> Markdown version of [/jobs/ext/3034777-cloud-engineer-remote](https://www.wearedevelopers.com/jobs/ext/3034777-cloud-engineer-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Engineer (REMOTE) - **Company:** Koniag Services, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** PHP (Programming Language), Agile Methodology, Amazon Web Services, Amazon Cloudfront, Amazon Elastic Compute Cloud, Amazon S3, Apache HTTP Server, Application Frameworks, Application Firewall, Microsoft Azure, LAMP (Software Bundle), Cloud Computing, Cloud Computing Security, Cloud Engineering, Configuration Management, Cyber Security, Information Systems, System Configuration, Linux, DevOps, Elasticsearch, Github, Infrastructure as a Service (IaaS), Intrusion Detection and Prevention, Key Management, MySQL, Nginx, Octopus Deploy, OpenShift, Platform as a Service (PAAS), Windows PowerShell, Scrum Methodology, Cloud Services, Ansible, Software Vulnerability Management, Web Applications, WordPress, Private Cloud Environment, AWS Cdk, Pulumi, Okta, Git, Cloudformation, Containerization, Gitlab-ci, Kubernetes, Information Technology, Search Engines, Bitbucket, Route53, Cloudwatch, Terraform, Serverless Computing, Elk Stack, Jenkins - **Published:** September 23, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9186232/cloud-engineer-remote ## About the Role * Kubernetes and understanding traffic pattern for a high-traffic web site running a Content Management System is preferred. * Amazon web infrastructure and services including Route53, CloudFormation, OpenSearch, Kinesis Firehose, Config, EKS, WAF, CloudFront, EC2 & EBS, RDS, ALB, Certificate Manager, S3, Secrets Manager, Virtual Private Cloud, Lambda, Inspector, Key Management Service, ElasticCache, SES, CloudShell, ECR, CloudWatch, SNS, GuardDuty, CloudTrail * Passionate about identifying constraints/bottlenecks in engineering lifecycles and automating them * Focused on building a culture of collaboration, transparency, and automation * Experience managing and deploying pipeline solutions as well as containerized applications via tools such as Argo Workflows, ArgoCD, Github Actions, GitLab CI, Azure DevOps, Jenkins, Bitbucket pipelines, etc. * Experience building and supporting Infrastructure as code (IaC), leveraging tools such as AWS CDK, Ack, CloudFormation, Terraform, Pulumi, Ansible, Salt, Chef, etc. * Proven knowledge in PowerShell, with demonstrable ability to build and understand logical scripts, utilizing statements such as, if/else, foreach, try/catch, etc. * Deep understanding of IaaS, PaaS, and Serverless services offered on cloud platforms and understand how to use them together to build complex solutions * Research, analyze, design, propose and support the delivery of solutions that are appropriate for business and technology strategies * Able to design data, system, and component architectures; and design and share in simple language with executive leadership * Experienced with Agile methodologies especially TDD and Scrum; Kanban is a plus * Experience with LEMP & LAMP stacks (Linux, Nginx, Apache, MySQL, PHP), WordPress installation & configuration, MySQL performance and scaling, Elasticpress, Elasticsearch and the ELK stack, Git, Bitbucket. * Well versed in the DevOps lifecycle and process improvement strategies * Proven knowledge of Change and Configuration Management best practices * Partner with development and operations teams to develop practical automation solutions and custom modules. Troubleshoot automation issues and find practical solutions that move projects forward promptly. * BS in computer science, information systems, cybersecurity, or related IT or security field 5 years of professional experience in IT/network engineering, Cloud, security engineering, system administration or security operations. * 7 years' experience in a security related role with experience with FISMA, FedRAMP, and NIST SP 800-53 * Ability to clearly communicate your contributions in activities such as adding controls into an application framework, working with technical leads, responding to security findings, submitting responses to Common Vulnerability Reports, performing Security Impact Assessments and supporting an Authorization-To-Operate. * Strong analytical skills with solid verbal and written communication skills Shows initiative, presents ideas to overcome challenges, self-starter * Experience with Okta and/or Keycloak application integrations * Experience with networking for web applications on AWS, Route53, Certificate Manager * Experience managing OpenSearch or ElasticSearch including instance provisioning, dashboard design for public traffic WAF data via Kinesis Firehose, and web search capability for WordPress Desired Skills: * Experience and Certifications: AWS, CISSP, CISM, CISA, CEH, CCSK, CCSP or related security certifications are nice to have * Experience with Amazon Web Services, Experience deploying and operating tools such as: Vulnerability Management, Incident Detection, Event/Audit collection and analysis, network and web application firewalls. * Relevant bachelor's degree or similar experience * Expert knowledge of usability and Section 508 compliance on user experience * Experience with Certification and Accreditation (C&A) of Federal Government systems for FISMA compliance with NIST 800-37. * Security Test and Evaluation (ST&E) of Federal Government systems. * Federal IT Security Professional (FITSP) Certification or equivalent. * Knowledge of Federal Information Security Management Act (FISMA), OMB Circular A-130, and the Department of Commerce's National Institute of Standards and Technology (NIST) Security Requirement: * Must be able to obtain a Public Trust ## Description Koniag Government Services is seeking a highly skilled AWS Engineer to support the Global Public Affairs Office of the US Department of State. The duties of this project team include the Cloud & Security Engineering & Operations, of their web assets hosted on Cloud Architecture running a Content Management System (WordPress). The Cloud & Security Engineer will be responsible for configuration management, deployments, pipeline automations, as well as security-aspects of system design, security tool/service analysis and selection, and subsequent implementation. Individuals will configure tools to meet the business, policy and security risk tolerance of customers., * Serve on the engineering team to support a WordPress site on AWS running a Kubernetes CI/CD pipeline and work with the cloud architect to implement, support and maintain all environments across the web assets to include lower environments. Achieve uptime, monitoring, and business continuity goals of the enterprise. * M anage a production environment running WordPress on AWS that will handle a high volume of traffic and traffic spikes to include establishing monitoring and operational procedures to ensure business continuity. * Be available to help outside 9-to-5 hours for infrequent production troubleshooting when necessary. * Maintain, support, and troubleshoot all other environments, including developer environments, testing environments, and pre-production environments using Kubernetes (EKS) or other AWS utilities. * Work closely with the AWS Architect, Product Owner, Scrum Master, engineers, and security engineers to define and build the initial service offering as well as the roadmap for future releases. * Possess in-depth knowledge of AWS services and cloud computing, and the ability to communicate architectural trade-offs/design options so that the Product Owner can make informed decisions. * Be a motivated team-player with the desire and ability to work in a fast-paced, exciting environment. * Participate in and support a team that is charged with coordinating and implementing various solutions required to support the AWS Cloud. * Implement proof of concepts/pilots for various solutions, develop operational plans for supporting all the solutions developed, and create documentation and implementation plans for various solutions used to access and leverage AWS. * Build and implement all cloud infrastructure to be the first field of any production support calls. * Engineer and design solutions on cloud platforms such as AWS. * Run risk logs and collaborate with the ISSO and System Owner to manage risk * Be the main point of contact for providing responses on Common Vulnerability Reports * Collaborate with technology team to document system boundaries and install controls in place germain to the technology and document with supporting evidence * Provide recommendations to meet relevant security regulations, controls and policy. * Implement the design by installing, configuring and testing cloud services and associated 3rd party services and software. * Determine how to leverage services from cloud providers and identify gaps that must be met through other tools, software, or 3rd party services. * Participate in assessment of system security controls to validate control implementation and identify weaknesses. * Perform continuous monitoring using the solutions and tools. * Perform security impact assessment of proposed changes to the environment to identify adverse changes in security risk posture or compliance. * Identifying new and innovative ways to use existing tool sets to automate security management, monitoring and related processes to reduce risk and costs. ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [MySQL Protocol Features You Should Be Aware Of](https://www.wearedevelopers.com/videos/100267-mysql-protocol-features-you-should-be-aware-of) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Branch your database like your code: How schema changes and pull requests go hand in hand](https://www.wearedevelopers.com/videos/350-branch-your-database-like-your-code-how-schema-changes-and-pull-requests-go-hand-in-hand) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)