DevOps Lead/Architect
Fully Remote • Remote, MD
Job Type
Full-time
Description

Position Details: 

Job Title: DevOps Lead/Architect 

Job Type: Full-time 

Location: Remote 

Dynanet Corporation Overview: 

Dynanet started with a focus on IT infrastructure and operations, helping organizations enhance their networks and overcome the limitations of 1990s technology. From strengthening communication channels to introducing innovative ways to collaborate and share information, Dynanet played a crucial role in shaping the early stages of digital transformation. The company’s efforts helped organizations build the very fabric of connectivity that now powers our modern world. Over the last three decades, Dynanet has grown into a trusted partner for organizations looking to innovate boldly and transform seamlessly. While technology continues to evolve and unlock new opportunities, for nearly 30 years, Dynanet remains committed to delivering cutting-edge solutions that drive lasting change for its customers. Through agility, foresight, and an unwavering dedication to excellence, Dynanet continues to empower organizations to thrive in a rapidly changing digital landscape. Our story is more than just a story of technology – it’s a story of vision, growth, and transformation that has shaped the past and continues to pave the way for the future. 

About the Role: 

Dynanet is seeking a DevOps Lead / Architect to serve as designated Key Personnel on an upcoming federal health agency program providing enterprise DevSecOps platform services. 

This role owns the technical architecture and security posture of an enterprise DevSecOps platform estate - artifact repository and binary analysis, test case management, dashboarding and visualization, static code analysis, and managed performance testing - along with the supporting AWS infrastructure, operated across separate accounts spanning development, test, implementation, and production environments. 

The position carries architectural authority and compliance accountability. You will maintain continuous Authority to Operate for the platform boundary, define the Infrastructure as Code and observability standards the platform runs on, and serve as the technical interface to the client's information system security officer and to the independent quality assurance contractor. 

Roles & Responsibilities: 

  • Own the architecture of all managed DevSecOps platforms, establishing a uniform operating pattern for provisioning, identity, backup and restore, observability, and security across every managed tool. 
  • Define and maintain the Infrastructure as Code standard using Terraform, including a versioned, peer-reviewed module catalog designed for consumption by delivery teams, with drift detection and remediation. 
  • Implement policy-as-code preventive controls on infrastructure and Kubernetes manifests, and apply GitOps workflows for declarative environment management of Kubernetes-based services. 
  • Maintain continuous Authority to Operate for the platform boundary by inheriting and sustaining the existing security posture, maintaining security documentation in the client's designated compliance repository and supporting automated compliance narrative and inventory generation. 
  • Implement compliance-as-code and documentation-as-code practices so that control evidence, scan results, configuration baselines, and software bills of materials are produced continuously by the pipeline rather than assembled ahead of assessment. 
  • Support automated security control assessment processes, security impact analyses, and penetration testing, maintaining the system security plan, risk assessment, contingency plan, and plan of action and milestones on the cadence the client directs. 
  • Operate and maintain the artifact repository and binary analysis platform, including project-level repository segregation, retention and quota policy, scan policies and watches aligned to OWASP, CVE, and CWE frameworks, and remediation workflows with SLA tracking. 
  • Define the observability architecture spanning application performance monitoring, centralized log aggregation, OpenTelemetry instrumentation, and a metrics and dashboarding layer serving as the correlation and reporting surface. 
  • Establish Site Reliability Engineering practice across the platform estate, including service level indicators and objectives, error budgets that govern release velocity, toil reduction, and capacity planning tied to SLOs. 
  • Design and maintain the disaster recovery playbook including failover and failback procedures, automated recovery drills, and documented and validated recovery time and recovery point objectives. 
  • Implement Zero Trust alignment across the platform estate, including network segmentation, identity-aware access, least-privilege role design, and secrets management with rotation through AWS Secrets Manager, Parameter Store, or equivalent. 
  • Lead FinOps and cost optimization practice, including tagging standards, rightsizing, discounted pricing coverage, non-production auto-scheduling, anomaly detection, and recurring cost reporting by service, workload, environment, and system boundary. 
  • Maintain architecture documentation as code, including architecture decision records, C4 model diagrams, and API contracts in version control, and evaluate and recommend architecture visualization tooling. 
  • Serve as the technical interface to the independent quality assurance contractor under the applicable joint operating agreement, providing timely access to platform configurations, environments, and documentation, and promptly sharing security findings with the client and its security officers. 
  • Participate in a 24x7x365 on-call rotation and lead quarterly resilience and security exercise events. 

Required Professional Skills: 

  • Deep AWS architecture experience in a multi-account environment, including VPC and network design, IAM boundary design, and account segmentation across environments. 
  • Expert-level Terraform experience, including modular design, state governance, remote backends, and drift detection at an organizational scale. 
  • Strong Kubernetes architecture experience, preferably AWS EKS, including workload design, Helm, and container security practice. 
  • Demonstrated ownership of security compliance for a federal system boundary, including maintaining or supporting an Authority to Operate and the associated documentation set. 
  • Hands-on experience with artifact management and binary analysis platforms, preferably JFrog Artifactory and Xray. 
  • Practical observability architecture experience across metrics, logs, and traces, including OpenTelemetry and at least one enterprise application performance monitoring platform. 
  • Demonstrated Site Reliability Engineering practice, including defining service level indicators and objectives and operating against error budgets. 
  • Experience designing and testing disaster recovery and backup strategies with validated recovery time and recovery point objectives. 
  • Experience with cloud cost optimization practice, including tagging governance, rightsizing, and utilization-driven decision making. 

Preferred Professional Skills: 

  • Prior architecture ownership within a federal health environment. 
  • Familiarity with agency compliance documentation repositories, automated inventory tooling, and federal security control baselines. 
  • Experience with compliance automation frameworks such as InSpec, OSCAL-based control authoring, or continuous controls monitoring. 
  • Familiarity with NIST SP 800-218 (SSDF), NIST SP 800-53, and Zero Trust reference architecture under OMB M-22-09. 
  • Experience with policy-as-code tooling including Open Policy Agent and Conftest. 
  • Experience operating Grafana, Prometheus, SonarQube, TestRail, or Apache JMeter as managed enterprise services. 
  • Relevant certifications such as AWS Certified Solutions Architect - Professional, Certified Kubernetes Administrator, CISSP, or HashiCorp Certified: Terraform Associate. 

Dynanet Team Requirements and Expectations: 

  • Possess Strong written and verbal communication skills. 
  • Highly organized with the ability to prioritize, balance, and effectively advance multiple competing priorities in a high-volume, fast-paced environment. 
  • Ability to interact in a professional and collaborative manner with fellow Dynanet Teammates and the clients, and business partners that we work with. 
  • Ability and desire to challenge and educate yourself to support and advance IT services delivery in the Federal agencies we serve. 
  • Excellent judgment and creative problem-solving skills. 
  • Respond to team member and client requests via email, MS teams, or other communication means during core business hours. 
  • Active listening skills to understand clients' needs, and collaboration skills to work with other developers and designers. 

Education/Experience Requirements: 

  • Bachelor's degree in Computer Science, Engineering, Information Systems, or a related technical discipline. Additional directly relevant experience may be considered in lieu of a degree. 
  • Minimum of ten (10) years of infrastructure, DevOps, or cloud engineering experience, including at least four (4) years in an architecture or technical lead capacity. 
  • Minimum of three (3) years supporting federal systems subject to FISMA and Authority to Operate requirements. 
  • Candidates must be able to provide a resume suitable for submission as designated Key Personnel. 

Employee Benefits Overview: 

  • Industry Competitive Compensation 
  • Medical and Dental Insurance 
  • Paid Time Off/Holidays 
  • 401(k) Retirement Plans with Matching 
  • Remote Work* 
  • Paid Training 
  • Employee Referral Program 
  • Employee Development Program?