Find your next role
Strengthen your profile
DSFederal
IT Services & IT Consulting
See how your profile stacks up against this role.
We compared the job requirements to your profile to show where you're strong and where you fall short.
The DevOps Engineer is a specialized cloud and DevSecOps engineer responsible for building, automating, and maintaining the cloud infrastructure, CI/CD pipelines, container registries, and automated quality gates. This position plays a central role in modernizing the National Water Prediction Service (NWPS), supporting automated deployments for new features such as NOAA Atlas 15 precipitation frequency tools, expanded Flood Inundation Mapping (FIM), and Quantitative Precipitation Estimate (QPE) processing pipelines.
Operating within the NWS Enterprise Cloud (NEC) Amazon Web Services (AWS) environment, the DevOps Engineer utilizes Terraform Infrastructure as Code (IaC), Docker containerization, and AWS serverless/Fargate orchestration to maintain cloud-agnostic, reproducible environments. This role automates static code analysis, vulnerability scanning, and testing harnesses to enforce strict security standards, manages the publicly accessible containerized NWPS 'sandbox' environment for community contributions, and supports seamless release promotions through the NOAA Change Control Board (CCB) process.
Requirements • CI/CD Pipeline Automation & Maintenance: Design, implement, and maintain vendor-agnostic CI/CD pipelines in VLab GitLab and GitHub Actions for automated building, testing, security scanning, and deployment of microservices across development, staging (UAT), and production environments.• Infrastructure as Code (IaC): Develop, refactor, and maintain modular Terraform configurations to manage AWS cloud resources (AWS Fargate/ECS, Amazon Aurora PostgreSQL, S3, Lambda, API Gateway, CloudWatch, IAM roles), eliminating configuration drift and supporting cloud-agnostic deployment patterns.• Automated Quality Gates & Security Scanning: Integrate continuous security and quality tools into pipelines including static code analysis, container image vulnerability scanners, dependency checks (Dependabot, AddressSanitizer, Ruff, Flake8, Black) ensuring 0 medium/high static linting errors and enforcing the mandatory =80% statement test coverage threshold before code merge.• Public Sandbox & Community Contribution Support: Maintain a containerized, sanitized 'sandbox' version of the NWPS environment using standardized 'canned' datasets and Docker manifests, allowing external researchers and community contributors to test code without exposure to sensitive credentials or live production feeds.• Cloud Cost Optimization & Performance Tuning: Monitor cloud resource utilization and compute/storage costs using AWS CloudWatch, optimizing auto-scaling parameters, S3 storage lifecycle policies, and Fargate compute allocations.• Release & Change Control Support: Support the execution of automated zero-downtime releases, manage protected branch deployment rules, prepare technical release artifacts, and assist technical leads during NOAA Change Control Board (CCB) deployment reviews.• Environment Provisioning & Identity Management: Administer least-privilege Identity and Access Management (IAM) policies, automate credential rotation via AWS Secrets Manager, and maintain user access matrices across development, staging, and production environments.After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.
Marcus Rivera
Chief Revenue Officer

Supabase

NR Consulting

CareMetx, LLC

Stellartech Research Corporation

Black Pearl Consult

DSFederal

DSFederal

DSFederal