Cloud Engineer
ITility, LLC.
1 month ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Remote
Tech stack
Amazon Web Services (AWS)
Amazon Web Services (AWS)
Amazon Web Services (AWS)
Application Firewall
Audit Trail
Cloud Computing
Cloud Engineering
CompTIA Security+
Disaster Recovery
DNS
Identity and Access Management
Interoperability
Subnetting
Virtual Private Networks (VPN)
Routing
Public Key Infrastructure
Security Information and Event Management
Autoscaling
System Availability
Infrastructure as Code (IaC)
Amazon Web Services (AWS)
Cloudformation
Amazon Web Services (AWS)
Palo Alto Networks
Opsworks
Functional Programming
Cloudwatch
Terraform
Virtual Private Clouds
Job description
- Design and architect AWS GovCloud environments including VPCs, subnets, route tables, gateways, NAT configurations, and hybrid connectivity models.
- Configure and manage Palo Alto firewalls in cloud environments, including policy management and traffic inspection.
- Implement and manage AWS Transit Gateways, VPN tunnels, and secure interconnections between enterprise and cloud environments.
- Architect and maintain Web Application Firewalls (WAF) to protect mission applications.
- Support autoscaling, high availability, and disaster recovery strategies aligned to COOP requirements.
Cloud Networking & Operations
- Develop and maintain Infrastructure as Code (IaC) using Terraform, CloudFormation, or equivalent tools to automate provisioning and enforce configuration standards.
- Monitor cloud infrastructure using AWS-native and third-party tooling (CloudWatch, Security Hub, SIEM integration) to ensure uptime, performance, and security posture.
- Support secure migration and interoperability within DoD enterprise boundaries.
- Troubleshoot connectivity issues across hybrid cloud environments.
Training & Knowledge Transfer
- Provide structured training to the Network Team on cloud networking architecture, VPN management, firewall configurations, and AWS operational best practices.
- Develop technical documentation, playbooks, and configuration guides.
- Lead knowledge-sharing sessions to increase enterprise cloud competency.
Requirements
Do you have experience in Virtual Private Clouds?, * U.S. Citizenship required; ability to obtain and maintain a DoD Secret clearance.
- AWS Certified Solutions Architect - Professional
- CompTIA Security+ CE or equivalent (DoD 8570/8140 IAT II)
- Minimum of eight (8) years of progressive experience in cloud engineering, with a minimum of 4 years in AWS GovCloud or equivalent federal cloud environments.
- Hands-on experience with Palo Alto Networks firewall platforms, Panorama management, and advanced threat prevention policies.
- Demonstrated expertise in AWS architecture and services: EC2, VPC, IAM, S3, RDS, Lambda, CloudTrail, AWS Config, and Security Hub.
- Strong working knowledge of DISA STIGs, RMF, NIST 800-53, and federal cloud compliance frameworks.
- Proficiency in Infrastructure as Code tools such as Terraform or AWS CloudFormation.
- Experience supporting ATO processes and working alongside ISSOs and security assessors.
- Solid understanding of hybrid cloud networking, DNS, routing protocols, and PKI/certificate management in federal environments.
- Strong documentation and communication skills.
Work Environment:
- Required to dress appropriately for the job environment, including adherence to safety, security, and site-specific dress standards
- Ability to sit or stand for extended periods while performing computer-based tasks.
- Requires sustained use of hands and fingers for keyboarding, writing, and operation of standard office equipment, as well as frequent verbal communication, active listening, and visual acuity to perform job responsibilities effectively.
- Occasional movement around the office, including climbing stairs.
- Ability to travel up to 10%, which may include occasional visits to client sites or government installations.
Physical Requirements:
- Work is typically performed in an office setting.
- Prolonged periods of sitting at a desk and working on a computer.
- Must have the ability to lift 15-25 pounds.
About the company
ITility is seeking an experienced and mission-focused Senior Cloud Engineer to support a mission-critical enterprise modernization initiative in direct support of the Department of Defense (DoD). This position is integral to the design, security, and sustainment of AWS GovCloud environments hosting mission-essential systems during the ongoing enterprise transition.
ITility is a Service-Disabled Veteran-Owned Business with a passion to equip our nation's Intelligence Community, armed forces and first responders with the very best to empower their missions. From the virtual battlefield to boots on the ground, our people, processes, and performance drive our ability to help our clients protect what matters, now and for generations to come.
At ITility, we help our customers command the future by thinking beyond perceived limits to create new, unexpected ways to protect and defend our nation. We inspire and empower people to create significant solutions that secure what matters to our customers and communities, here and around the globe.