Responsibilities
- Create and maintain environment-specific Kubernetes configuration packages (e.g., Helm values files, YAML manifests) that incorporate STIG-aligned hardening and RBAC policy enforcement per IL environment
- Implement and manage secrets injection strategies using FedRAMP-compliant tools (e.g., AWS Secrets Manager, Azure Key Vault), ensuring compatibility with automated deployment pipelines
- Integrate CI/CD pipelines to enable secure, automated deployment and rollback of ArcGIS components and related services, supporting ongoing agility and compliance across environments
- Coordinate with Kubernetes and Data Layer Engineers to ensure version control, pipeline integrity, and integration testing for all containerized services deployed under WO-003
- Coordinate with the WO-009 infrastructure team to provide estimated cloud resource usage profiles for Kubernetes-based deployments in IL2, IL4, and IL5 environments
- Supply container and workload specifications to the WO-009 infrastructure team to support provisioning, tagging, and prepay or reservation planning
- Implement resource tagging in alignment with program-wide cloud governance policy and reconcile actual usage against estimates provided by WO-009
- Support cost optimization efforts led by WO-009 by adjusting workloads and scaling strategies in response to performance and utilization feedback
Requirements
- Experience with Kubernetes configuration (Helm, YAML manifests)
- Knowledge of STIG-aligned hardening and RBAC policy enforcement
- Experience with FedRAMP-compliant secrets management tools (e.g., AWS Secrets Manager, Azure Key Vault)
- Experience integrating CI/CD pipelines for secure automated deployment and rollback
- Ability to coordinate with infrastructure and data layer engineers
- Experience with cloud resource estimation and provisioning in IL environments (IL2, IL4, IL5)
- Understanding of container and workload specifications for cloud environments
- Ability to implement resource tagging per cloud governance policy
- Experience supporting cost optimization in cloud environments
Additional Information
- This position is contingent upon award of contract
- Must support mission requirements for a DoD customer
- Must comply with IL environment requirements (IL2, IL4, IL5)
- Must use STIG-aligned hardening and RBAC policy enforcement
- Must use FedRAMP-compliant tools for secrets management
- Requires coordination with WO-009 infrastructure team
- Requires container and workload specifications for cloud provisioning and planning