DevSecOps Engineer II
Attainx · Herndon, VA, US · United States · On-site
Pay: USD 104,000 – 107,000 a year
Posted Oct 4, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Job Title: DevSecOps Engineer II
Location: Remote/Hybrid - DHS CISA; approved remote work location within the 50 United States or the District of Columbia. Government facility attendance may be required.
Work Schedule: Monday through Friday, 8:00 a.m. to 5:00 p.m. Eastern Time; core availability 9:00 a.m. to 3:00 p.m., excluding federal holidays.
Security Requirements: Must obtain and maintain a favorable DHS/CISA Entry on Duty or fitness determination and complete the background investigation appropriate to the position’s sensitivity and required access.
Work Authorization: Must be authorized to work in the United States and meet DHS/CISA personnel and system access requirements.
AttainX is seeking a DevSecOps Engineer II to integrate security practices throughout the DevOps lifecycle for CISA’s DocuSign implementation and integrations, ensuring secure deployment of high-quality IT infrastructure. This role works independently and collaboratively, contributes to moderately complex project activities, and applies secure automation, Infrastructure as Code, and continuous integration and deployment practices.
Qualifications and Education Requirements:
3-5 years of related experience in DevSecOps, software engineering, infrastructure automation, or security engineering.
A bachelor’s degree in computer science, cybersecurity, information systems, engineering, or a related field.
Proficiency with CI/CD tools such as Jenkins, GitLab, or Azure DevOps, including pipeline automation, version control, Infrastructure as Code, and controlled deployments.
Experience with static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), vulnerability scanning, and penetration testing frameworks.
Experience programming or scripting in one or more languages such as Python, Perl, Bash, PHP, PowerShell, Java, SQL, or C++.
Knowledge of security principles, practices, and technologies, including encryption, authentication, authorization, network security, and secure handling of credentials and secrets.
Experience with REST APIs, connectors, webhooks, SaaS integrations, and Microsoft 365 or enterprise identity platforms; DocuSign integration experience is preferred.
Experience supporting lifecycle testing, technical documentation, Federal security requirements, and Section 508 accessibility compliance.
Ability to work independently and collaborate with architects, developers, security engineers, and stakeholders on moderately complex project activities.
A current Microsoft Certified: DevOps Engineer Expert or AWS Certified DevOps Engineer - Professional certification is highly preferred.
Must be a US Citizen able to obtain a DHS CISA Public Trust clearance.
Job Duties:
Integrate security practices throughout the development, testing, deployment, and operation of DocuSign integrations and supporting infrastructure.
Design, implement, and maintain security controls…