Senior Cloud Cybersecurity Engineer

Base-2 Solutions, LLC
Bethesda, MD, United States
2 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$10,000.0
Working hours
Shift work

Tech stack

Xacta Kubernetes Security Agile Methodology Artificial Intelligence Amazon Web Services Software Applications Automation of Tests Bash Shell Cloud Computing Cloud Computing Security Cloud Engineering Code Review
+28 more
CompTIA Security+ Cyber Security Databases Continuous Integration Linux Perl (Programming Language) Identity and Access Management Information Systems Security Architecture Professional Information Systems Security Engineering Professional Python (Programming Language) Machine Learning Open Source Intelligence Red Hat Enterprise Linux Software Tools Zero Trust Network Access Secure Coding Security Information and Event Management Software Engineering Scripting Cloud Platform System Kubernetes Information Technology Data Analytics RSA Archer Platform Devsecops Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

Base-2 Solutions is seeking a Senior Cloud Cybersecurity Engineer to play a critical role in the accreditation and operation of a state-of-the-art technology stack under the DOMEX Technology Platform (DTP). This role supports the mission to centralize and standardize Tasking, Collection, Processing, Exploitation and Dissemination (TCPED) of Open Source Intelligence (OSINT) across the Defense and Intelligence Community enterprises, leveraging cloud computing, artificial intelligence, machine learning, and cross-domain transfer systems to provide advanced data exploitation and analytics capabilities., * Collect, review, assess, and provide feedback on system cybersecurity, architecture, and engineering artifacts.

  • Collect, review, assess, and provide feedback on system cybersecurity Body-of-Evidence (BOE) results required to support DoD & IC RMF cybersecurity authorization processes.
  • Conduct periodic compliance scanning, vulnerability assessments, and risk analysis for cloud-based systems.
  • Implement and manage security controls for containerized applications and the underlying cloud-based infrastructure.
  • Collaborate with DevSecOps, infrastructure, and software development teams to ensure secure coding and engineering practices.
  • Ensure integration of security measures into software development processes, CI/CD pipelines, and engineering tools.
  • Develop, maintain, and execute shell commands, scripts, and automation code for STIG compliance and validation.
  • Implement and manage continuous monitoring solutions of cloud-based architectures.
  • Support Government cybersecurity officials and program personnel in preparing cybersecurity packages, including Interim Authority to Test (IATT) packages, Authority to Operate (ATO) packages, and Change Requests (CRs).
  • Stay current with emerging cloud security threats, technologies, and best practices.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline and 12-15 years of relevant experience OR Master’s degree with 10-13 years of relevant experience. Additional years of experience may be considered in lieu of a degree.
  • At least one DoD 8570.01-M IAT or IAM Level II or higher certification (e.g., CCNA Security, CySA+, Security+ CE, CISSP or Associate) and the ability to obtain Privileged User Account (PUA)/elevated access per DoD 8570 policy.
  • Hands-on experience with Linux operating systems and scripting languages such as Bash, Python, Perl or similar.
  • Experience with Commercial Cloud Services (C2S) and cloud-based enterprise services, preferably AWS.
  • Experience securing software applications and infrastructure by implementing security controls.
  • Experience supporting RMF processes such as authorization and continuous monitoring.
  • Experience with NIST SP 800-37, SP 800-53 Rev4 or Rev5, CNSSI 1253, and applicable DoDI publications.
  • Experience implementing and validating STIG compliance across operating system, database, server, and application tiers.
  • Experience with RMF/GRC platforms such as Xacta or eMASS.
  • Experience performing compliance and vulnerability scans and related security tools for SIEM and event management, SAST, DAST.
  • Demonstrated understanding of unique security threats in the cloud and the required corresponding system security posture.
  • Demonstrated understanding of how to secure Kubernetes platforms and integrate security into CI/CD pipelines, containers, and platform orchestration tools., * Experience supporting the Intelligence Community in RMF activities with ICD 503 and related compliance directives, policies, and procedures.
  • Multiple IAT/IAM II or III advanced certifications such as CISSP-ISSAP, ISSEP, CISM, CCSP, Security+, CASP+.
  • Cloud certifications such as AWS Solutions Architect, AWS Security Specialty, Kubernetes and Cloud Native Associate (KCNA), Certified Kubernetes Administrator (CKA), Certified Kubernetes Security Specialist (CKS).
  • Linux certifications such as Linux+, Red Hat Certified System Administrator - Enterprise Linux (RHCSA), Red Hat Certified Engineer - Enterprise Linux (RHCE), Red Hat Certified Architect - Enterprise Linux (RHCA).
  • Prior network engineering experience with encryption and transport in the cloud.
  • Experience applying DoW Zero Trust framework.
  • Experience applying security controls to various AI implementations.
  • Understanding of secure software development practices and code reviews in Agile and DevSecOps environments.

Required Education and Experience Equivalency

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline with 12-15 years of experience.
  • Master’s degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline with 10-13 years of experience.

Required Certifications

  • At least one DoD 8570.01-M IAT or IAM Level II or higher certification (e.g., CCNA Security, CySA+, Security+ CE, CISSP or Associate).

Required Security Clearance

  • Active Top Secret/SCI

Benefits & conditions

  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).

Health

  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.

Income Protection

  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.

Retirement

  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.

Leave

  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.

Work-Life Balance

  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all