986,892open jobs
58,977companies
161,835added this week
Browse all
Salary
$149k – $201k per year
Location
Hybrid (United States)
Seniority
Senior

Confirmed on the employer's own hiring board on Sep 30, 2026. First seen by Alion on Sep 29, 2026. Defense Unicorns scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Defense Unicorns is a software technology firm headquartered in Colorado Springs, Colorado, and was established in 2021. The company provides the Unicorn Delivery Service platform, which facilitates the secure packaging and deployment of cloud-native applications to airgapped, edge, and cloud environments. It operates as a remote-first organization primarily serving the United States Department of Defense and national security agencies through open-source DevSecOps and compliance automation solutions.

DEFENSE UNICORNS

Senior DevSecOps Engineer 

Embedded Engineering | Secure Cloud-Native Platforms | AI Delivery

Role Description

Defense Unicorns is seeking a senior DevSecOps Engineer to embed with a government team and its technology partners building an emerging AI-powered engineering ecosystem.

This role sits at the intersection of platform engineering, cybersecurity, compliance, and software delivery. The engineer will help establish secure, automated, and repeatable pipelines that allow software, AI models, and agentic capabilities to move rapidly from development into operational environments while identifying cybersecurity and compliance risks early-before formal security testing.

The ideal candidate is a hands-on DevSecOps engineer with deep experience in Kubernetes, cloud infrastructure, CI/CD, NIST 800-53, and the RMF/ATO process. They should be comfortable working directly with government personnel and multiple commercial technology partners, troubleshooting across technical boundaries, and translating security requirements into practical engineering controls rather than treating compliance as a downstream gate.

This is an embedded engineering role-not a traditional security or compliance staff-augmentation position. The engineer will help the team move quickly, build security into the development lifecycle, and create repeatable patterns that can scale from the initial prototype environment into higher-classification operational environments.

Responsibilities

  • Design, implement, and continuously improve secure CI/CD and GitOps pipelines for cloud-native software, AI models, and agentic applications.
  • Work hands-on with Kubernetes and Red Hat OpenShift/OpenShift AI environments to automate secure build, test, promotion, deployment, and lifecycle workflows.
  • Translate NIST SP 800-53 controls and RMF requirements into practical engineering controls, policies, pipeline checks, and automated evidence collection.
  • Identify cybersecurity, compliance, configuration, and supply-chain risks early in the development lifecycle-before formal security testing or authorization activities.
  • Support the end-to-end ATO/RMF lifecycle, including control implementation, technical evidence generation, security artifacts, remediation tracking, and preparation for assessment.
  • Build and maintain automated security checks across source code, dependencies, container images, infrastructure, configurations, and deployment pipelines.
  • Implement software supply-chain security practices including SBOM generation, provenance, artifact signing, vulnerability scanning, policy enforcement, and controlled artifact promotion.
  • Develop Infrastructure as Code using Terraform, Pulumi, Ansible, or similar technologies to make environments consistent, auditable, and repeatable.
  • Configure and improve GitLab CI/CD pipelines, runners, registries, and automated workflows across multiple environments.
  • Integrate identity, secrets management, policy enforcement, logging, monitoring, and security tooling into the broader engineering platform.
  • Collaborate with platform, data, AI/agent, and architecture engineers to ensure security and compliance requirements are designed into the system rather than bolted on later.
  • Work directly with commercial technology partners to resolve cross-platform security, deployment, identity, networking, and integration issues.
  • Help establish repeatable approaches for promoting software and AI capabilities across security domains and into classified operational environments.
  • Develop security automation and compliance-as-code patterns that reduce manual effort and accelerate authorization decisions.
  • Create and maintain architecture decision records, security documentation, technical standards, runbooks, and implementation guidance.
  • Continuously identify recurring security and compliance work that can be standardized, automated, or productized rather than solved manually for each environment.
  • Operate effectively in a fast-moving, ambiguous environment where requirements and architecture will continue to evolve.

Travel / Onsite Expectations: Must be local to the National Capital Region and able to work onsite at the government campus in Springfield, VA as mission requirements evolve. The initial prototype environment may support a hybrid schedule, but the role should be prepared for increasing onsite and SCIF interaction as the effort transitions to higher-classification environments.

Minimum Experience and Qualifications

  • Active TS/SCI clearance.
  • Must reside in or be local to the National Capital Region with the ability to work onsite in Springfield, VA as required.
  • Deep hands-on experience with Kubernetes and containerized application environments.
  • Experience deploying and operating workloads on Red Hat OpenShift and/or enterprise Kubernetes platforms.
  • Strong experience with GitLab CI/CD or comparable software delivery platforms.
  • Strong working knowledge of NIST SP 800-53 and the Risk Management Framework (RMF).
  • Practical understanding of the government ATO process, including control implementation, security evidence, POA&M/remediation, assessment, and authorization activities.
  • Experience identifying and remediating security risks in software and infrastructure before formal security testing.
  • Experience developing and managing Infrastructure as Code using Terraform, Pulumi, Ansible, or similar technologies.
  • Strong experience with Helm, Kubernetes manifests, GitOps, and declarative configuration management.
  • Experience with cloud environments such as AWS, including networking, IAM, compute, storage, and Kubernetes services.
  • Strong Linux systems knowledge and ability to troubleshoot across application, container, Kubernetes, network, and infrastructure layers.
  • Experience with container security, vulnerability management, artifact repositories/registries, and software supply-chain controls.
  • Strong scripting or programming ability using Python, Go, Bash, or similar languages.
  • Ability to work directly with government personnel and multiple technology vendors to diagnose and resolve complex technical and security issues.
  • Ability to operate with significant autonomy and turn loosely defined mission objectives into working technical solutions.

Preferred Experience and Qualifications

  • Experience supporting production systems at Secret or TS/SCI classification levels.
  • Experience implementing NIST 800-53 controls in Kubernetes or cloud-native environments.
  • Experience with continuous authorization / continuous ATO (cATO) approaches and automated compliance evidence.
  • Experience with Red Hat OpenShift AI or similar enterprise AI platforms.
  • Experience with AI/ML infrastructure, model serving, GPU-enabled environments, MLOps, or agentic AI systems.
  • Experience securing AI/agent workloads, including model provenance, tool access, data access, guardrails, and policy enforcement.
  • Experience with GitOps tooling such as Flux or Argo CD.
  • Experience with security and compliance tools such as Kyverno, OPA/Gatekeeper, SonarQube, Trivy, Snyk, Anchore, or comparable technologies.
  • Experience with SBOM, SLSA/provenance, artifact signing, and software supply-chain security frameworks.
  • Experience with identity and access management platforms such as Keycloak or comparable enterprise IAM technologies.
  • Experience with observability and telemetry tooling such as Prometheus, Grafana, OpenTelemetry, ELK, or similar platforms.
  • Experience moving software, images, or artifacts across multiple security domains or into disconnected/air-gapped environments.
  • Familiarity with UDS, Zarf, Pepr, Iron Bank, or similar secure software delivery technologies.
  • Department of Defense or Intelligence Community experience working on an operational ATO’d system.
  • Experience working on multidisciplinary teams consisting of government engineers, FDEs, OEM professional services teams, and multiple technology vendors.
  • Demonstrated ability to turn security and compliance requirements into automated engineering patterns that can be reused across environments.

What Success Looks Like

The successful engineer makes security an accelerator rather than a gate. They help the team identify risk early, automate compliance and evidence wherever practical, keep the delivery pipeline moving, and establish secure patterns that can be reproduced as the environment scales from prototype to classified operations.

Full compensation packages are based on candidate experience. Compensation ranges are established using national benchmarking data and apply across all geographic locations within the United States. 

Remote - USA

$148,750—$201,250 USD

Who We Are

Defense Unicorns delivers mission value by streamlining software delivery so our customers can focus on the most important challenges. We share a vision of freedom and security for the advancement of progress and innovation. Our commitment to this vision, and to our mission-driven customers, means a commitment to speed, user experience and optionality, without compromising security. Our team is composed of innovators, software engineers, and veterans with decades of experience delivering technology programs across the federal market.

What We Do

We create and deliver secure solutions for continuous software integration and delivery. Defense Unicorns consolidates the best practices for security pipelines, testing, and deployment automation in order to meet the high security requirements valued by mission owners. Our solutions are agnostic by design and we believe that growing a robust ecosystem of secure, cloud-native software solutions can help enterprise customers inside and outside the federal market buy and integrate software more easily.

Who We Serve

Defense Unicorns’ customers are mission-focused leaders across public and private enterprises. We proudly support defense and civil agencies across the U.S. government and we work closely with the creators of leading-edge software solutions to deliver value to the mission-owner by improving the security and consumability of commercial software products.

What We Work On

  • Kubernetes
  • Cloud Environments (AWS/GCP and Azure)
  • Infrastructure-as-code (like Terraform/Pulumi)
  • Continuous Delivery and automation tooling
  • GitOps
  • Containers
  • CNCF projects and open source products and packages
  • Helm/Kustomize-Value Stream Mapping
  • Building and improving security delivery
  • Building Kubernetes and cloud native applications

Benefits Our Unicorns Enjoy

Health:

  • Medical/Dental/Vision
  • Premiums are 100% Company Paid
  • Health Savings Account
  • Life Insurance
  • Disability Insurance

Financial:

  • 401k Retirement Plan
  • Company Stock Options
  • Home Office Budget

Leave:

  • We offer all full-time Unicorns Flexible Time Off (FTO) plus all Federal Holidays, one week for Thanksgiving, and two weeks for Christmas and New Year’s
  • Paid Parental Leave

Learning:

  • Reimbursement for approved trainings/subscriptions
  • Conferences (travel, lodging, and fees)

Don’t have all the preferred experience or qualifications? Studies show that underrepresented groups like women and people of color are less likely to apply to jobs if they don't meet every requirement listed. 

At Defense Unicorns, we're committed to diversity. If you're enthusiastic about the role but don't match every criteria, we encourage you to apply. You could be the perfect fit for this or another role! Defense Unicorns is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

CCPA DISCLOSURE

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
986,892 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

DevOps
Similar stack
Same company
United States
$191k – $334k per year • Equity • In office • Full-Time • 8+ years exp • Bachelor's Degree • Mountain View
Databases
ElasticSearch
OpenSearch
AI/ML
Embeddings
Multimodal AI
AI Agents
RAG
Hybrid Search
Knowledge Graph
Recommender Systems
Management
ServiceNow
Apply
$91k – $114k per year • Hybrid • Full-Time • 5+ years exp • United States
DevOps
Linux
Unix
Cybersecurity
Zscaler
Zero Trust
Management
Agile
Apply
$105k – $131k per year • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • San Diego
PowerShell
DevOps
Windows
Cybersecurity
CVE
Microsoft Entra ID
Management
OneDrive
SharePoint
ITIL
Apply
$70k – $90k per year • Equity • In office • Full-Time • 3+ years exp • Bachelor's Degree • San Diego
Apply
$120k – $145k per year • Equity • In office • Full-Time • 5+ years exp • San Diego
Python
Bash
DevOps
Puppet
VMWare
Configuration Management
Incident Management
Linux
Unix
TCP/IP
DNS
Management
ServiceNow
ITIL
ITSM
Apply
≈ $95k – $219k per year (Estimated) • In office • Full-Time • Austin
Python
TypeScript
Databases
PostgreSQL
AI/ML
Cursor
LangGraph
Windsurf
Aider
LangChain
Claude Code
Model Context Protocol
LangSmith
CrewAI
LLM
RAG
Braintrust
OpenAI Codex
Structured Outputs
Voice Agents
Prompt Caching
Tool Use
Mastra
DevOps
GCP
AWS
GitHub
Apply
$72k – $94k per year (gross) • In office • 5+ years exp • Bachelor's Degree • Ireland
Python
Apply
≈ $48k – $93k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Chicago
Python
Management
Monday.com
Outlook
Microsoft Office
Apply
≈ $50k – $97k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Chicago
Python
Analytics
Microsoft Excel
Apply
≈ $136k – $243k per year (Estimated) • Remote (United States) • Full-Time • Bachelor's Degree • Dallas
Python
SQL
Python
pySpark
AI/ML
Spark
Machine Learning
Apply
≈ $127k – $276k per year (Estimated) • Equity • In office • TS/SCI • United States
Python
AI/ML
LangGraph
LangChain
LlamaIndex
Model Context Protocol
Embeddings
Prompt Engineering
Function Calling
AI Agents
Semantic Kernel
LLM
RAG
NVIDIA NIM
OpenAI
Anthropic
NVIDIA NeMo
Human-in-the-Loop
Structured Outputs
Knowledge Graph
LLM Guardrails
Agentic Workflows
Multi-Agent Systems
DevOps
Terraform
GCP
OpenShift
Helm
Kustomize
Pulumi
Azure
CI/CD
GitOps
Git
AWS
Kubernetes
GitLab
Management
Confluence
Jira
Apply
$149k – $201k per year • Equity • Remote (United States) • TS/SCI
Python
DevOps
Terraform
GCP
Helm
GitHub Actions
Kustomize
Pulumi
GitLab CI
Azure
CI/CD
GitOps
AWS
Docker
Kubernetes
Platform Engineering
GitHub
GitLab
Management
Agile
Apply
Platform Engineer 27 days ago
≈ $103k – $230k per year (Estimated) • Equity • Remote (United States) • Secret
Python
DevOps
Terraform
Ansible
GCP
Helm
Kustomize
Pulumi
Azure
CI/CD
GitOps
AWS
Docker
Kubernetes
Management
Agile
Apply
Platform Engineer 29 days ago
$123k – $167k per year • Equity • Remote (United States)
DevOps
Terraform
GCP
Helm
Kustomize
Pulumi
GitLab CI
Azure
CI/CD
GitOps
AWS
Kubernetes
Amazon EKS
Amazon EC2
Amazon S3
IAM
Linux
Unix
Apply
Platform Engineer 2 months ago
$123k – $167k per year • Equity • In office • Top Secret • San Antonio
DevOps
Terraform
GCP
Helm
Kustomize
Pulumi
GitLab CI
Azure
CI/CD
GitOps
AWS
Kubernetes
Amazon EKS
Amazon EC2
Amazon S3
IAM
Linux
Unix
Apply
$123k – $202k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • United States
DevOps
GCP
Azure
AWS
FinOps
SLI/SLO/SLA
Cybersecurity
Zero Trust
Least Privilege
Management
ITIL
Service Desk
Apply
≈ $75k – $162k per year (Estimated) • Remote (United States) • 3+ years exp • United States
Apply
≈ $40k – $72k per year (Estimated) • In office • Full-Time • 2+ years exp • Associate's Degree • United States
Apply
≈ $41k – $72k per year (Estimated) • In office • Full-Time • 1+ year exp • United States
Apply
≈ $41k – $94k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • United States
Cybersecurity
HIPAA
Apply
See all jobs
This is one of many
986,892 more open roles from verified company boards, updated every day.