

DevSecOps Engineer
β - Featured Role | Apply direct with Data Freelance Hub
This role is for a DevSecOps Engineer based in Norfolk, VA, USA, with a contract from January 2026 to December 2030. Pay rate is unspecified. Key skills include containerization, CI/CD, Infrastructure as Code, and security compliance. A relevant degree and NATO Secret clearance are required.
π - Country
United States
π± - Currency
$ USD
-
π° - Day rate
-
ποΈ - Date discovered
September 30, 2025
π - Project duration
More than 6 months
-
ποΈ - Location type
On-site
-
π - Contract type
Unknown
-
π - Security clearance
Yes
-
π - Location detailed
Norfolk, VA
-
π§ - Skills detailed
#DevSecOps #Istio #Security #Infrastructure as Code (IaC) #Kubernetes #Monitoring #Jenkins #Docker #Automated Testing #AWS (Amazon Web Services) #Computer Science #IAM (Identity and Access Management) #Ansible #GitHub #Automation #Deployment #Observability #Pytest #Scala #API (Application Programming Interface) #Prometheus #Public Cloud #Grafana #"ETL (Extract #Transform #Load)" #Logging #Kanban #Strategy #VMware #Scrum #Azure #Vault #OpenStack #GitLab #Compliance #Agile #Terraform #Cloud
Role description
Spektrum have a wide range of exciting opportunities in several global locations.
We are always looking to add great new talent to our team and look forward to hearing from you.
Spektrum supports apex purchasers (NATO, UN, EU and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects.
Who We Are Supporting
Allied Command Transformation (ACT) is NATOβs leading agent for change: driving, facilitating, and advocating the continuous improvement of Alliance capabilities to maintain and enhance the military relevance and effectiveness of the Alliance. The main objectives of ACT are: providing appropriate support to NATO missions and operations; leading NATO military transformation; and improving relationships, interaction and practical cooperation with partners, nations and international organisations. ACT therefore leads Alliance concept development, capability development, training and lessons-learned initiatives and provides unfettered military support to policy development within NATO.
The program
Capability Development & Management Support (CDMS)
DCOS Capability Development (CAPDEV) acts as the Supreme Allied Commander Transformation's Director for guidance, direction and coordination of the activities and resources of the Capability Development Directorate.
The Requirements Division will execute all tasks and activities needed to support requirements management for NATO capabilities
The Capability Requirements (CR) Branch will develop the Capability Requirements Brief and recommended courses of action to resolve issues through the life cycle management of requirements using matrixed, cross-functional project-specific Requirements Management teams.
The Requirements Forward Branch (Mons) is responsible for conducting requirements development and management representation and engagement-related functions in Europe.
The Capability Division coordinates the development of capabilities from capability planning through acceptance and then disposal with management entities, NATO Headquarters staff and the NATO Governance Structure
The Capability Forward Branch (Mons) coordinates with ACO, NCIA, NSPA, NATO HQ, territorial Host Nations, and NATO Centres of Excellence (COEs) to support the development of capabilities.
Strategic Plans and Policy (SPP) supports Allied Command Transformation in formalizing military advice to shape future military strategy, political guidance, and other policy documents supporting NATOβs strategic objectives.
Role Duties And Responsibilities
β’ Deploy and operate containerized services using orchestration frameworks to ensure scalability and resilience.
β’ Automate infrastructure through Infrastructure as Code (IaC) to provide consistent and repeatable environments.
β’ Deploy and monitor workloads in cloud environments (AWS, Azure, Google Cloud, VMware, OpenStack).
β’ Implement site reliability engineering (SRE) and observability practices to ensure resilience, monitoring, logging, metrics, and distributed tracing.
β’ Support high-throughput and service-oriented architectures, ensuring resilient and scalable deployments.
β’ Deliver incremental capabilities in Agile and DevSecOps environments following frameworks such as Scrum, SAFe, or Kanban.
β’ Design and manage secure networking and service meshes (TLS, Istio, Linkerd, API gateways) to ensure encrypted and reliable service-to-service communication.
β’ Apply zero-trust principles and compliance automation to enforce security policies and validate system compliance.
β’ Manage identity and access using secure methods for secrets, tokens, certificates, and least-privilege access control.
Essential Skills And Experience
β’ Minimum 4 years of experience with containerization and orchestration (Docker, Kubernetes, OpenShift).
β’ Minimum 4 years of experience in designing and maintaining CI/CD pipelines with automated testing and security validation (Jenkins, GitLab, GitHub Actions, PyTest, Selenium, SAST/DAST).
β’ Experience with Infrastructure as Code (Terraform, Ansible, Helm, Pulumi).
β’ Experience deploying and securing workloads in hybrid/public cloud environments (AWS, Azure, Google Cloud, VMware, OpenStack).
β’ Experience implementing site reliability engineering and observability practices (Prometheus, Grafana, ELK/Loki, OpenTelemetry).
β’ Experience implementing scalable, resilient, high-throughput systems and serviceoriented architectures (SOA, distributed systems, performance tuning).
β’ Experience delivering capabilities in Agile/DevSecOps environments (Scrum, SAFe, Kanban).
β’ Experience designing and managing secure networking and service mesh (TLS, Istio, Linkerd, API gateways).
β’ Experience applying zero-trust principles and compliance automation (OPA, Kyverno, SBOM, CIS benchmarks).
β’ Experience managing secrets and access policies using modern IAM solutions (Vault, AWS KMS, Azure Key Vault, RBAC/ABAC).
Desirable Skills And Experience
β’ Experience in developing and adapting a DevSecOps platform to allow Agile and Innovative development in a NATO or National defense institution
Education
β’ Relevant Degree in Computer Science
Language Proficiency
β’ Advanced Proficiency in English
Working Location
β’ Norfolk, VA, USA
Working Policy
β’ On-Site
Contract Duration
β’ January 2026 β December 2030
Security Clearance
β’ Valid National or NATO Secret personal security clearance
We never know what new opportunities might be just over the horizon. If this opportunity isn't for you please feel free to send us your resume anyway and be the first to know if something suitable for your skills and experience comes up.
Spektrum have a wide range of exciting opportunities in several global locations.
We are always looking to add great new talent to our team and look forward to hearing from you.
Spektrum supports apex purchasers (NATO, UN, EU and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects.
Who We Are Supporting
Allied Command Transformation (ACT) is NATOβs leading agent for change: driving, facilitating, and advocating the continuous improvement of Alliance capabilities to maintain and enhance the military relevance and effectiveness of the Alliance. The main objectives of ACT are: providing appropriate support to NATO missions and operations; leading NATO military transformation; and improving relationships, interaction and practical cooperation with partners, nations and international organisations. ACT therefore leads Alliance concept development, capability development, training and lessons-learned initiatives and provides unfettered military support to policy development within NATO.
The program
Capability Development & Management Support (CDMS)
DCOS Capability Development (CAPDEV) acts as the Supreme Allied Commander Transformation's Director for guidance, direction and coordination of the activities and resources of the Capability Development Directorate.
The Requirements Division will execute all tasks and activities needed to support requirements management for NATO capabilities
The Capability Requirements (CR) Branch will develop the Capability Requirements Brief and recommended courses of action to resolve issues through the life cycle management of requirements using matrixed, cross-functional project-specific Requirements Management teams.
The Requirements Forward Branch (Mons) is responsible for conducting requirements development and management representation and engagement-related functions in Europe.
The Capability Division coordinates the development of capabilities from capability planning through acceptance and then disposal with management entities, NATO Headquarters staff and the NATO Governance Structure
The Capability Forward Branch (Mons) coordinates with ACO, NCIA, NSPA, NATO HQ, territorial Host Nations, and NATO Centres of Excellence (COEs) to support the development of capabilities.
Strategic Plans and Policy (SPP) supports Allied Command Transformation in formalizing military advice to shape future military strategy, political guidance, and other policy documents supporting NATOβs strategic objectives.
Role Duties And Responsibilities
β’ Deploy and operate containerized services using orchestration frameworks to ensure scalability and resilience.
β’ Automate infrastructure through Infrastructure as Code (IaC) to provide consistent and repeatable environments.
β’ Deploy and monitor workloads in cloud environments (AWS, Azure, Google Cloud, VMware, OpenStack).
β’ Implement site reliability engineering (SRE) and observability practices to ensure resilience, monitoring, logging, metrics, and distributed tracing.
β’ Support high-throughput and service-oriented architectures, ensuring resilient and scalable deployments.
β’ Deliver incremental capabilities in Agile and DevSecOps environments following frameworks such as Scrum, SAFe, or Kanban.
β’ Design and manage secure networking and service meshes (TLS, Istio, Linkerd, API gateways) to ensure encrypted and reliable service-to-service communication.
β’ Apply zero-trust principles and compliance automation to enforce security policies and validate system compliance.
β’ Manage identity and access using secure methods for secrets, tokens, certificates, and least-privilege access control.
Essential Skills And Experience
β’ Minimum 4 years of experience with containerization and orchestration (Docker, Kubernetes, OpenShift).
β’ Minimum 4 years of experience in designing and maintaining CI/CD pipelines with automated testing and security validation (Jenkins, GitLab, GitHub Actions, PyTest, Selenium, SAST/DAST).
β’ Experience with Infrastructure as Code (Terraform, Ansible, Helm, Pulumi).
β’ Experience deploying and securing workloads in hybrid/public cloud environments (AWS, Azure, Google Cloud, VMware, OpenStack).
β’ Experience implementing site reliability engineering and observability practices (Prometheus, Grafana, ELK/Loki, OpenTelemetry).
β’ Experience implementing scalable, resilient, high-throughput systems and serviceoriented architectures (SOA, distributed systems, performance tuning).
β’ Experience delivering capabilities in Agile/DevSecOps environments (Scrum, SAFe, Kanban).
β’ Experience designing and managing secure networking and service mesh (TLS, Istio, Linkerd, API gateways).
β’ Experience applying zero-trust principles and compliance automation (OPA, Kyverno, SBOM, CIS benchmarks).
β’ Experience managing secrets and access policies using modern IAM solutions (Vault, AWS KMS, Azure Key Vault, RBAC/ABAC).
Desirable Skills And Experience
β’ Experience in developing and adapting a DevSecOps platform to allow Agile and Innovative development in a NATO or National defense institution
Education
β’ Relevant Degree in Computer Science
Language Proficiency
β’ Advanced Proficiency in English
Working Location
β’ Norfolk, VA, USA
Working Policy
β’ On-Site
Contract Duration
β’ January 2026 β December 2030
Security Clearance
β’ Valid National or NATO Secret personal security clearance
We never know what new opportunities might be just over the horizon. If this opportunity isn't for you please feel free to send us your resume anyway and be the first to know if something suitable for your skills and experience comes up.