Senior Cloud Security Engineer

STEAMPUNK INC.
Washington, DC, United States
5 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$130,000.0 - $180,000.0
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Security Cloud Engineering Cyber Security DevOps Github Groovy Identity and Access Management Information Systems Security Architecture Professional
+22 more
Python (Programming Language) Network Configuration and Change Management Windows PowerShell Systems Development Life Cycle Cloud Services Ansible Ruby Security Information and Event Management Software Deployment Software Vulnerability Management Scripting Cloud Platform System Gitlab Git Cloudformation Concourse Information Technology Patch Management Bitbucket Cloud Optimization Terraform Devsecops

Job description

As a Senior Cloud Security Engineer, you will work within our growing DevSecOps practice delivering features to support developing, testing, and monitoring secure cloud architectures for cloud migration, cloud optimization and cloud deployment. We are looking for candidates with 5-8 years experience with cloud platform services, cybersecurity and DevOps practices such as infrastructure as code and confirmation management automation.

Contributions

  • Identify and implement the most secure cloud-based solutions for the customer including components for zero-trust architectures, identity and access management policy, and data privacy

  • Understanding the needs of stakeholders and optimizing solutions that marry security with usability

  • Monitor cloud environments for suspicious activities with cloud native monitoring or SIEM solutions and investigate security incidents where appropriate

  • Examining infrastructure as code written by others and analyzing risk

  • Ensuring that systems are safe and secure against cybersecurity threats through risk assessment, threat modeling, and compliance with industry standards ( e.g. NIST, ISO 27011, HIPPA, FISMA, etc.)

  • Identifying technical problems, performing root cause analysis, and developing updates and ‘fixes’

  • Automate security processes such as vulnerability management and patch management

  • Working with software developers and DevSecOps engineers to ensure that development follows established security processes and works as intended

  • Support enterprise cloud security through infrastructure as code including any activities around automated server or network configurations, large-scale software deployments, and monitoring and testing

  • Ensure effective design and implementation of data protection and encryption mechanisms for data at rest and in transit

  • Document as-is state of the environment, perform a gap analysis, and produce artifacts that articulate options and recommendations

  • Identify , analyze, and resolve infrastructure vulnerabilities and application deployment issues

  • Engineer and implement solutions and provide recommendations for continuous improvement for the services provided

  • Present regular status updates and provide cross training to other team members.

Requirements

  • Ability to obtain a U.S. government Security Clearance

  • BS Degree in an IT field OR BS in a non-IT field and 2 years related IT experience

  • 5 Years of Experience architecting, designing, developing, and implementing cloud solutions

  • 5 Years of Experience with one or more clouds ( i.e. AWS, Azure, or GCP)

  • 5 Years of Experience with Git SCM providers such as GitHub, GitLab, Bitbucket

  • 5 Years of Experience with systems development in an Agile environment

  • 5 Years of Experience implementing infrastructure as code and orchestration

  • 5 Years of Experience providing conducting monitoring, risk assessment, threat modeling and security testing in cloud environments

  • 5 Years of Experience documenting POAMs, SSPs, and A&A support documentation

Preferred:

  • Certifications:

  • AWS Certified Security Specialty

  • AWS Certified Solution Solution Architect Associate

  • Microsoft Certified Azure Administrator Associate

  • Certified Information Systems Security Professional (CISSP)

  • Excellent written and verbal communication skills, interpersonal and collaborative skills

  • Experience with documenting an as-is state of the environment, perform a gap analysis, and produce artifacts that articulate options and recommendations preferred

  • Experience with scripting in Concourse, Bash, PowerShell, Python, Groovy, or Ruby

  • Experience with automation tools, including Pivotal, Chef, Terraform, CloudFormation, or Ansible

Benefits & conditions

Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $130,000 to $180,000. The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here.

About the company

Steampunk is a Change Agent in the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors. Through our Human-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges. If you want to learn more about our story, visit http://www.steampunk.com .

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

50 sec

Why developer happiness matters in web frameworks

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all