Full Time

Senior AWS DevSecOps Engineer - Pantheon Data LLC - Charlotte, NC

Pantheon Data LLC

Charlotte, NC
100K–150K a year
Posted 2 days ago

Company Overview

Pantheon Data (a Kenific Holding company) is a private, small business based in the Washington, DC, area. Pantheon Data was founded in 2011, initially providing acquisition and supply chain management services to the US Coast Guard. Our service offerings have grown in the past ten years, including infrastructure resiliency, contact center operations, information technology, software engineering, program management, strategic communications, engineering, and cybersecurity. We have also grown our customer base to include commercial clients. The company has used this experience to expand our service offerings to other agencies within the Department of Homeland Security (DHS), the Department of Defense (DoD), and other Federal Civilian Agencies.

Position Overview

Pantheon Data is seeking a Senior AWS DevSecOps Engineer to design and operate in a secure, cloud-native platforms within AWS GovCloud. This role focuses on supporting ML-enabled workloads and applications processing CUI, PII, and PHI. The candidate will automate gated security controls across CI/CD pipelines using GitHub Advanced Security (GHAS) or GitLab CI/CD and administrate production-grade Amazon EKS clusters via GitOps methodologies under strict federal compliance frameworks (NIST 800-53, FedRAMP, DoD SRG).

Responsibilities

Secure Infrastructure: Design hardened AWS GovCloud environments using Terraform, ensuring alignment with NIST 800-53 and FedRAMP baselines.Kubernetes & GitOps: Manage lifecycle, networking, and security for Amazon EKS clusters. Orchestrate deployments using Helm charts and GitOps tools (e.g., Argo CD or Flux) to ensure declarative state management.Secure CI/CD Engineering: Design and implement robust CI/CD pipelines using GitHub Actions or GitLab CI/CD. Integrate and configure GitHub Advanced Security (GHAS) and additional relevant tools, including CodeQL for SAST, secret scanning, and dependency review.ML Workload Support: Deploy and scale containerized ML mode