1

Secret Cleared Devsecops Engineer Jobs in Houston, TX

We're seeking a DevSecOps Engineer to own the secure delivery pipeline and platform foundations ... Implement secret management (Vault/Secrets Manager/KMS), key rotation, and secure parameter stores.

External Description We're seeking a DevSecOps Engineer to own the secure delivery pipeline and ... Implement secret management (Vault/Secrets Manager/KMS), key rotation, and secure parameter stores.

We're seeking a DevSecOps Engineer to own the secure delivery pipeline and platform foundations ... Implement secret management (Vault/Secrets Manager/KMS), key rotation, and secure parameter stores.

DevSecOps Engineer

Houston, TX ยท On-site

$140 - $190/hr

External Description We're seeking a DevSecOps Engineer to own the secure delivery pipeline and ... Implement secret management (Vault/Secrets Manager/KMS), key rotation, and secure parameter stores.

Technical Architect

Spring, TX ยท On-site

$61 - $73.75/hr

DevSecOps: preferred experience with GitHub, GitHub Advanced Security, GitHub Actions, Azure DevOps and Jenkins * DevSecOps: Experience with SCA (Software Composition Analysis), secret-scanning, SAST ...

Senior Security Engineer, IAM

Houston, TX ยท On-site

$109K - $149K/yr

AI DevSecOps & Collaboration * Design identity controls embedded in AI-augmented CI/CD pipelines ... secret scanning, IaC identity policy, workload identity) with AI-generated fix recommendations ...

next page

Showing results 1-20

Secret Cleared Devsecops Engineer information

See Houston, TX salary details

$56.8K

$106.6K

$193.9K

How much do secret cleared devsecops engineer jobs pay per year?

As of Aug 30, 2026, the average yearly pay for secret cleared devsecops engineer in Houston, TX is $106,605.00, according to ZipRecruiter salary data. Most workers in this role earn between $76,900.00 and $126,500.00 per year, depending on experience, location, and employer.

What is a Secret Cleared DevSecOps Engineer?

A Secret Cleared DevSecOps Engineer is an IT professional who integrates security practices into the software development and operations (DevOps) process while holding a 'Secret' level security clearance, typically required for working on sensitive government or defense projects. These engineers are responsible for automating security measures, ensuring compliance with security policies, and maintaining secure development pipelines. Their clearance allows them to access classified information necessary for their work, making them essential for secure government or defense software development environments.

What are the key skills and qualifications needed to thrive as a Secret Cleared DevSecOps Engineer?

To thrive as a Secret Cleared DevSecOps Engineer, you need expertise in software development, security best practices, automation, and experience with cloud infrastructure, typically supported by a relevant degree and an active Secret security clearance. Proficiency with CI/CD tools like Jenkins, Kubernetes, Docker, security scanning tools, and configuration management systems such as Ansible or Terraform is essential. Strong problem-solving, collaboration, and communication skills are crucial for integrating security seamlessly into development and operations processes. These skills ensure the delivery of secure, reliable systems that meet stringent government standards and safeguard sensitive information.

What are some common challenges faced by Secret Cleared DevSecOps Engineers when integrating security into CI/CD pipelines?

Secret Cleared DevSecOps Engineers often encounter challenges such as balancing rapid deployment with stringent security controls, ensuring compliance with government regulations, and managing sensitive data securely within automated pipelines. They must collaborate closely with development, operations, and security teams to identify vulnerabilities early and automate security testing without slowing down delivery. Additionally, maintaining security documentation and audit trails for classified projects adds another layer of complexity to the role.

What is the difference between Secret Cleared Devsecops Engineer vs Cybersecurity Analyst?

AspectSecret Cleared Devsecops EngineerCybersecurity Analyst
CertificationsSecurity+, CISSP, DevSecOps certificationsSecurity+, CEH, CISSP
Work EnvironmentDevOps teams, software development, cloud platformsSecurity operations centers, threat analysis, incident response
Employer & Industry UsageGovernment agencies, defense contractors, tech firmsCorporations, government agencies, consulting firms

The Secret Cleared Devsecops Engineer focuses on integrating security into the development and deployment processes within DevOps environments, often requiring security clearances. In contrast, a Cybersecurity Analyst primarily monitors and responds to security threats, with less emphasis on development processes. Both roles require security certifications and may work in similar industries, but their core responsibilities and daily tasks differ significantly.

What are popular job titles related to Secret Cleared Devsecops Engineer jobs in Houston, TX?

For Secret Cleared Devsecops Engineer jobs in Houston, TX, the most frequently searched job titles are:

What job categories do people searching Secret Cleared Devsecops Engineer jobs in Houston, TX look for?

The top searched job categories for Secret Cleared Devsecops Engineer jobs in Houston, TX are:

What cities near Houston, TX are hiring for Secret Cleared Devsecops Engineer jobs?

Cities near Houston, TX with the most Secret Cleared Devsecops Engineer job openings:

DevSecOps Engineer

Houston, TX โ€ข On-site

The Friedkin Group
Executive Officesย โ€ขย 5 - 10K employees

Other

Re-posted 24 days ago


Job description

We're seeking a DevSecOps Engineer to own the secure delivery pipeline and platform foundations across cloud environments. You'll design and automate IAM, infrastructure as code (Terraform), CI/CD (GitHub Actions), and Kubernetes operations, embedding security controls by default and enabling development teams to ship quickly and safely.

Your Assignment at aGlance

  • Design and implement least-privilege IAM (users, roles, policies, SSO/OIDC) across cloud and Kubernetes (RBAC, service accounts, Pod Security Standards).
  • Build/maintain Terraform modules and environments (prod/non-prod), enforce drift detection, and apply policy-as-code (OPA/Conftest, Sentinel, Checkov/tfsec).
  • Own GitHub Actions pipelines (build/test/scan/sign/release), reusable workflows, environment protections, required reviews, and deployment gates.
  • Operate Kubernetes clusters (EKS/AKS/GKE or on-prem): cluster lifecycle, Helm/Kustomize, GitOps (Argo CD/Flux), NetworkPolicies, ingress, secrets.
  • Embed software supply chain security: SCA/SAST/DAST, container/IaC scanning, SBOM generation, image signing (Cosign), provenance (SLSA).
  • Implement secret management (Vault/Secrets Manager/KMS), key rotation, and secure parameter stores.
  • Stand up observability: metrics, logs, traces (Prometheus/Grafana/ELK/Cloud-native), and actionable alerts.
  • Automate incident response runbooks; support on-call for platform/security events.
  • Partner with AppSec and product teams on threat modeling, secure design reviews, and remediation.
  • Contribute to compliance initiatives (SOC 2/ISO 27001) with evidence automation and configuration baselines.
  • Drive cost, reliability, and capacity guardrails; champion platform DX and documentation.

What We Need From You

  • 8+ years in DevOps/Platform/SRE with a security-first mindset.
  • Strong IAM design (cloud + Kubernetes RBAC), OIDC/OAuth2, SSO/IdP (e.g., Okta/Azure Entra).
  • Production Terraform experience (workspaces, modules, remote state, CI-driven plans/applies).
  • Hands-on GitHub Actions (self-hosted runners, OIDC to cloud, environments/protections, matrix builds).
  • Operating Kubernetes in production (Helm, networking, ingress, autoscaling, upgrades, backups/DR).
  • Practical use of security scanners (e.g., Wiz, Trivy/Grype, Dependabot, Checkov/tfsec), and policy-as-code.
  • Proficient with one or more clouds (AWS), Linux, containers, and networking fundamentals.
  • Strong scripting in Python or Bash; Infrastructure troubleshooting and debugging skills.
  • Clear communication, ownership, and ability to drive cross-team initiatives.


    Nice to Have

    • HashiCorp Vault, keeper/Kyverno, service mesh (Istio/Linkerd), or CNI like Cilium.
    • GitOps at scale (Argo CD multi-app/multi-cluster), progressive delivery (Argo Rollouts/Flagger).
    • Experience with SIEM, detections, or security data pipelines.
    • Knowledge of data protection (PII), tokenization, and regional compliance.
    • Background in financial/insurance/auto domains (regulated environments).

Physical and Environmental Requirements
The physical requirements described here are representative of those that must be met by a Contractor to successfully perform the essential functions of the job. While performing the duties of the job, the Contractor is required on a daily basis to analyze and interpret data, communicate, and remain in a stationary position for a significant amount of the work day and frequently access, input, and retrieve information from the computer and other office productivity devices. The Contractor is regularly required to move about the office and around the corporate campus. The Contractor must frequently move up to 10 pounds and occasionally move up to 25 pounds.

Travel Requirements

  • up to 20%

If you have a disability and would like to request an accommodation, please contact us at TalentAcquisition@friedkin.com. We celebrate diversity and are committed to creating an inclusive environment.
We are seeking candidates legally authorized to work in the United States, without Sponsorship.

#LI-TW1