ecsfederal~1h ago
New
New
Cloud DevSecOps Engineer
CybersecurityDevSecOps Engineer
0 views0 saves0 applied
Quick Summary
Overview
ECS is seeking a Cloud DevSecOps Engineer to work remotely.
Technical Tools
CybersecurityDevSecOps Engineer
ECS is seeking a Cloud DevSecOps Engineer to work remotely.
About the Role
~2 min read- Architect, provision, configure, and maintain production-grade Kubernetes cluster environments hosting containerized front-end, backend, and identity services.
- Deploy, configure, and administer a highly available Keycloak Identity Broker instance running in Kubernetes, federating authentication to enterprise Okta via SAML 2.0 and OIDC.
- Configure identity brokering rules, realm roles, client scopes, and token exchange policies within Keycloak to power secure authentication for React and Spring Boot services.
- Design, build, and maintain end-to-end CI/CD pipelines for automated image builds, vulnerability scanning, automated testing gates, and zero-downtime rolling deployments via Helm.
- Implement robust platform security controls, including Kubernetes Ingress controllers (NGINX/Traefik), TLS certificate automation (cert-manager), network policies, and container image scanning (Trivy).
- Automate secrets management and configuration injection across environments using tools such as HashiCorp Vault, AWS Secrets Manager, or Kubernetes External Secrets Operator.
- Provision, monitor, and maintain supporting backing infrastructure including managed PostgreSQL instances and secure Amazon S3 storage buckets.
- Establish centralized logging, monitoring, and alerting frameworks (Prometheus, Grafana, Loki or EFK stack) to ensure high system observability and reliability.
Salary Range: $130,000-$175,000
General Description of Benefits
- Must be a US Citizen with the ability to pass a Public Trust background check
- Bachelor’s degree in a relevant field
- 10+ years of relevant work experience
- 6+ years of systems engineering, DevOps, and cloud infrastructure experience in enterprise Linux and cloud environments.
- 4+ years of hands-on experience provisioning, operating, and troubleshooting containerized workloads in production Kubernetes clusters.
- 3+ years of dedicated experience configuring and managing enterprise Identity and Access Management (IAM) systems, specifically Keycloak and Okta (OIDC, OAuth 2.0, SAML 2.0).
- Strong experience building and maintaining automated CI/CD pipelines (e.g., GitLab CI, GitHub Actions, Jenkins) integrating security scans and container image registries.
- Proficiency in Infrastructure as Code (IaC) and configuration management using Terraform, Helm charts, and Kubernetes YAML manifests.
- Solid background in networking, DNS, TLS/SSL termination, reverse proxy routing, and cloud network access policies.
- Strong scripting skills in Bash, Python, or Go for automated infrastructure management and operational tooling.
- Proactive problem-solving capabilities with a security-first engineering mindset and clear technical communication skills.
Location & Eligibility
Where is the job
United States
Remote within one country
Who can apply
US
Listing Details
- First seen
- September 25, 2026
- Last seen
- September 25, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 61%
- Scored at
- September 25, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
External application
Browse Similar Jobs
Security Analyst179Product Security Engineer176Security Architect103Soc Analyst97Security Consultant96Security Operations Engineer77Network Security Engineer75Threat Intelligence Analyst52Grc Analyst45Security Researcher43Offensive Security Engineer33Security Administrator32Security Automation Engineer29Identity Engineer28Cloud Security Engineer26Security Program Manager19Application Security Engineer18Incident Response Analyst17Endpoint Security Engineer16Digital Forensics Analyst13
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.