Cloud Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+15 more
Job description
- Required to stand, walk and sit; communicate verbally both in person and by telephone; use hands to finger, handle or feel objects or controls; reach with hands and arms. Regularly required to stoop, kneel, bend, crouch and lift up to 25 pounds. Specific vision abilities required by this job include close vision, distance vision, depth perception, color vision and the ability to adjust focus.
- Physical demands associated with this position include extensive walking (including stairs) throughout offices and between buildings. May require use of public transportation, personal or Government vehicle to drive to local and/or remote office locations.
Additional Requirements
- Other duties as assigned
Requirements
Do you have experience in SaaS?, Do you have a Bachelor’s degree?, The successful candidate will design, implement, and secure cloud-native AWS environments using technologies and services including VPC, IAM, Security Groups, Docker, Lambda, API Gateway, CloudFormation, CloudFront, CloudFlare, encryption technologies, and data protection controls. Use AWS Infrastructure-as-Code (IaC), IaaS, PaaS, and SaaS solutions to support CI/CD pipelines in Linux environments, while applying expertise in application security, authentication, domain segmentation, risk mitigation, compliance, and regulatory requirements. Be able to utilize security monitoring and assessment tools such as Splunk, Nessus, Tenable Security Center, and enterprise firewall platforms including Palo Alto, Imperva, and Fortinet.
Required Knowledge, Skills and Abilities (KSA)
- Experience with cloud-native architectures and AWS services, including VPCs, Security Groups, IAM, Docker, KMS, S3 and RDS encryption, HTTPS/SSL certificates, API Gateway, Lambda, CloudFormation, CloudFront, Cloudflare, egress proxies, data lake security, application security, domain segmentation, authentication, data protection, and process automation.
- Experience implementing AWS Infrastructure-as-Code (IaC) and working across Infrastructure-as-a-Service (IaaS), Platform-as-a-Service (PaaS), and Software-as-a-Service (SaaS) environments.
- Experience researching, designing, developing, testing, and deploying AWS IaaS and PaaS solutions to support continuous integration and continuous delivery (CI/CD) in Linux environments.
- Proven ability to develop and execute complex AWS security strategies and implementation plans.
- Experience supporting compliance and regulatory requirements within AWS environments.
- Experience operating in risk-based environments, including risk assessment, mitigation planning, and security implementation in AWS.
- Hands-on experience with security and monitoring tools including Splunk, Nessus, Tenable Security Center, and firewall platforms such as Palo Alto, Imperva, and Fortinet.
Desired KSA
- Be a positive, self-motivated, and proactive person with the ability to adapt to change and tolerate stressful situations
- Candidate must communicate effectively with team members, team lead, management, and government customer
- Must have the ability and desire to research and develop creative solutions to unique problems with minimal supervision
Minimum Training, Education, and Certifications
- Bachelor’s degree in Cybersecurity, Information Assurance, Information Systems, Information Technology, or related field
- Five (5) years of experience supporting cybersecurity compliance, ISSO functions, information assurance, governance/risk/compliance (GRC), or related security activities.
Minimum Clearance
- Public Trust
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Best Paying Jobs in Technology
7 Cloud Computing Trends Coming in 2025 for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.