
location_onHelen Diller Civic Center North Playground, Civic Center Plaza, Civic Center, San Francisco, California, 94102, United States
As a DevSecOps Engineer within Maximus TCS, you will serve as a critical bridge between development, security, and operations. This role exists to fortify our infrastructure against evolving threats while accelerating secure deployment pipelines. You will not only manage incident response and vulnerability scanning but also champion the automation of security frameworks, replacing manual processes with robust, script-driven solutions.
Your day-to-day involves designing and implementing solutions for network security, managing access controls, and conducting deep-dive root cause analysis on operational issues. You will be responsible for maintaining the integrity of our proxy servers, firewalls, and systems through rigorous risk assessments and penetration testing. By updating security procedures and operations runbooks, you ensure that our team avoids recurring issues and maintains a high standard of compliance.
Candidates selected for this position will undergo a comprehensive evaluation process designed to assess both technical expertise and cultural fit. The journey typically includes an initial screening to verify clearance status and qualifications, followed by technical interviews focusing on DevSecOps methodologies, automation strategies, and security architecture. Final rounds may involve scenario-based problem solving and team alignment discussions.
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information, and other legally protected characteristics. We are committed to fostering a diverse and inclusive environment where every team member can contribute their unique perspective.
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process—including accessing job postings, completing assessments, or participating in interviews—please contact People Operations at applicantaccom@maximus.com.
Work model: On-site
Helen Diller Civic Center North Playground, Civic Center Plaza, Civic Center, San Francisco, California, 94102, United States
San Francisco, California
Certified Kubernetes Application Developer (CKAD), Red Hat Certified Engineer (RHCE), Certified Jenkins Engineer (CJE), AWS Certified DevOps Engineer, Certified Kubernetes Engineer (CKA), GitLab Certified DevOps Professional, or similar certifications. Familiarity with technical aspects for IT and IAT-Level II Certifications. Experience with CI/CD pipelines, infrastructure as code, and containerization technologies. Expertise in cloud platforms, automation tools, scripting languages, and security testing tools. Understanding of AWS, Azure, or GCP and their security services. Understanding of USAF IT systems, networks, and platforms. Experience with Jenkins, GitLab CI, Azure DevOps, or similar tools for automating the build, test, and deployment process. Proficiency with tools like Terraform, Ansible, or CloudFormation to automate infrastructure provisioning and configuration. Familiarity with Docker, Kubernetes, and related technologies. Proficiency in scripting languages like Python, Bash, or PowerShell to automate security tasks and workflows. Experience with static analysis (SAST), dynamic analysis (DAST), and software composition analysis (SCA) tools, as well as vulnerability scanners. Solid understanding of network security principles, including firewalls, intrusion detection/prevention systems, and network segmentation. Familiarity with SIEM solutions (like Splunk or ELK) and log aggregation tools for security monitoring. Familiarity with Identity and Access Management (IAM) and Zero Trust (ZT) security models.