Cloud Cybersecurity Manager (SME)

D & A Technologies, Government Solutions, LLC
Washington, DC, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$175,000.0 - $185,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Systems Identity and Access Management Zero Trust Network Access Security Information and Event Management Systems Integration Cloud Platform System Istio
+6 more
Containerization Kubernetes Information Technology Devsecops Serverless Computing Docker

Job description

As a Cloud Cybersecurity Oversight SME , you will be responsible for designing, development, implementing, operation, and maintaining the Cloud Cybersecurity program (AWS/MS Azure).

  • Responsible for administering cyber security policy.
  • Performing reviews for assessment and authorization of Naval Nuclear Propulsion Program Information Technology (IT) systems, applications, and networks
  • Serves as an auditor for cyber security ensuring compliance with all published cyber security laws, directives, and policies for the Naval Nuclear Propulsion Program.
  • Continuous Monitoring, and Risk Management best practices, procedures, and polices for systems, applications, and capabilities authorizations in support of a major US Navy customer.
  • To ensure the confidential, integrity, availability for the protection of the organization’s cloud infrastructure.
  • Duties-
  • Perform technical reviews of contractor, Department of the Navy, and Defense Industrial Base recommendations that affect the cyber security of IT, with a focus on ensuring secure implementation of cloud-based systems.
  • Develop and implement cloud cybersecurity measures to safeguard computer systems, networks, and data.
  • Maintain and update all A&A documentation to ensure the relevancy and currency of the Agency’s Network assets to include required revisions and updates.
  • Maintain documentation and registration of Network Ports, Protocols, and Services.-Maintain and report on the status of all outstanding RMF A&A items and supporting documentation.
  • Provide reviews to ensure compliance with all published cyber security laws, directives, and policies for the Naval Nuclear Propulsion Program.
  • Provide a written report of the review with supporting analysis as requested
  • Participate in periodic cyber security evaluations at Program sites, to include cyber security review of traditional and cloud-based IT systems
  • Conduct regular security risk assessments reviews of security controls, STIGS, SRGs, and conduct audits to identify vulnerabilities, analysis findings, support the development of mitigating solutions, and POAMs.
  • Advise and Collaborate with Senior Officials, Leadership, Cybersecurity, IT, & Engineer teams to ensure cloud security tools are properly integrated into the overall Cloud infrastructure

Requirements

  • Proficiency in Cybersecurity, RMF A&A, Zero Trust, and Risk Management.
  • Proficiency implementing systems/applications hardening techniques and best practices (DoD / NIST SP800-53 Security Controls, NIST SP800-37, NIST SP800-207, CNSSI 1252, DISA STIGS, SRGs, Cloud Security tools-AWS)
  • Experienced in implementing and integrating cloud-focused cyber security technologies such as DevSecOps pipelines, containerization (Kubernetes, Docker), cloud-native SIEM, service mesh, identity management, data protection techniques, and serverless computing.
  • Knowledge and experience in standards-based assessment and authorization of information systems, including evaluating security controls and determining overall risk.
  • Knowledge of Federal cloud-specific cybersecurity requirements, including DISA Cloud Computing Security Requirements Guide and Secure Cloud Computing Architecture (SCCA), with ability to assess cloud systems against these standards
  • Strong analytical & communication skills - attention to detail, * Cybersecurity: 5 years (Required)
  • NIST standards & DISA STIGS: 5 years (Required)

Security clearance:

  • Top Secret (Required)

Benefits & conditions

Pulled from the full job description

  • Professional development assistance
  • 401(k)
  • Health insurance
  • Retirement plan
  • Paid time off
  • Vision insurance
  • Dental insurance, * 401(k)
  • Dental insurance
  • Health insurance
  • Paid time off
  • Professional development assistance
  • Retirement plan
  • Vision insurance

Compensation Package:

  • Performance bonus
  • Yearly pay

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · WWC Europe 2026

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · WWC 2025

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

7:15 min

Installing Istio programmatically with bash scripts

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all