Sobre esta vaga de DevSecOps Engineer Mid na Accenture Federal Services
Who you'll be:
We are seeking a DevSecOps Engineer to support software assurance across a federal agency's development pipeline. You will help design and operate a secure DevSecOps environment, integrating security testing and compliance automation into every stage of the software development lifecycle. Working within an Agile/Scrum delivery model, you will partner closely with developers, security engineers, and compliance stakeholders to ensure security is built in from the first commit rather than bolted on at the end.
What you'll do:
- Assist in analyzing and reviewing user needs, software requirements, and technical design documents to develop solutions providing automated compliance and security posture management.
- Utilize Agile DevSecOps practices, following a plan-code-build-test-release-deploy-monitor approach for new and modified applications.
- Support implementation of Continuous Integration/Continuous Development (CI/CD) security gates to ensure software is secure prior to production deployment.
- Assist in identifying gaps in the agency's cybersecurity baseline through security engineering analysis and recommend defense functions (encryption, access control, identity management).
- Support development of code that interacts with API-driven security technologies to automate security tasks and reduce human error.
- Perform integrated quality assurance testing for security functionality and resiliency on developed solutions, tracking defect dispositions and resolutions.
- Support static and dynamic application security testing (SAST/DAST) and coordinate remediation of identified findings with development teams.
- Contribute to documentation of the CI/CD security architecture and pipeline, keeping design and SOP artifacts current.
What you need:
- US Citizenship; 3+ years of related experience; BS degree (or 4 years of additional experience as a substitute).
- A minimum of five (5) years of experience in system administration, database administration, network engineering, software engineering, or software development with a Cyber Security concentration (or a bachelor's degree plus three (3) years in the same disciplines).
- Experience with secure software development lifecycle practices, CI/CD security integration, and static/dynamic application security testing (SAST/DAST).
- Familiarity with Agile/Scrum delivery methodologies.
Nice to have:
- Hands-on experience with a modern CI/CD toolchain (GitLab CI, Jenkins, Azure DevOps, or similar) in a security-gated pipeline.
- Scripting proficiency in Python, Bash, or PowerShell for security automation.
- Familiarity with container security and cloud-native application security practices.
Required Certifications:
- No task-specific certification is mandated in the PWS for this role; CompTIA Security+ or equivalent is recommended, consistent with the PWS's general Security Engineer certification guidance.
As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Connecticut, Hawaii, Illinois, Maine, Maryland, Massachusetts, Minnesota, New Jersey, New York, Ohio, Vermont, Virginia, Washington, and the District of Columbia. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set, and level of experience. Accenture Federal Services offers a wide variety of benefits. You can find more information on benefits here. We accept applications on an on-going basis and there is no fixed deadline to apply.