- Salary
- $121k – $164k
- Location
- USA LA Home Office (LAHOME), United States of America
- Workplace
- Remote
- Type
- Full-time
- Department
- Engineering
- Experience
- 5+ years
- Education
- Master
- Source
- Workday
Description
Type of Requisition:
RegularClearance Level Must Currently Possess:
NoneClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
BI Full 6C (T4)Job Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
Cloud DevOps, DevOps, DevSecOpsCertifications:
NoneExperience:
5 + years of related experienceUS Citizenship Required:
NoJob Description:
Seize your opportunity to make a personal impact supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States.
GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The DevSecOps - CI/CD - IaC Engineer will work as part of the CMM Data Modernization and Governance team responsible for delivering an integrated data governance, engineering, data platform, reporting, analytics, and Artificial Intelligence (AI)/Machine Learning (ML) capabilities that support operational decision-making and fulfill AO's data and analytics objectives in support of the CMM program.
The successful candidate will be responsible for automating software delivery, deployment pipelines, infrastructure provisioning, configuration, security controls, and operational processes across CMM cloud data environments. The role integrates security throughout the software and infrastructure lifecycle and serves as a Senior Cloud Security Specialist, ensuring cloud platforms and data environments are securely designed, deployed, monitored, and operated.
THE DEVSECOPS - CI/CD - IaC ENGINEER WILL EXECUTE THE FOLLOWING RESPONSIBILITIES
- Deliver DevSecOps platform services that embed security, compliance, and monitoring across the full cloud and data product lifecycle.
- Integrate automated security controls, vulnerability management, policy compliance, and continuous monitoring into CI/CD and IaC workflows.
- Build, maintain, optimize CI/CD pipelines for automated build, test, security scanning, & deployment.
- Ensure all code and IaC changes are version‑controlled, peer‑reviewed, security‑scanned, and governed by change‑control gates.
- Automate cloud infrastructure provisioning and configuration using IaC tools (Terraform, CloudFormation, ARM/Bicep).
- Implement SAST/DAST, dependency, and container scanning within pipelines; maintain rollback procedures and deployment monitoring.
- Define and enforce cloud security architecture, IAM policies, secrets management, encryption, and network security controls.
- Conduct security reviews, threat modeling, and vulnerability assessments for pipelines and cloud infrastructure.
- Monitor environments for security events, misconfigurations, and compliance drift; lead remediation.
- Maintain artifact repositories, release automation, configuration management, and environment provisioning.
- Develop policy‑as‑code guardrails and automated compliance checks for IaC and CI/CD systems.
- Integrate and coordinate DevSecOps standards with AO teams to ensure enterprise interoperability.
- Provide documentation, training, and end‑user guidance for pipelines, tooling, and security practices.
- Review and update DevSecOps toolsets based on emerging threats and technologies; produce metrics reports (deployment frequency, MTTR, remediation times).
- Support incident response for security issues involving infrastructure, pipelines, or deployments.
- Collaborate with development, operations, governance, and security teams for unified visibility and secure delivery processes.
QUALIFICATIONS
- Education: Bachelor's degree in Computer Science, Software Engineering, or related field.
- Experience: 5+ years of experience in IT system engineering, systems development, systems coding and programming..
- Experience leading cloud migrations or major modernization initiatives.
- Strong knowledge of large‑scale infrastructure migration methods (IaaS/PaaS) and AWS cloud platforms.
- Deep understanding of cloud security, compliance, IAM, encryption, network security, and control frameworks.
- Strong scripting skills (Python, Bash, Ruby, Perl) for automation and tooling.
- Extensive experience building and supporting automated DevSecOps and CI/CD pipelines (Jenkins, GitLab, GitHub Actions, Azure DevOps).
- Solid background in Infrastructure as Code using Terraform, CloudFormation, or ARM/Bicep.
- Hands‑on experience with cloud APIs, cloud automation, and multi‑cloud/hybrid operations.
- Proficient with DevOps toolchains (Git, Jira, Confluence, Ansible, SonarQube, Fortify, Maven, Bamboo).
- Experience developing, testing, and maintaining containerized applications and Kubernetes-based workloads.
- Strong experience supporting full DevOps lifecycle (CI, testing, deployment, monitoring).
- Experience managing AWS private/public cloud deployments and automating cloud infrastructure provisioning.
- Capability to design, secure, and operate enterprise-scale CI/CD pipelines for diverse applications.
- Strong “security‑first” mindset and experience integrating SAST/DAST, dependency, and container scanning.
- Skilled in artifact management, release engineering, and build pipeline optimization.
- Ability to mentor teams on secure software delivery, DevSecOps practices, and IaC standards.
CERTIFICATIONS (Preferred)
One or more of the following certifications is preferred but not required.
- Certified Data Management Professional (CDMP)
- Snowflake SnowPro Advanced
- Databricks Certified Data Professional
- AWS Certified Data Analytics - Specialty
- AWS Certified Solutions Architect - Professional
- AWS Certified Data Engineer
- Docker Certified Associate
- Certified Kubernetes Administrator
- Certified Professional DevSecOps Certification Course
- ITIL, AWS SysOps, Google Cloud DevOps Engineer
Seize your opportunity to make a personal impact supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States.
GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The Performance & Data Optimization Engineer will work as part of the CMM Data Modernization and Governance team responsible for delivering an integrated data governance, engineering, data platform, reporting, analytics, and Artificial Intelligence (AI)/Machine Learning (ML) capabilities that support operational decision-making and fulfill AO's data and analytics objectives in support of the CMM program.
The successful candidate will be responsible for monitoring and optimizing the performance of the enterprise cloud data platform, focusing on database performance, query execution, indexing strategies, and overall platform efficiency. This role identifies bottlenecks, tunes queries and platform configurations, and partners with data engineering and platform teams to ensure the CMM Data Modernization & Governance platform runs efficiently, reliably, and cost-effectively at scale.
THE PERFORMANCE & DATA OPTIMIZATION ENGINEER WILL EXECUTE THE FOLLOWING RESPONSIBILITIES
- Optimize databases and platform performance across cloud data warehouses/lakes, including query execution, indexing, partitioning, and caching.
- Monitor system health; manage incidents, events, and operational reporting.
- Diagnose and resolve performance bottlenecks in queries, pipelines, and resource utilization (CPU, memory, storage, network, I/O, concurrency).
- Analyze and tune SQL, ETL/ELT, data models, ingestion patterns, and workload performance for efficiency and cost.
- Establish and maintain SLAs, baselines, dashboards, and automated monitoring/alerting.
- Plan capacity, perform workload analysis, and guide scaling and cost-optimization decisions.
- Collaborate with platform engineers, DBAs, architects, and application teams to optimize compute/storage configurations and resolve issues.
- Maintain access controls, user roles, and identity integrations including SSO, MFA, and JENIE-based least privilege enforcement.
- Provide disaster recovery and continuity options including high availability, fault tolerance, and automated failover.
- Integrate DevSecOps tools and processes with enterprise systems to ensure unified security posture.
- Manage centralized secrets with automated rotation, access logging, and policy enforcement.
- Embed SAST, DAST, SCA, and CSPM tools into CI/CD for continuous assessment and remediation.
- Implement automated, continuous 24/7 monitoring for security, performance, and compliance with real-time dashboards.
- Ensure automated SBOM generation and management for all deployed artifacts.
- Provide diagnostics, metrics gathering, and performance tuning; support canary releases for testing.
- Collaborate with data governance and data quality teams to ensure performance optimization efforts align with data standards and controls.
- Collaborate with Data Platform Engineers, Database Administrators, Data Architects, and Data Engineers to resolve performance issues.
- Perform automated, full-stack health checks at agreed intervals.
- Deliver monthly reports covering incidents, stability, performance, configurations, ticket volume, and resolution times.
- Support high availability, disaster recovery, and business continuity requirements.
- Contribute to platform performance standards, engineering guidelines, and optimization best practices.
QUALIFICATIONS
- Education: Bachelor’s degree in Computer Science, Software Engineering, or related field.
- Experience: 5+ years’ experience in IT systems engineering, systems development, systems coding, and programming.
- Deep expertise in AWS services across compute, storage, networking, monitoring, and logging.
- Proficient with Infrastructure as Code (IaC) tools (Terraform, CloudFormation, Azure Bicep).
- Experienced with monitoring/APM platforms (CloudWatch, Azure Monitor, Datadog, Prometheus, Grafana, New Relic).
- Strong background in incident response, change management, and ITIL operations.
- Skilled with CI/CD toolchains (Jenkins, GitHub Actions, GitLab, ArgoCD) and automation.
- Strong scripting abilities (Python, PowerShell, Bash).
- Advanced DevSecOps and GitOps implementation experience.
- Hands-on experience building, testing, and maintaining containerized applications.
- Expert in version control, build/release engineering, and enterprise-scale CI/CD pipelines.
- Flexible collaborator across multiple teams and products.
- Experience with FinOps, cost modeling, forecasting, and cloud cost optimization.
- Knowledge of federal compliance frameworks (FedRAMP, NIST, JISF Rev 5).
- Skilled in log/metric analysis and cloud performance tuning.
- Experienced working across product teams to assess system health.
- Strong SQL and database performance-tuning skills.
- Experience in query optimization, indexing, partitioning, clustering, and execution-plan analysis.
- Familiar with cloud data platforms and distributed data-processing environments.
- Strong performance-monitoring and troubleshooting capabilities.
- Excellent analytical and problem‑solving skills.
- Preferred experience with Snowflake, Databricks, Amazon Redshift, PostgreSQL, SQL Server, Oracle, or equivalent platforms.
- Preferred experience with optimizing large-scale analytical workloads.
CERTIFICATIONS
One or more of the following certifications is preferred but not required.
- Certified Data Management Professional (CDMP)
- Snowflake SnowPro Advanced
- Databricks Certified Data Professional
- AWS Certified Data Analytics – Specialty
- AWS Certified Solutions Architect – Professional
- AWS Certified Data Engineer
- Docker Certified Associate.
- Certified Kubernetes Administrator
- Certified Professional DevSecOps Certification Course
- ITIL, AWS SysOps, Google Cloud DevOps Engineer.
Security Clearance Level: Must be able to pass a background check to obtain a position of Public Trust.
Must be a US Person (Green Card Holder, US Permanent Resident Alien, Refugee, Asylee, or US Citizen).
Location: Remote.
GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
● Growth: AI-powered career tool that identifies career steps and learning opportunities
● Support: An internal mobility team focused on helping you achieve your career goals
● Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
● Flexibility: Full-flex work week to own your priorities at work and at home
● Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore a career in program management at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for the mission and delivering results.
#GDITLA
The likely salary range for this position is $121,125 - $163,875. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:
40Travel Required:
Less than 10%Telecommuting Options:
RemoteWork Location:
Any Location / RemoteAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.Join our Talent Community to stay up to date on our career opportunities and events atEqual Opportunity Employer / Individuals with Disabilities / Protected Veterans