Back to jobs
New

Principal DevSecOps Engineer

Colorado Springs

About the Role 

Bluestaq is seeking a Principal DevSecOps Engineer to lead the evolution of our delivery platforms across mission-critical environments. This individual contributor role is focused on platform ownership, architecture, and cross-team enablement, shaping how software moves from development to production across programs, environments, and customers. You will define and mature the standards, automation, and platform capabilities that enable teams to ship secure, reliable software at speed while meeting compliance and operational requirements. 

Operating with a high degree of autonomy and influence, you will partner closely with engineering leadership, cybersecurity, systems, and program teams to align platform direction with mission needs. You will drive multi-quarter initiatives that improve scalability, resilience, and developer experience, while mentoring senior engineers and helping raise the bar for DevSecOps practices across the organization. 

 

Responsibilities  

Platform Ownership & Architecture 

  • Serve as the technical owner for DevSecOps platforms across a major product ecosystem, mission area, or environment set. 
  • Define and evolve reference architectures for CI/CD, Kubernetes, GitOps, infrastructure-as-code, secrets management, monitoring, and incident response. 
  • Drive platform design decisions balancing speed, cost, reliability, and security in mission and production environments. 
  • Establish reusable platform patterns, standards, and “golden paths” that enable consistent adoption across teams. 

Delivery Platforms & Automation 

  • Lead multi-quarter DevSecOps initiatives such as pipeline modernization, Kubernetes platform standardization, GitOps adoption, and environment strategy evolution. 
  • Reduce manual deployment and operational toil through automation and shared platform capabilities. 
  • Ensure delivery workflows scale across environments, programs, and teams without introducing fragility. 

 

Security & Compliance Integration 

  • Embed security controls, policy enforcement, and compliance automation directly into delivery pipelines and platform tooling. 
  • Partner with cybersecurity and compliance stakeholders to support ATO/C-ATO and other regulated delivery environments. 
  • Define secure baselines for containerization, infrastructure, identity, and platform operations. 

 

Cross-Team Influence & Enablement 

  • Partner with Engineering Managers, Architects, Cyber, Systems, IT, and Program teams to align platform capabilities with mission needs. 
  • Shape standards for how teams build, deploy, and operate software across environments. 
  • Coach and mentor Staff and Senior DevSecOps engineers; elevate engineering practices across teams. 
  • Act as a trusted technical authority for complex DevSecOps and platform decisions. 

 

Reliability & Operational Excellence 

  • Drive improvements in platform resilience, observability, and incident response. 
  • Lead root-cause analysis and systemic improvements following platform failures. 
  • Ensure delivery platforms are secure, debuggable, and production-ready—not just functional. 

 

Required Qualifications 

  • Deep experience designing and operating cloud-native delivery platforms at scale. 
  • Demonstrated ownership of DevSecOps architecture across multiple teams, services, or environments. 
  • Advanced expertise in Kubernetes platform design and containerized workloads. 
  • Strong experience with CI/CD pipeline architecture, automation, and delivery workflows. 
  • Experience implementing infrastructure-as-code (Terraform or equivalent) in production environments. 
  • Experience implementing configuration-as-code with Ansible. 
  • Proven ability to embed security, policy enforcement, and compliance requirements into automated delivery pipelines. 
  • Experience operating in regulated, mission-critical, or high-security environments. 
  • Demonstrated ability to lead large technical initiatives without formal authority. 
  • Strong cross-functional collaboration skills across engineering, cyber, infrastructure, and program teams. 
  • Excellent communication skills; able to translate complex platform strategy into actionable technical direction. 

 

Preferred Qualifications 

  • Experience designing and operating multi-tenant, multi-environment, or hybrid cloud platforms. 
  • Experience supporting DoD, FedRAMP, or other compliance-driven delivery environments. 
  • Background implementing GitOps workflows and environment management strategies. 
  • Experience defining platform standards adopted across multiple teams or programs. 
  • Expertise in observability systems, incident response models, and SLO-driven operations. 
  • Experience mentoring and developing DevSecOps engineers at Senior or Staff levels. 
  • Familiarity with secrets management, policy-as-code, and secure supply chain practices. 
  • Exposure to large-scale modernization, platform migrations, or enterprise DevSecOps transformations. 

 

Required Education & Experience 

  • High School Diploma/GED and 16+ years of relevant experience, OR 
  • Associate degree in a related field and 14+ years of relevant experience, OR 
  • Bachelor’s degree in Computer Science, Engineering, or related field and 12+ years of relevant experience, OR 
  • Master’s degree in a related field and 10+ years of relevant experience, OR 
  • PhD in a related field and 8+ years of relevant experience.  

Salary Range (CO)

$150,000 - $205,000 USD

Clearance Requirement: This position may require the ability to obtain a TS/SCI Clearance. To be eligible for a security clearance, U.S. citizenship is required, and an employee must agree to participate in a background screen and credit check. Eligibility for a TS/SCI Clearance will be assessed as part of the onboarding process or based on programmatic needs.


About Bluestaq
At Bluestaq, we build secure data platforms that matter for space missions, national defense, healthcare systems, and commercial innovation. Founded in 2018, we've become a leader in enterprise software and secure data management by staying focused on what counts: modern architecture, operational excellence, and mission impact.

We're engineers, problem-solvers, and builders who take the mission seriously, but not ourselves. We automate the repeatable, question the status quo, and design systems that are as reliable as they are scalable. Whether we're supporting space, defense systems, or healthcare advancements, we build with the same principles: cloud-native solutions, security by design, and relentless simplicity.


Relocation: This position does not offer relocation. Candidates must live in the immediate area or relocate at their own expense.

Date the Position Closes: Applications will be accepted for 60 days beyond the posting date, or until the position is filled, whichever comes first.

Bluestaq is an Equal Opportunity Employer. We prohibit unlawful discrimination against applicants or employees on the basis age 40 and over, color, disability, gender identity, genetic information, military or veteran status, national origin, race, religion, sex, sexual orientation, or any other status protected by state or local law.

Bluestaq will make reasonable accommodations for qualified individuals with known disabilities and employees whose work requirements interfere with a religious belief unless doing so would result in an undue hardship to Bluestaq or a direct threat. Employees needing such accommodation are instructed to contact Human Resources immediately at contact.us@bluestaq.com.

Create a Job Alert

Interested in building your career at Bluestaq US External? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Education

Select...
Select...
Select...

Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Bluestaq US External’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.