> Markdown version of [/jobs/ext/1704364-cybersecurity-and-cloud-automation-engineer](https://www.wearedevelopers.com/jobs/ext/1704364-cybersecurity-and-cloud-automation-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity and Cloud Automation Engineer - **Company:** Leidos, Inc. - **Location:** Boston, MA, United States (Remote available) - **Salary:** $107,900.0 - $195,050.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Application Configuration Access Protocols, Audit Trail, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Database, Encodings, Cyber Security, Middleware, Identity and Access Management, Network Segmentation, Oracle (Applications), Cloud Services, Ansible, Zero Trust Network Access, Security Software, Security Information and Event Management, Software Deployment, Data Logging, Cloud Platform System, Multi-Cloud, Cloudformation, SC Clearance, CIS Benchmarks, Cloudwatch, Puppet, Terraform, Software Version Control, Devsecops, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** July 7, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9016469/cybersecurity-and-cloud-automation-engineer ## About the Role * Bachelor's degree in a technical field with 8 years of applicable experience, additional years of experience in cloud and cybersecurity engineering will be accepted in lieu of a degree. * Hands-on experience with AWS cloud services and DevSecOps practices in production environments. * Practical experience with IaC/CaC tools (e.g., Terraform/CloudFormation and Ansible/Puppet) and CI/CD pipelines. * Experience applying NIST, FISMA, and STIG/CIS controls in cloud environments and supporting ATO/accreditation activities. * Strong written and verbal communication skills and ability to work effectively in cross-functional teams., * AWS certifications (e.g., Solutions Architect, Security Specialty) or security certifications such as CISSP, CISM, or CAP. * Familiarity with Zero Trust architectures, SASE/ZTNA solutions, and ICAM integrations. * US DoW Secret clearance. * Access to SIPR Facility. ## Description Leidos was awarded the U.S. Air Force Cloud One Architecture and Common Shared Services contract and currently has an opening for a Cybersecurity and Cloud Automation Engineer to support AWS, Azure, Google, and Oracle clouds. This is an exciting opportunity to use your experience to modernize a leading , global-scale multi-cloud environment in support of a critical mission, supporting USAF system resiliency, security, and cost effectiveness., This position may require travel to support customer or corporate meetings near Hanscom AFB (Boston, MA) , Huntsville, AL or Reston, VA., * Dual-role engineer focused on securing and automating AWS environments using IaC, CaC, and Security-as-Code. * Works within DevSecOps teams to design secure cloud solutions and build automated provisioning, configuration, and monitoring pipelines. Core Responsibilities: * Implement and maintain security controls for AWS services, aligned with NIST, FISMA, and DISA STIG requirements. * Configure secure logging, monitoring, and telemetry (e.g., CloudTrail, CloudWatch, SIEM integrations) for cloud workloads. * Perform vulnerability scanning, assessment, and coordination of remediation across cloud hosts, containers, and services. * Contribute to security architecture reviews and change/configuration boards to ensure secure designs and deployments. IaC/CaC & Automation: * Develop, maintain, and version-control IaC modules (e.g., Terraform, CloudFormation) for AWS networking, compute, storage, IAM, and security resources. * Use CaC tools (e.g., Ansible, Puppet) to automate OS, middleware, and application configuration and hardening. * Build and support CI/CD pipelines that integrate IaC/CaC and security checks for automated build, test, and deployment. * Create and maintain hardened, STIG/CIS-aligned golden images and reusable templates for repeatable secure deployments. Security-as-Code & Compliance: * Encode security baselines, IAM policies, network segmentation, and encryption standards into IaC/CaC and pipeline code (Security-as-Code). * Integrate automated security and compliance testing (SAST/DAST, dependency scanning, policy-as-code) into pipelines to enforce controls before release. * Support continuous monitoring and ATO/continuous authorization by maintaining evidence, automated checks, and documentation for audits. Operations & Zero Trust: * Support day-to-day operation of multi-environment AWS landscapes (dev/test/stage/prod/DR), including monitoring health and performance. * Troubleshoot issues across networking, access, and application deployment; contribute to incident and problem management and root cause analysis. * Implement and maintain identity- and context-aware access controls, MFA, and policy-based access in line with Zero Trust strategies. Collaboration & Documentation: * Collaborate with developers, cloud engineers, security analysts, and operations staff to design secure, automated solutions. * Contribute to technical documentation, including architecture diagrams, IaC/CaC module references, SOPs, and runbooks. * Share best practices in secure cloud engineering and automation with teammates; provide informal knowledge transfer and peer support (no direct reports). ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Automate everything via NodeJS and Puppeteer](https://www.wearedevelopers.com/videos/322-automate-everything-via-nodejs-and-puppeteer) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)