What are the responsibilities and job description for the Lead Cloud Platform / DevSecOps Engineer position at Pioneering Evolution LLC?
POSITION DESCRIPTION:
The Lead Cloud Platform / DevSecOps Engineer is a senior technical leader responsible for designing, implementing, securing, and maintaining cloud infrastructure and delivery pipelines in Microsoft Azure, with a primary focus on Azure Government environments. This role is intended to fill a critical gap in Azure platform expertise and will serve as a key resource in establishing and sustaining secure, scalable, and compliant cloud foundations for federal systems.
The ideal candidate brings broad, hands-on Azure experience, including Azure Landing Zones, preferably Mission Landing Zone, Azure Kubernetes Service (AKS), and infrastructure deployed in Azure Government with an understanding of IL4/IL5 compliance considerations. This individual will lead the ongoing maintenance and improvement of infrastructure-as-code, cloud configuration, deployment automation, and CI/CD pipelines, while integrating code scanning and automated testing throughout the delivery lifecycle.
This role works closely with software engineers, architects, cybersecurity stakeholders, and program leadership to ensure cloud environments are reliable, compliant, and built for operational success in regulated government environments. The successful candidate will combine strong technical depth with sound engineering judgment and the ability to establish repeatable, secure cloud delivery practices across teams.
U.S. Citizenship and an active Secret clearance are required. This is a hybrid, full-time position with an onsite requirement of three days per week at our Crystal City headquarters.
Key Responsibilities:
Azure Cloud Architecture & Platform Engineering
- Design, implement, and maintain Azure cloud environments, with strong emphasis on Azure Government.
- Support and evolve Azure Landing Zone architectures, preferably Mission Landing Zone.
- Build, configure, and manage Azure Kubernetes Service (AKS) environments and supporting Azure services.
- Ensure cloud environments are secure, scalable, supportable, and aligned with mission and compliance requirements.
Infrastructure as Code & Deployment Automation
- Develop, maintain, and enhance Infrastructure as Code using Bicep.
- Manage cloud configuration, environment provisioning, and deployment automation across development, test, and production environments.
- Standardize infrastructure deployments to improve consistency, security, and maintainability.
- Support release engineering practices that enable reliable and repeatable application and infrastructure delivery.
CI/CD, Security Integration & Quality Engineering
- Build, maintain, and improve CI/CD pipelines supporting infrastructure and application delivery.
- Integrate code scanning, dependency scanning, and automated testing into CI/CD workflows.
- Strengthen DevSecOps practices by embedding security and quality controls throughout the software delivery lifecycle.
- Improve deployment reliability, traceability, and governance through automation and policy-driven processes.
Compliance, Security & Operational Excellence
- Engineer and maintain solutions with a compliance-focused mindset appropriate for Azure Government and IL4/IL5 environments.
- Partner with engineering and security teams to implement secure configurations, logging, monitoring, and access controls.
- Support audit readiness by ensuring infrastructure, deployments, and pipeline activities are well-documented, reproducible, and aligned with required controls.
- Contribute to platform hardening, cloud governance, and operational best practices.
Collaboration & Technical Leadership
- Serve as a subject matter expert in Azure platform engineering and DevSecOps practices.
- Collaborate with developers, architects, and program leadership to define and implement cloud platform standards.
- Mentor team members on Azure infrastructure, automation, deployment pipelines, and secure cloud delivery practices.
- Help drive engineering consistency and maturity across cloud-hosted environments.
REQUIRED EXPERIENCE:
- 7 years of experience in cloud engineering, platform engineering, DevSecOps, or closely related technical roles.
- Broad, hands-on experience working across Microsoft Azure services and cloud platform operations.
- Direct experience with Azure Landing Zones; Mission Landing Zone experience preferred.
- Strong experience with Azure Kubernetes Service (AKS).
- Experience deploying and managing solutions in Azure Government.
- Understanding of cloud engineering and security requirements associated with IL4/IL5 environments.
- Strong experience maintaining Infrastructure as Code using Bicep.
- Experience managing cloud configuration, deployments, and CI/CD pipelines.
- Experience integrating code scanning and automated testing into CI/CD workflows.
- Strong understanding of Azure networking fundamentals, including Network Security Groups, route tables, and hub-and-spoke architectures.
- IAT Level II certification required.
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent practical experience.
- U.S. Citizenship and active Secret clearance required.
DESIRED EXPERIENCE:
- IAT Level III certification.
- Experience with Mission Landing Zone implementations.
- Experience with Azure Log Analytics and cloud observability practices.
- Experience with Azure Database for PostgreSQL Flexible Server.
- Experience supporting containerized platforms and associated tooling in Azure.
- Experience managing AWS GovCloud environments.
- Familiarity with security tooling, policy enforcement, and compliance automation in regulated cloud environments.
- Experience supporting federal or DoD cloud modernization efforts.
WHO WE ARE AND WHAT WE OFFER:
In addition to competitive salaries and opportunities for professional development and advancement, our employees enjoy a comprehensive range of benefits. To keep pace with the changing needs of our employees, we continually evaluate benefit plans.
- Paid time off
- 10 paid holidays
- Medical insurance
- Dental insurance
- Vision insurance
- Legal assistance
- Company-paid life insurance and AD&D
- Company-paid long term and short-term disability insurance
- Tuition reimbursement
- 401(k) plan with company contribution
- Continuing Education Opportunities