Skip to main content
Draper

Senior DevSecOps Engineer

1w

Draper

Cambridge, US · Full-time · $82,300 – $220,000

About this role

Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. With 2,000+ employees, it tackles national challenges in military defense, space exploration, and biomedical engineering. The Senior DevSecOps Engineer designs and operates secure, automated CI/CD pipelines using GitLab for mission-critical embedded and flight software.

Enables reproducible builds, integrated security controls, and compliant delivery in constrained, air-gapped environments. Partners with software, systems, and cybersecurity teams to standardize toolchains and enforce policy-as-code. Meets defense standards like DO-178C, NIST 800-53, RMF, and STIGs.

Works in a collaborative multidisciplinary environment that inspires cross-fertilization of ideas for innovation. Independently executes tasks, communicates with customers and stakeholders, and drives solutions to complex problems. Contributes to system architecture and leads sub-system architecture.

Identifies technical risks, develops mitigation strategies, and provides insights based on quantitative data. Actively mentors less experienced staff and leads small teams of software developers. Requires ability to obtain government security clearance, with Secret preferred.

Requirements

  • Proficiency in GitLab (pipelines, runners, package registry), scripting (Python, Bash), and systems languages (C/C++)
  • Experience in cross-compilation (GCC/Clang, Yocto, Buildroot) and RTOS platforms (VxWorks, FreeRTOS, Zephyr)
  • Containerization (Docker/Podman), Kubernetes, infrastructure-as-code (Terraform, Ansible)
  • Software supply chain security (SAST/DAST/SCA tools, SBOMs, artifact signing)
  • Familiarity with Linux hardening, FIPS environments, PKI/TLS, and delivery to classified or disconnected systems
  • Curiosity-driven approach to solving complex, customer-driven problems as part of a multi-disciplinary team
  • 5-10 years experience in Software Engineering or related field
  • Ability to obtain and maintain a government security clearance (Secret preferred)

Responsibilities

  • Design and operate secure, automated CI/CD pipelines using GitLab CI/CD for mission-critical embedded and flight software systems
  • Partner with software, systems, and cybersecurity teams to standardize toolchains and enforce policy-as-code
  • Independently execute task assignments
  • Design algorithms using modern theory and proven techniques while adhering to software best practices
  • Analyze designs to demonstrate performance and functionality
  • Develop and execute software tests to check compliance with requirements
  • Prepare technical data, procedures, reports, drawings, manuals, and other required documentation
  • Lead a small team of software developers on projects and actively mentor less experienced staff

Benefits

  • Tackle important national challenges in military defense, space exploration, and biomedical engineering
  • Work in a collaborative environment that inspires cross-fertilization of ideas for true innovation
  • Deliver successful and usable solutions where lives often depend on the outcomes