Senior DevSecOps Engineer / Full-Time / Hybrid / Mechanicsburg, PA

Overview

Hybrid
Depends on Experience
Full Time

Skills

AWS Security Automation
AWS
DevOps
AWS CDK
AWS CloudFormation
Terraform
CI/CD
GitHub
GitHub Actions
Python
Bash
PoweShell
Java
C#
CIIS
NIST 800-53
EKS/ECS/Lambda
OPA/Conftest
Checkov
Trivy
Inspector
CodeQL
Azure Security Automation

Job Details

Senior DevSecOps Engineer / Full-Time / Hybrid / Mechanicsburg, PA

Become a member of a growing team of Information Technology professionals making an impact and providing solutions for Government and Commercial clients since 1996 Join the Domino Tech Team!

Accepting Candidates Until 10/02/2025 at 2:00pm

The Position:
Client: Commonwealth of Pennsylvania Public Safety Delivery Center (PSDC)
Position Title: PSDC - Senior DevSecOps Engineer TAS1 (777897)
Location: Hybrid; Remote Off-Site and On-Site in Mechanicsburg, PA
Duration: Initial term through 06/30/2026 (+ Annual Renewal in 1-Year Terms)

Note: Position is available to candidates nationwide, but candidate must be ready to relocate for this hybrid position (60% remote vs. 40% onsite). Candidate must go on-site on their first day to for onboarding; pick up commonwealth-issued equipment, possible badging, etc.

Note: This position requires an in-depth background check, including fingerprinting and requires successful results.

Public Safety Delivery Center (PSDC) requires the services of a Senior DevSecOps Engineer to act as consultant with the PSDC Solutions Management group.
Role summary;
- Hands-on security automation for AWS delivery. Build secure-by-default CDK constructs and CloudFormation templates, wire them into CI/CD, and enforce compliance checks that map to CJIS and NIST. Azure support is a future consideration, not a core day-one duty.
- Does not own enterprise AWS Organizations or SCP operations.
- Designs and builds reference guardrails and enforcement patterns that can be deployed by enterprise teams.
- Focuses on preventive controls and compliance automation, not incident response.
What you will deliver in the first 90 days;
- Pipeline security templates in GitHub Actions and Azure DevOps with SAST, SCA, IaC, container, and secret scanning gates.
- Compliance as code in reference accounts: AWS Config rules and Security Hub standards aligned to CJIS and NIST 800-53, with exceptions workflow documented.
- IaC reference modules using AWS CDK and CloudFormation for IAM least privilege, KMS, Secrets Manager, logging, and network baselines; Terraform equivalents provided where teams require them.
- Evidence exports tying checks to control IDs and producing auditor-ready artifacts.
Ongoing;
- Harden CDK/CFT modules and pipeline templates as compliance needs evolve.
- Coach pilot teams to adopt templates.
- Raise gaps to enterprise teams for org-level enforcement.
Day-to-day responsibilities;
- Author and maintain AWS CDK constructs and CloudFormation templates; provide Terraform versions as secondary.
- Implement AWS Config conformance, Security Hub standards, and GuardDuty routing in reference accounts.
- Wire scanning in CI/CD for app code, containers, and IaC.
- Create reusable GitHub/Azure DevOps templates with enforcement gates and exception handling.
- Generate posture and evidence reports mapped to CJIS and NIST controls.

The Skills and Experience:
- 5+ Years: AWS security automation and DevOps experience
- Strong with AWS CDK and CloudFormation; working proficiency in Terraform
- CI/CD authoring in GitHub Actions and Azure DevOps
- Proficient in Python and Bash, with PowerShell for Windows automation
- Able to read Java and C# to integrate and tune SAST/SCA
- Practical knowledge of CJIS and NIST 800-53 control families and how to automate checks and evidence
- EKS/ECS/Lambda hardening patterns
- OPA/Conftest, Checkov, Trivy, Inspector, CodeQL or equivalent
- Basic Azure security automation for future phases

The Company:
The mission of Domino Technologies, Inc. is to provide clients with IT solutions for their individual business processes that lead to strategic market advantages. Since its founding in 1996, the Domino Tech Team has built a solid record of performance working with clients in the Government and Commercial sectors.

The Perks:
- Excellent Market Salary
- Competitive Benefits
- Paid Holidays and Vacation
- Positive Work-Life Balance

The Location:
Domino Technologies is based in the Harrisburg area the capital city of the Commonwealth of Pennsylvania and the county seat of Dauphin County. Located on the east bank of the Susquehanna River, Harrisburg is the anchor of the Susquehanna Valley metropolitan area.

Contact Us Today!

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Domino Technologies