Mid-level Cloud Devops Developer

Boeing Boeing · Aerospace · Hazelwood, MO +1

This role focuses on designing, developing, and maintaining cloud infrastructure (Azure) and services using DevOps practices, Infrastructure as Code, and Configuration as Code. It involves collaboration with cybersecurity teams and ensuring alignment with security requirements and compliance standards like Risk Management Framework. The role is primarily engineering-focused within an enterprise context, but not directly AI/ML model development.

What you'd actually do

  1. Contribute to the design, development, testing, deployment, configuration, and maintenance of infrastructure, software, and components in Azure Cloud, ensuring alignment with best practices and organizational goals
  2. Collaborate with Enterprise Cloud Architects, and Cybersecurity compliance teams
  3. Implement Infrastructure as Code (IaC) and Configuration as Code (CaC)
  4. Implement and operationalize Policy-as-Code using tools such as Azure Policy, OPA/Gatekeeper, and Rego
  5. Support the alignment of use cases and objectives with architectural standards and security requirements, collaborating with team members to ensure compliance throughout the project lifecycle

Skills

Required

  • Bachelor's degree or higher
  • 3+ years of experience in designing, building, and operating cloud infrastructure and services with Azure or Amazon Web Services
  • 3+ years of experience writing and implementing Infrastructure as Code (IaC) with Bicep, ARM, or Terraform
  • 3+ years of experience writing and implementing Configuration as Code (CaC) with Ansible, Python, or Bourne Again Shell
  • 3+ years of experience with containerization and Kubernetes (e.g., Elastic Kubernetes Service, Azure Kubernetes Service)

Nice to have

  • Active US Secret Clearance
  • Active CompTIA Security+ Certification
  • Experience with Policy As Code (PaC) (Azure Policy, Open Policy Agent (OPA)/Gatekeeper, Rego, or equivalent)
  • Experience working with security frameworks and standards such as Risk Management Framework (RMF), National Institute of Standards and Technology (NIST), Cloud Computing Security Requirements Guide (CC SRG) , Federal Risk and Authorization Management Program (FedRAMP), and Security Technical Implementation Guide (STIG)
  • Experience designing, building, and operating Continuous Integration/Continuous Deployment (CI/CD) pipelines (e.g., GitLab, Artifactory, Azure DevOps, Jenkins)
  • Experience in the designing, building or operating of any of the following security and compliance tools including RSA Authentication Manager/SecurID, Nessus, Coverity, SonarQube
  • Experience with Linux and Windows Administration
  • Experience with Scaled Agile Framework (SAFe) or Agile Methodologies

What the JD emphasized

  • Azure Cloud
  • Infrastructure as Code (IaC)
  • Configuration as Code (CaC)
  • Policy-as-Code
  • Azure Policy
  • OPA/Gatekeeper
  • Rego
  • Risk Management Framework (RMF)
  • NIST
  • CC SRG
  • FedRAMP
  • STIG