Direct Client: Senior DevSecOps Engineer @ Mechanicsburg, PA – Hybrid

Hybrid in Mechanicsburg, PA, US • Posted 12 hours ago • Updated 12 hours ago
Contract Independent
Contract W2
Contract Corp To Corp
No Travel Required
Hybrid
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • Terraform
  • GitHub Actions
  • Cloud & DevSecOps
  • AWS Security Automation (
  • AWS CDK & CloudFormation
  • CI/CD & Automation
  • Azure DevOps pipelines
  • Security pipeline integration:
  • SAST
  • SCA
  • Programming / Scripting
  • ecurity & Compliance
  • AWS Security Services

Summary

Senior DevSecOps Engineer 

Mechanicsburg, PA – Hybrid

Longterm Contract

Looking for the candidates who can work without any visa sponsorship.

Work Location: Hybrid with two days onsite (1920 Technology Parkway, Mechanicsburg, PA 17050). Schedule can be discussed during interview. 


This req is available to candidates nationwide, but candidate must be ready to relocate for this hybrid position (60% remote vs. 40% onsite). Candidate must go onsite on their first day to pick up commonwealth-issued equipment, badging, etc.. Role contingent on compliant PATCH and passing PSDC/CJIS background checks.

PSDC (Public Safety Delivery Center) requires the services of a Senior DevSecOps Engineer to act as consultant with the PSDC Solutions Management group. 

 

Role summary

Hands-on security automation for AWS delivery. Build secure-by-default CDK constructs and CloudFormation templates, wire them into CI/CD, and enforce compliance checks that map to CJIS and NIST. Azure support is a future consideration, not a core day-one duty.

Scope boundaries

  • Does not own enterprise AWS Organizations or SCP operations.
  • Designs and builds reference guardrails and enforcement patterns that can be deployed by enterprise teams. 
  • Focuses on preventive controls and compliance automation, not incident response. 

What you will deliver

First 90 days

  1. Pipeline security templates in GitHub Actions and Azure DevOps with SAST, SCA, IaC, container, and secret scanning gates. 
  2. Compliance as code in reference accounts: AWS Config rules and Security Hub standards aligned to CJIS and NIST 800-53, with exceptions workflow documented. 
  3. IaC reference modules using AWS CDK and CloudFormation for IAM least privilege, KMS, Secrets Manager, logging, and network baselines; Terraform equivalents provided where teams require them. 
  4. Evidence exports tying checks to control IDs and producing auditor-ready artifacts. 

Ongoing

  • Harden CDK/CFT modules and pipeline templates as compliance needs evolve.
  • Coach pilot teams to adopt templates.
  • Raise gaps to enterprise teams for org-level enforcement.

Day-to-day responsibilities

  • Author and maintain AWS CDK constructs and CloudFormation templates; provide Terraform versions as secondary. 
  • Implement AWS Config conformance, Security Hub standards, and GuardDuty routing in reference accounts.
  • Wire scanning in CI/CD for app code, containers, and IaC.
  • Create reusable GitHub/Azure DevOps templates with enforcement gates and exception handling.
  • Generate posture and evidence reports mapped to CJIS and NIST controls.

Required skills

  • 5+ years AWS security automation and DevOps.
  • Strong with AWS CDK and CloudFormation; working proficiency in Terraform
  • CI/CD authoring in GitHub Actions and Azure DevOps
  • Proficient in Python and Bash, with PowerShell for Windows automation. 
  • Able to read Java and C# to integrate and tune SAST/SCA. 
  • Practical knowledge of CJIS and NIST 800-53 control families and how to automate checks and evidence. 

Nice to have

  • EKS/ECS/Lambda hardening patterns.
  • OPA/Conftest, Checkov, Trivy, Inspector, CodeQL or equivalent.
  • Basic Azure security automation for future phases.

Decision rights

Independent on design and build within standards; proposes guardrails and reference patterns; escalates enterprise-wide changes.

 

 

Skill

Required Exp

Candidate Exp

5+ years AWS security automation and DevOps

5

 

Strong with AWS CDK and CloudFormation; working proficiency in Terraform

Required

 

CI/CD authoring in GitHub Actions and Azure DevOps

Required

 

Proficient in Python and Bash, with PowerShell for Windows automation

Required

 

Able to read Java and C# to integrate and tune SAST/SCA

Required

 

Practical knowledge of CJIS and NIST 800-53 control families and how to automate checks and evidence

Required

 

EKS/ECS/Lambda hardening patterns

Nice to have

 

OPA/Conftest, Checkov, Trivy, Inspector, CodeQL or equivalent

Nice to have

 

Basic Azure security automation for future phases

Nice to have

 

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10314943
  • Position Id: 393-42690-
  • Posted 12 hours ago

Company Info

About KSN Technologies, Inc.

KSN Technologies Inc. is a premier Tier-1 IT consulting and staff augmentation firm with over 20 years of experience delivering highly skilled technology professionals and consulting services to multiple U.S. state government agencies and enterprise clients. We specialize in key technology areas including Artificial Intelligence, Cloud Computing (Azure, AWS, Google Cloud), Cybersecurity, Enterprise Application Development (.NET, Java, Salesforce), Data Engineering, Business Intelligence, DevOps, and Intelligent Automation.

As a trusted government partner, KSN Technologies has built a strong reputation for reliability, compliance, and delivery excellence in regulated environments such as healthcare and public sector digital transformation. Our consultants contribute to mission-critical initiatives including cloud migration, enterprise system modernization, and secure data platforms. We are committed to providing our professionals with impactful project opportunities, competitive compensation, and long-term career growth while enabling clients to achieve their strategic technology goals.

KSN Technologies Inc. is an Equal Opportunity Employer. Employment eligibility verification and background checks may be conducted in accordance with client and government requirements.



Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Mechanicsburg, Pennsylvania

Today

Easy Apply

Contract, Third Party

$50 - $60

Hybrid in Mechanicsburg, Pennsylvania

Today

Easy Apply

Contract, Third Party

Depends on Experience

Hybrid in Mechanicsburg, Pennsylvania

Today

Easy Apply

Contract, Third Party

Depends on Experience

Hybrid in Mechanicsburg, Pennsylvania

Today

Easy Apply

Contract

Depends on Experience

Search all similar jobs