and maintain Infrastructure as Code (IaC) solutions using AWS CloudFormation.
  • Build, configure, secure, and support AWS environments and serverless computing services.
  • Integrate security controls, vulnerability scanning, and automated compliance checks throughout the software development lifecycle.
  • Establish vulnerability patching and remediation plans and work directly with engineers to resolve identified findings.
  • Develop and execute actionable Plans of Action and Milestones (POA&Ms), including priorities, owners, dependencies, target completion dates, and measurable milestones.
  • Proactively track POA&M progress, identify blockers, and communicate changes to projected remediation timelines.
  • Assess new security findings as they are identified and determine their scope, severity, ownership, dependencies, and required remediation actions.
  • Identify duplicate, overlapping, inherited, or externally owned findings to prevent unnecessary remediation efforts.
  • Determine when findings are outside the program’s control or result from externally imposed technical constraints and coordinate appropriate risk-acceptance or disposition requests.
  • Develop level-of-effort estimates for core program POA&Ms and help prioritize remediation activities based on risk, effort, dependencies, and operational impact.
  • Maintain an accurate, real-time dashboard or tracker for security findings, POA&Ms, remediation activities, risks, dependencies, owners, and target dates.
  • Conduct or support Security Impact Assessments (SIAs) for proposed system, infrastructure, application, and configuration changes.
  • Support activities required to achieve and maintain an ATO while ensuring program operations adhere to applicable federal software-development and cybersecurity requirements.
  • Help reduce the program’s administrative and operational burden associated with managing ATOs and POA&Ms through automation, documentation, and repeatable processes.
  • Implement Zero Trust best practices, including data tagging and other mechanisms that improve data tracking, classification, and sensitivity management.
  • Collaborate with DevOps engineers to establish secure, modern development and data-science environments.
  • Engage proactively with developers, infrastructure engineers, security personnel, product owners, program leadership, and external stakeholders to drive findings through resolution.
  • Create and maintain technical documentation, remediation evidence, operating procedures, implementation plans, and security-related artifacts.
  • Support and secure Linux-based development and production environments.
  • Investigate Docker containers, container images, configurations, dependencies, and potential security vulnerabilities.
  • Participate effectively in an Agile software-development environment.
  • Perform other related duties as assigned.

What You’ll Bring

  • Hands-on experience designing, developing, and supporting CI/CD pipelines.
  • Experience with GitHub Actions, AWS CloudFormation, Amazon CloudWatch, or comparable technologies.
  • Experience creating, configuring, and supporting AWS services, including ECS, S3, RDS, and Lambda.
  • Experience developing and improving CI/CD scripts and automated services supporting software development and deployment.
  • Experience identifying, assessing, prioritizing, and remediating infrastructure, application, container, and cloud-security vulnerabilities.
  • Demonstrated experience developing vulnerability-patching and remediation plans.
  • Experience managing or supporting POA&Ms, including defining corrective actions, owners, dependencies, milestones, target dates, and closure evidence.
  • Ability to translate security findings into practical engineering tasks and work directly with technical teams through remediation and closure.
  • Experience supporting ATO activities, Security Impact Assessments, or federal security-authorization processes.
  • Knowledge of federal cybersecurity and secure software-development requirements.
  • Experience with Infrastructure as Code and configuration-management practices.
  • Experience supporting and securing Linux-based environments.
  • Experience working with Docker and investigating container configurations and vulnerabilities.
  • Understanding of Zero Trust principles and their application within cloud-based environments.
  • Strong organizational skills and the ability to manage multiple security findings, remediation activities, dependencies, and deadlines simultaneously.
  • Ability to develop realistic plans of action and level-of-effort estimates in an environment where requirements and priorities may change.
  • Strong analytical skills, including the ability to identify duplicate findings, ownership boundaries, inherited risks, and external dependencies.
  • Proactive communication skills and the ability to engage engineers, security teams, program leaders, and external stakeholders without waiting for issues to escalate.
  • Ability to maintain accurate dashboards, trackers, documentation, and status reports.
  • A collaborative mindset and the ability to work successfully with multidisciplinary teams of developers, engineers, managers, security professionals, and product managers.
  • A security-first mindset and the ability to keep infrastructure, application, and data security at the forefront of engineering decisions.
  • Experience working as part of an Agile software-development team.

Preferred Qualifications

  • Experience supporting federal government systems or programs.
  • Experience working with federal security frameworks, authorization requirements, and continuous-monitoring processes.
  • Experience supporting ATO maintenance and POA&M remediation in an AWS cloud environment.
  • Familiarity with federal Zero Trust initiatives and data-classification or data-tagging practices.
  • Experience implementing automated security testing, vulnerability scanning, compliance validation, or policy enforcement within CI/CD pipelines.

Employment Requirements

  • Applicants must be authorized to work in the United States.
  • In alignment with federal contract requirements, certain positions may require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or security clearance.
Requirements:

What You’ll Bring

  • Hands-on experience designing, developing, and supporting CI/CD pipelines.
  • Experience with GitHub Actions, AWS CloudFormation, Amazon CloudWatch, or comparable technologies.
  • Experience creating, configuring, and supporting AWS services, including ECS, S3, RDS, and Lambda.
  • Experience developing and improving CI/CD scripts and automated services supporting software development and deployment.
  • Experience identifying, assessing, prioritizing, and remediating infrastructure, application, container, and cloud-security vulnerabilities.
  • Demonstrated experience developing vulnerability-patching and remediation plans.
  • Experience managing or supporting POA&Ms, including defining corrective actions, owners, dependencies, milestones, target dates, and closure evidence.
  • Ability to translate security findings into practical engineering tasks and work directly with technical teams through remediation and closure.
  • Experience supporting ATO activities, Security Impact Assessments, or federal security-authorization processes.
  • Knowledge of federal cybersecurity and secure software-development requirements.
  • Experience with Infrastructure as Code and configuration-management practices.
  • Experience supporting and securing Linux-based environments.
  • Experience working with Docker and investigating container configurations and vulnerabilities.
  • Understanding of Zero Trust principles and their application within cloud-based environments.
  • Strong organizational skills and the ability to manage multiple security findings, remediation activities, dependencies, and deadlines simultaneously.
  • Ability to develop realistic plans of action and level-of-effort estimates in an environment where requirements and priorities may change.
  • Strong analytical skills, including the ability to identify duplicate findings, ownership boundaries, inherited risks, and external dependencies.
  • Proactive communication skills and the ability to engage engineers, security teams, program leaders, and external stakeholders without waiting for issues to escalate.
  • Ability to maintain accurate dashboards, trackers, documentation, and status reports.
  • A collaborative mindset and the ability to work successfully with multidisciplinary teams of developers, engineers, managers, security professionals, and product managers.
  • A security-first mindset and the ability to keep infrastructure, application, and data security at the forefront of engineering decisions.
  • Experience working as part of an Agile software-development team.

Preferred Qualifications

  • Experience supporting federal government systems or programs.
  • Experience working with federal security frameworks, authorization requirements, and continuous-monitoring processes.
  • Experience supporting ATO maintenance and POA&M remediation in an AWS cloud environment.
  • Familiarity with federal Zero Trust initiatives and data-classification or data-tagging practices.
  • Experience implementing automated security testing, vulnerability scanning, compliance validation, or policy enforcement within CI/CD pipelines.

Employment Requirements

  • Applicants must be authorized to work in the United States.
  • In alignment with federal contract requirements, certain positions may require U.S. citizenship and the ability to obtain and maintain a federal background investigation and/or security clearance.