New

IT Infrastructure, Security & DevOps Engineer

USUS·Dullesmid
EngineeringDevops Engineer
0 views0 saves0 applied

Quick Summary

Requirements Summary

vulnerability management, patch cadence, EDR, log retention, access reviews, incident response, and security awareness training. You’ll Need to Have… Bachelor’s degree in Computer Science,

Technical Tools
EngineeringDevops Engineer

GPS is a ubiquitous global utility in modern society; knowing one’s location is critical for government, commercial, and personal applications. Still, today’s solutions for determining location are inaccurate, slow, unencrypted, and susceptible to jamming and spoofing. TrustPoint is building the world’s first commercial, authenticated GPS system in space to deliver secure, precise positioning, navigation, and timing to customers worldwide.

As TrustPoint’s IT Infrastructure, Security & DevOps Engineer, you will design, deploy, and manage the IT infrastructure, cloud environments, networking, and developer platforms that power our engineering organization. The role bridges traditional IT operations and modern DevOps practice, ensuring our engineers have a secure, scalable, and automated environment to develop, test, and deploy the software behind our satellites, ground systems, and products.

You will own everything from office networking and endpoint management to AWS infrastructure, CI/CD pipelines, infrastructure automation, security, and developer enablement. Your work will directly improve developer productivity, system reliability, and the security of environments that span our offices, cloud, and globally distributed field systems.

You will also lead TrustPoint's IT security and compliance program. As our government business grows, our infrastructure has to meet the standards our customers operate under: CMMC for controlled unclassified information, FedRAMP-aligned practices for the services we deliver, and AWS GovCloud for regulated workloads. You will own that effort end to end, and build the IT foundation for a future facility clearance and the accredited environments that come with it.

  • Design, configure, and maintain office, lab, and remote network infrastructure including routers, switches, firewalls, VLANs, VPNs, and Wi-Fi networks.
  • Administer Windows, Linux, and macOS systems and manage user accounts, identity, permissions, MFA, and endpoint security through Microsoft 365 or Google Workspace.
  • Design and maintain TrustPoint’s AWS infrastructure including VPCs, EC2, IAM, Route 53, S3, RDS, CloudWatch, Systems Manager, and cloud networking.
  • Deploy and manage infrastructure as code using Terraform, with secure, least-privilege IAM roles and policies, while optimizing cloud cost, performance, and security.
  • Build and maintain CI/CD pipelines using GitHub Actions, GitLab CI, or Jenkins, and maintain artifact repositories, package registries, and container registries.
  • Containerize applications using Docker and deploy workloads on ECS, Kubernetes, or similar orchestration platforms.
  • Automate provisioning and operational tasks using Python or Bash.
  • Deploy and maintain secure remote access solutions such as WireGuard, Tailscale, or NetBird for employees and field-deployed systems.
  • Create reproducible development environments and internal tooling that improve engineering onboarding and productivity.
  • Implement monitoring, alerting, and centralized logging using CloudWatch, Grafana, or Prometheus.
  • Perform vulnerability assessments and security hardening, respond to infrastructure incidents, and participate in root cause analysis.
  • Configure backup, disaster recovery, and business continuity solutions; maintain IT documentation and standard operating procedures; and procure and manage IT hardware and software assets.
  • Lead TrustPoint's CMMC readiness and certification: scope the CUI enclave, implement NIST SP 800-171 controls, maintain the SSP and POA&M, manage the SPRS score, and carry us through assessment.
  • Design and operate segmented environments for CUI and export-controlled data, including AWS GovCloud and Microsoft 365 GCC High or equivalent.
  • Own DFARS 252.204-7012 compliance and related contract flowdowns, and implement ITAR/EAR safeguards in IT systems.
  • Support FedRAMP-aligned control implementation and evidence for TrustPoint services delivered to government customers.
  • Build the IT foundation for a future facility clearance (FCL), including NISPOM requirements and accredited classified systems under RMF; grow into ISSM for those systems.
  • Run security operations: vulnerability management, patch cadence, EDR, log retention, access reviews, incident response, and security awareness training.
  • Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in IT infrastructure, systems administration, or DevOps.
  • Strong Linux system administration skills.
  • Experience managing AWS environments.
  • Experience with Terraform or other infrastructure as code tools.
  • Experience with Docker and containerized applications.
  • Strong networking knowledge including TCP/IP, DNS, DHCP, VLANs, VPNs, routing, and firewalls.
  • Experience with Git and CI/CD pipelines.
  • Proficiency in Python, Bash, or PowerShell scripting.
  • Hands-on experience implementing security controls in a regulated environment: NIST SP 800-171, 800-53, CMMC, FedRAMP, or ISO 27001.
  • Experience writing and maintaining security documentation and audit evidence.
  • Strong troubleshooting and communication skills.
  • Must be a U.S. Person (U.S. citizen or permanent resident).
  • Experience with Kubernetes (EKS, k3s, or similar).
  • Experience with Zero Trust networking approaches such as NetBird, WireGuard, or Tailscale.
  • Familiarity with Prometheus, Grafana, and ELK/OpenSearch.
  • AWS Solutions Architect, SysOps Administrator, or DevOps Engineer certifications.
  • Experience supporting embedded systems, robotics, aerospace, or IoT environments.
  • Experience with software-defined radios, Linux-based embedded devices, or edge computing.
  • Experience with messaging systems such as ZeroMQ, MQTT, or NATS.
  • Familiarity with GitHub Enterprise and Python-based automation frameworks.
  • Experience taking an organization through CMMC Level 2 assessment or FedRAMP authorization.
  • Experience with AWS GovCloud or Microsoft 365 GCC High.
  • Familiarity with NISPOM and DCSA processes, or experience serving as ISSM/ISSO.
  • Familiarity with ITAR/EAR technical data controls in an engineering environment.
  • Active U.S. security clearance, or eligibility to obtain one.
  • Self-starter with a builder mindset and experience thriving in a startup environment.
  • Thrive in a start-up environment where every team member’s contributions directly shape the product.
  • Comfortable holding a security line without slowing engineers down; finds the control that works rather than the one that's easiest to document.
  • Effective communication style that instills a culture of optimism and positivity.
  • Sense of humor and ability to proactively problem solve.
  • Encourages colleagues to think and plan strategically while executing well tactically.
  • Works well with all company levels and disciplines (i.e. Legal, HR, etc.).
  • Willing to “roll up sleeves” in a new venture, working closely with colleagues.

What We Offer

~1 min read

The selected candidate will be competitively compensated with salary, equity (stock options), and standard benefits. The salary range for this position is $139,000 to $172,000.

TrustPoint, Inc. is an Equal Opportunity Employer that does not discriminate on the basis of actual or perceived race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, disability or handicap, sex, marital status, veteran status, sexual orientation, arrest record or any other characteristic protected by applicable federal, state or local laws.

Location & Eligibility

Where is the job
Dulles, US
On-site at the office
Who can apply
Open to applicants worldwide

Listing Details

Posted
September 28, 2026
First seen
October 2, 2026
Last seen
October 2, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
53%
Scored at
October 2, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

IT Infrastructure, Security & DevOps Engineer