Job Description:
Randstad is seeking a high-caliber DevSecOps / SRE Engineer to join an innovative team in Washington, D.C. In this dual-impact role, you will lead the integration of security into cloud-native workflows
while ensuring the reliability and scalability of mission-critical AWS environments. You will be the architect of secure, self-healing infrastructure,
utilizing Python CDK and Terraform to build automated CI/CD pipelines that support zero-downtime blue/green deployments.
This is an ideal opportunity for a security-minded engineer who thrives on automation, infrastructure-as-code, and the "Shift Left" philosophy in a fast-paced, cloud-forward organization.
Key Responsibilities:
Pipeline Orchestration: Design and maintain secure CI/CD pipelines utilizing AWS CodePipeline, CodeBuild, and CodeDeploy.
Deployment Strategy: Implement and manage blue/green deployment models to ensure zero-downtime releases and seamless rollbacks.
Infrastructure as Code (IaC): Automate the provisioning of global cloud infrastructure using Terraform and AWS CDK (Python).
Security Integration: Embed SAST, DAST, and SCA scanning tools directly into build and deployment workflows to identify vulnerabilities early.
Site Reliability: Monitor system health and respond to vulnerabilities across applications and infrastructure to maintain high availability.
Collaboration: Partner with development and ops teams to enforce secure coding standards and cloud governance frameworks.
Documentation: Maintain rigorous documentation for security protocols, deployment strategies, and compliance configurations.
Qualifications & Skills:
Cloud Expertise: Deep hands-on experience with AWS core services (IAM, EC2, Lambda, S3, CloudFormation).
Automation Mastery: Advanced proficiency in Python, specifically for infrastructure automation via AWS CDK.
Tooling: Professional experience with Terraform for IaC and Bitbucket for source control/pipeline management.
Containers: Solid understanding of containerization and orchestration using Docker and Kubernetes.
Security Standards: Familiarity with security frameworks (OWASP, NIST, CIS) and tools such as Checkmarx or SonarQube.
Education/Certs: Preferred certifications include AWS Certified DevOps Engineer, Certified DevSecOps Professional (CDP), or CISSP.
Soft Skills: Strong analytical problem-solving abilities and the communication skills necessary to bridge the gap between security and development teams.