Cloud Information Systems Security Engineer (ISSE)...
Role details
Job location
Tech stack
Job description
CGI Federal is seeking a Senior Cloud Information Systems Security Engineer (ISSE) to provide advanced cloud security engineering expertise for a major federal initiative. The Senior Cloud ISSE leads secure cloud architecture activities, ensures NIST-aligned control implementation, and supports secure integration of enterprise systems across AWS, Azure, and hybrid environments. This role advises system owners, architects, and engineering teams on secure cloud design, RMF engineering requirements, and the protection of high-value federal workloads.
Your future duties and responsibilities:
-
Lead design and engineering of secure cloud architectures across AWS, Azure, and hybrid environments.
-
Implement and validate NIST 800-53 security controls and cloud-native security services (IAM, encryption, segmentation, logging).
-
Conduct cloud threat modeling, risk assessments, and architecture reviews.
-
Oversee cloud configuration baselines using STIGs, CIS Benchmarks, and SCAP.
-
Drive cloud vulnerability and compliance efforts using ACAS/Nessus and cloud-security posture tools.
-
Support RMF engineering activities including boundary definition, inheritance documentation, and authorization packages.
-
Integrate cloud-security capabilities such as Sentinel, Splunk, and SIEM logging pipelines.
-
Guide DevSecOps teams on secure CI/CD, container security, and infrastructure-as-code validation.
-
Produce cloud architecture diagrams, design documentation, and engineering artifacts.
-
Mentor junior and mid-level ISSEs and act as a technical escalation point for cloud engineering issues.
Requirements
-
Bachelor's degree in Cybersecurity, Information Systems, Computer Engineering, or related technical field (Master's preferred).
-
Minimum of 7+ years of cybersecurity or secure systems engineering experience, including cloud architecture.
-
Active Top Secret or TS/SCI clearance.
-
Advanced experience with:
-
Secure cloud architecture (AWS, Azure, hybrid)
-
NIST RMF engineering and NIST 800-160 principles
-
Implementing NIST 800-53 controls in cloud environments
-
Cloud configuration baselines (STIGs, CIS, SCAP)
-
Strong ability to lead cloud engineering efforts across large federal programs.
-
Excellent communication and engineering documentation skills.
Preferred Certifications (Senior Cloud ISSE Level)
Strongly Preferred:
-
CISSP
-
CCSP
-
CASP+ CE
Cloud Certifications:
-
AWS Solutions Architect (Associate/Professional)
-
AWS Security Specialty, * CISSP-ISSAP or ISSEP
-
DoD 8140/8570 IASAE-II/III certifications
Technical Familiarity
-
AWS and Azure security services (IAM, logging, encryption, segmentation, key management).
-
ACAS/Nessus, Tenable, and cloud-security posture tools.
-
SIEM platforms (Sentinel, Splunk) and cloud log pipelines.
-
DevSecOps pipelines, CI/CD security integration, Git/Azure DevOps.
-
SAST/DAST tools, API security, and secure system integration patterns.
-
Ability to review and influence complex cloud architecture and system design decisions.