> Markdown version of [/jobs/ext/284923-cloud-security-engineer-cloud-devsecops-engineer-iii](https://www.wearedevelopers.com/jobs/ext/284923-cloud-security-engineer-cloud-devsecops-engineer-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer (Cloud DevSecOps Engineer III) - **Company:** Creative Vision Association Inc - **Location:** Washington, DC, United States - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon Cloudfront, Amazon S3, User Authentication, Software as a Service, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cloud Foundry, Code Review, Cyber Security, Information Systems, Continuous Integration, Linux, Infrastructure as a Service (IaaS), Identity and Access Management, IT Management, Information Systems Security Architecture Professional, Cloud Platform System, Software Security, Amazon Virtual Private Cloud (VPC), Cloudformation, Data Lakes, Information Technology, Nessus, Cloudflare, Fortinet, Functional Programming, Api Gateway, Elastic Beanstalk, Splunk, Devsecops, Docker, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** May 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c86d5e7076125903 ## About the Role Do you have experience in Vulnerability scanning?, Do you have a Bachelor's degree?, * Minimum of 5 years of IT experience, demonstrating experience in the following areas: Cloud-native architectures, AWS, VPC, Security Groups, IAM, Docker, KMS, S3 Encryption, RDS Encryption, HTTPS, SSL Certificates, Data Lake security, CloudFormation, CloudFlare, CloudFront, API Gateway, Lambda, Egress proxies, application security, domain segmentation, authentication, data protection, and automation of processes. * Experience using AWS Infrastructure-as-Code (IaC), Infrastructure-as-a-Service (IaaS), Platform-as-a-Service (PaaS) and Software-as-a-Service (SaaS). * Research, Design, Development, Testing and Deployment experience using AWS IaaS, PaaS services, tools and technologies to support continuous integration and delivery on Linux Environment. * Demonstrated ability to build and execute complex security plans in AWS. * Experience working with compliance and regulatory requirements in AWS. * Experience working in a risk-based environment including mitigation, planning, and implementation in AWS. * Hands on experience with experience in Splunk, Nessus, Tenable Security Center, and firewall tools such as Palo Alto, Imperva, Fortinet, etc. Education & Certifications * Bachelor's degree REQUIRED * One or more REQUIRED: + Certified Information Systems Auditor (CISA) + Certified in Risk and Information Systems Control (CRISC) + Certified Information Security Manager (CISM) + Certified in Governance of Enterprise IT (CGEIT) + Certified Information Systems Security Professional (CISSP) + Certified Authorization Professional (CAP) ## Description Creative Visions is seeking a Cloud Security Engineer to support secure DevSecOps, cloud engineering, and cybersecurity automation initiatives within AWS environments supporting federal systems. Creative Visions is actively pursuing this federal opportunity. Positions associated with this effort are contingent upon contract award, funding availability, and government approval of proposed personnel. Selected candidates may receive contingent offers of employment pending award and successful completion of applicable clearance and suitability requirements. Responsibilities * Implement secure cloud-native architectures and DevSecOps pipelines * Support security integration into CI/CD workflows * Perform SAST/DAST and security code reviews * Implement AWS security controls and automation * Support Infrastructure-as-Code (IaC) deployments * Configure and manage cloud security technologies * Conduct vulnerability analysis and remediation activities * Support compliance and authorization activities for cloud systems ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)