Cloud Cybersecurity Manager (SME)
D & A Technologies, Government Solutions, LLC
Washington, DC, United States
about 1 month ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$175,000.0 - $185,000.0
Working hours
Regular working hours
Job source
Tech stack
Amazon Web Services
Microsoft Azure
Cloud Computing
Cloud Computing Security
Cyber Security
Information Systems
Identity and Access Management
Zero Trust Network Access
Security Information and Event Management
Systems Integration
Cloud Platform System
Istio
+6 more
Containerization
Kubernetes
Information Technology
Devsecops
Serverless Computing
Docker
Job description
As a Cloud Cybersecurity Oversight SME , you will be responsible for designing, development, implementing, operation, and maintaining the Cloud Cybersecurity program (AWS/MS Azure).
- Responsible for administering cyber security policy.
- Performing reviews for assessment and authorization of Naval Nuclear Propulsion Program Information Technology (IT) systems, applications, and networks
- Serves as an auditor for cyber security ensuring compliance with all published cyber security laws, directives, and policies for the Naval Nuclear Propulsion Program.
- Continuous Monitoring, and Risk Management best practices, procedures, and polices for systems, applications, and capabilities authorizations in support of a major US Navy customer.
- To ensure the confidential, integrity, availability for the protection of the organization’s cloud infrastructure.
- Duties-
- Perform technical reviews of contractor, Department of the Navy, and Defense Industrial Base recommendations that affect the cyber security of IT, with a focus on ensuring secure implementation of cloud-based systems.
- Develop and implement cloud cybersecurity measures to safeguard computer systems, networks, and data.
- Maintain and update all A&A documentation to ensure the relevancy and currency of the Agency’s Network assets to include required revisions and updates.
- Maintain documentation and registration of Network Ports, Protocols, and Services.-Maintain and report on the status of all outstanding RMF A&A items and supporting documentation.
- Provide reviews to ensure compliance with all published cyber security laws, directives, and policies for the Naval Nuclear Propulsion Program.
- Provide a written report of the review with supporting analysis as requested
- Participate in periodic cyber security evaluations at Program sites, to include cyber security review of traditional and cloud-based IT systems
- Conduct regular security risk assessments reviews of security controls, STIGS, SRGs, and conduct audits to identify vulnerabilities, analysis findings, support the development of mitigating solutions, and POAMs.
- Advise and Collaborate with Senior Officials, Leadership, Cybersecurity, IT, & Engineer teams to ensure cloud security tools are properly integrated into the overall Cloud infrastructure
Requirements
- Proficiency in Cybersecurity, RMF A&A, Zero Trust, and Risk Management.
- Proficiency implementing systems/applications hardening techniques and best practices (DoD / NIST SP800-53 Security Controls, NIST SP800-37, NIST SP800-207, CNSSI 1252, DISA STIGS, SRGs, Cloud Security tools-AWS)
- Experienced in implementing and integrating cloud-focused cyber security technologies such as DevSecOps pipelines, containerization (Kubernetes, Docker), cloud-native SIEM, service mesh, identity management, data protection techniques, and serverless computing.
- Knowledge and experience in standards-based assessment and authorization of information systems, including evaluating security controls and determining overall risk.
- Knowledge of Federal cloud-specific cybersecurity requirements, including DISA Cloud Computing Security Requirements Guide and Secure Cloud Computing Architecture (SCCA), with ability to assess cloud systems against these standards
- Strong analytical & communication skills - attention to detail, * Cybersecurity: 5 years (Required)
- NIST standards & DISA STIGS: 5 years (Required)
Security clearance:
- Top Secret (Required)
Benefits & conditions
Pulled from the full job description
- Professional development assistance
- 401(k)
- Health insurance
- Retirement plan
- Paid time off
- Vision insurance
- Dental insurance, * 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Professional development assistance
- Retirement plan
- Vision insurance
Compensation Package:
- Performance bonus
- Yearly pay
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
AJ
Austin Joy
over 4 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
DC
Daniel Cranney
The Overflow: Security and Privacy
5 months ago
LM
Luis Minvielle
7 Cloud Computing Trends Coming in 2025 for Developers
over 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago