Mid-level Cloud Devops Developer

Boeing Boeing · Aerospace · Hazelwood, MO

This role focuses on designing, developing, and maintaining infrastructure and software in Azure Cloud, with a strong emphasis on Infrastructure as Code (IaC), Configuration as Code (CaC), and Policy as Code. It involves collaboration with cybersecurity and compliance teams, and experience with containerization and Kubernetes is required. While the role operates within a cloud platform team that enables classified cloud platforms, it does not directly involve building or researching AI/ML models.

What you'd actually do

  1. Contribute to the design, development, testing, deployment, configuration, and maintenance of infrastructure, software, and components in Azure Cloud, ensuring alignment with best practices and organizational goals
  2. Collaborate with Enterprise Cloud Architects, and Cybersecurity compliance teams
  3. Implement Infrastructure as Code (IaC) and Configuration as Code (CaC)
  4. Implement and operationalize Policy-as-Code using tools such as Azure Policy, OPA/Gatekeeper, and Rego
  5. Support the alignment of use cases and objectives with architectural standards and security requirements, collaborating with team members to ensure compliance throughout the project lifecycle

Skills

Required

  • Bachelor's degree or higher
  • 3+ years of experience in designing, building, and operating cloud infrastructure and services with Azure or Amazon Web Services
  • 3+ years of experience writing and implementing Infrastructure as Code (IaC) with Bicep, ARM, or Terraform
  • 3+ years of experience writing and implementing Configuration as Code (CaC) with Ansible, Python, or Bourne Again Shell
  • 3+ years of experience with containerization and Kubernetes (e.g., Elastic Kubernetes Service, Azure Kubernetes Service)

Nice to have

  • Active US Secret Clearance
  • Active CompTIA Security+ Certification
  • Experience with Policy As Code (PaC) (Azure Policy, Open Policy Agent (OPA)/Gatekeeper, Rego, or equivalent)
  • Experience working with security frameworks and standards such as Risk Management Framework (RMF), National Institute of Standards and Technology (NIST), Cloud Computing Security Requirements Guide (CC SRG) , Federal Risk and Authorization Management Program (FedRAMP), and Security Technical Implementation Guide (STIG)
  • Experience designing, building, and operating Continuous Integration/Continuous Deployment (CI/CD) pipelines (e.g., GitLab, Artifactory, Azure DevOps, Jenkins)
  • Experience in the designing, building or operating of any of the following security and compliance tools including RSA Authentication Manager/SecurID, Nessus, Coverity, SonarQube
  • Experience with Linux and Windows Administration
  • Experience with Scaled Agile Framework (SAFe) or Agile Methodologies

What the JD emphasized

  • Azure Cloud
  • Infrastructure as Code (IaC)
  • Configuration as Code (CaC)
  • Policy-as-Code
  • Risk Management Framework (RMF)
  • NIST
  • CC SRG
  • FedRAMP
  • STIG