
location_onRosalind Sallenger Richardson Center of Hope, 1501, Queens Road, Myers Park, Charlotte, Mecklenburg County, North Carolina, 28207, United States
As a DevSecOps Engineer within Maximus TCS, you will serve as a critical bridge between development, security, and operations. This role exists to fortify our security posture while accelerating deployment velocity through automation. You will be responsible for designing and implementing robust security frameworks that protect our infrastructure without hindering innovation.
Your day-to-day involves orchestrating incident response, managing vulnerability lifecycles, and conducting rigorous penetration testing. You will collaborate with cross-functional teams to replace manual security processes with automated solutions, leveraging scripting and open-source tools to enhance network security and compliance. From troubleshooting complex security issues to maintaining runbooks that prevent recurring incidents, you will ensure the resilience of our cloud and on-premise environments.
Candidates selected for this position will undergo a comprehensive evaluation process designed to assess technical expertise and cultural fit. This includes a review of your background against the required security clearances and certifications, followed by technical interviews focused on your experience with DevSecOps practices, automation, and cloud security.
To apply, please submit your resume and relevant certifications through the official Maximus careers portal. If you require reasonable accommodations during any phase of the employment process due to a disability, medical condition, or impairment, please contact People Operations at applicantaccom@maximus.com.
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information, and other legally protected characteristics. We are committed to fostering a diverse and inclusive workplace where all employees can thrive.
Maximus offers a competitive total compensation package. While the annual salary for this role ranges from $145,000 to $167,000, compensation is determined by various factors including job location, education, experience, and market value. Beyond base salary, the package includes short- and long-term incentives, health insurance, life and disability insurance, a retirement savings plan, and paid time off. Maximus complies with all regulatory minimum wage rates and does not use salary history in determining compensation.
Work model: On-site
Rosalind Sallenger Richardson Center of Hope, 1501, Queens Road, Myers Park, Charlotte, Mecklenburg County, North Carolina, 28207, United States
Charlotte, North Carolina
Certified Kubernetes Application Developer (CKAD), Red Hat Certified Engineer (RHCE), Certified Jenkins Engineer (CJE), AWS Certified DevOps Engineer, Certified Kubernetes Engineer (CKA), GitLab Certified DevOps Professional, or similar certifications. Familiarity with technical aspects for IT and IAT-Level II Certifications. Experience with CI/CD pipelines, infrastructure as code, and containerization technologies. Expertise in cloud platforms, automation tools, scripting languages, and security testing tools. Understanding of AWS, Azure, or GCP and their security services. Understanding of USAF IT systems, networks, and platforms. Experience with Jenkins, GitLab CI, Azure DevOps, or similar tools for automating the build, test, and deployment process. Proficiency with tools like Terraform, Ansible, or CloudFormation to automate infrastructure provisioning and configuration. Familiarity with Docker, Kubernetes, and related technologies. Proficiency in scripting languages like Python, Bash, or PowerShell to automate security tasks and workflows. Experience with static analysis (SAST), dynamic analysis (DAST), and software composition analysis (SCA) tools, as well as vulnerability scanners. Solid understanding of network security principles, including firewalls, intrusion detection/prevention systems, and network segmentation. Familiarity with SIEM solutions (like Splunk or ELK) and log aggregation tools for security monitoring. Familiarity with Identity and Access Management (IAM) and Zero Trust (ZT) security models.