AWS Cloud / Security Engineer

ECS Federal, LLC.
Stafford, VA, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Amazon Elastic Compute Cloud Bash Shell Cloud Computing Cloud Computing Security Cloud Engineering Identity and Access Management Local Security Policy Windows PowerShell Scripting Amazon Virtual Private Cloud (VPC)
+6 more
Git Cloudformation SC Clearance Kubernetes Software Version Control Plan of Action and Milestones

Job description

Experteer Overview In this role you will design, build, and secure cloud infrastructure to support CODIS development across AWS environments. You will partner with cross-functional teams to keep Dev and Test stable and compliant, while implementing security controls and automated provisioning. You will contribute to security documentation and assessment evidence for ATO processes and NIST controls. The position blends hands-on cloud engineering with regulatory compliance in a mission-critical federal context. Compensation / Benefits * Design, build, and maintain AWS infrastructure (EC2, IAM, VPC, security groups, AMI lifecycle) for development, test, pre-prod, and prod. * Provision and manage infrastructure as code using CloudFormation. * Collaborate with CODIS development and infrastructure teams to ensure stability and availability of environments. * Provide off-hours support for system upgrades, patches, and maintenance as needed. * Implement and validate security settings across cloud, OS baselines, and application platforms. * Design and maintain least-privilege IAM roles and policies; remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config. * Implement NIST SP 800-53 controls in the cloud and document satisfaction within RMF/ATO processes. * Contribute to ATO package content (SSP narratives, control statements, diagrams, inventory artifacts). * Support security assessments with evidence, respond to assessor questions, and drive POA&M to closure. * Participate in Agile ceremonies, refine infrastructure and security stories, and provide sprint estimates. * Troubleshoot environment and pipeline issues with documented root cause and repeatable fixes. Tasks * Active Secret clearance * Hands-on AWS experience administering EC2, IAM, VPC, and AMIs * Experience implementing security settings and hardening across cloud and OS layers * Familiarity with NIST SP 800-53 controls and RMF/ATO processes, including security documentation and POA&M remediation * Kubernetes and container image experience * Git-based version control across multiple projects * Security+ certification or ability to obtain within 6 months * System administration experience * Strong attention to detail and troubleshooting ability * Scripting proficiency (PowerShell or Bash preferred) Key requirements *

Requirements

using OS baselines, and application platforms. * Design and maintain least-privilege IAM roles and policies; remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config. * Implement NIST SP 800-53 controls in the cloud and document satisfaction within RMF/ATO processes. * Contribute to ATO package content (SSP narratives, control statements, diagrams, inventory artifacts). * Support security assessments with evidence, respond to assessor questions, and drive POA&M to closure. * Participate in Agile ceremonies, refine infrastructure and security stories, and provide sprint estimates. * Troubleshoot environment and pipeline issues with documented root cause and repeatable fixes. Tasks * Active Secret clearance * Hands-on AWS experience administering EC2, IAM, VPC, and AMIs * Experience implementing security settings and hardening across cloud and OS layers * Familiarity with NIST SP 800-53 controls and RMF/ATO processes, including security documentation and POA&M aaaaaaa from * Kubernetes and container image experience * Git-based version control across multiple projects * Security+ certification or ability to obtain within 6 months * System administration experience * Strong attention to detail and troubleshooting ability * Scripting proficiency (PowerShell or Bash preferred) Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:23 min

Reviewing AWS infrastructure deployment configuration and planning

Devlin Duldulao · LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

6:51 min

Audience questions on cloud security and operational capacity

Steffen Heilmann · WWC 2021

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all