Cloud Security Engineer

ECS Corporate Services, LLC
Fairfax, VA, United States
4 days ago
Apply on www.disabledperson.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$120,000.0 - $160,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Microsoft Azure Cloud Computing Security Configuration Management Cyber Security System Configuration Linux Monitoring of Systems Identity and Access Management Issue Tracking Systems Networking Hardware Intrusion Detection Systems
+14 more
Information Systems Security Architecture Professional Network Administration Runbook Security Information and Event Management Systems Integration Software Vulnerability Management Data Logging Enterprise Software Applications Cloud Platform System In-Plane Switching (IPS) Firewalls (Computer Science) CIS Benchmarks Network Server Vulnerability Analysis

Job description

Everforth ECS is seeking a Cloud Security Engineer to work in our Fairfax, VA office.

Everforth ECS is seeking a Microsoft Azure based Cloud Security Engineer to support the design, implementation, configuration, and maintenance of cybersecurity technologies, controls, and secure infrastructure capabilities across enterprise systems and security operations environments. This role will help ensure that systems, applications, networks, endpoints, and cloud environments are protected, monitored, hardened, and aligned with organizational security requirements.

The ideal candidate has hands-on experience implementing and supporting security tools, troubleshooting technical security issues, applying secure configuration standards, and collaborating with SOC analysts, system administrators, network engineers, control assessors, and program stakeholders to improve the organization’s security posture., Security Engineering & Implementation

  • Implement, configure, maintain, and support cybersecurity technologies, tools, platforms, and technical security controls.
  • Assist with engineering secure solutions for enterprise systems, networks, endpoints, cloud environments, applications, and operational support platforms.
  • Support security architecture decisions by providing implementation input, technical feasibility analysis, and operational considerations.
  • Apply security engineering practices across the system lifecycle, including planning, deployment, configuration, testing, operations, and sustainment.

System Hardening & Secure Configuration

  • Apply secure configuration baselines, hardening standards, and technical control requirements to servers, endpoints, network devices, applications, and Azure cloud services.
  • Review system configurations, permissions, authentication settings, logging settings, encryption settings, and access controls for alignment with security requirements.
  • Support implementation of vulnerability remediation, configuration changes, patching activities, and risk reduction measures in coordination with system owners.
  • Validate that security controls are operating as intended and support remediation when control gaps or technical weaknesses are identified.

Security Tool Support & Integration

  • Support deployment, tuning, and sustainment of tools such as SIEM, EDR, vulnerability scanners, firewalls, IDS/IPS, email security, identity security, logging, and monitoring platforms.
  • Integrate security tools with enterprise systems, data sources, ticketing systems, dashboards, identity platforms, and incident response workflows.
  • Troubleshoot tool performance, connectivity, data collection, alerting, agent health, policy enforcement, and integration issues.
  • Coordinate with SOC analysts, engineers, threat hunters, and system administrators to ensure security tooling supports monitoring, investigation, and response requirements.

Vulnerability, Risk & Remediation Support

  • Analyze vulnerability scan results, configuration findings, security alerts, and control weaknesses to support prioritization and remediation planning.
  • Work with technical teams to identify root causes, validate remediation options, and confirm closure of vulnerabilities or security findings.
  • Support risk treatment activities by documenting technical constraints, compensating controls, residual risk, and remediation status.
  • Assist control assessors and assessment leads by providing technical evidence, configuration details, screenshots, logs, and implementation explanations.

Incident Response & Operational Support

  • Provide technical engineering support during security incidents, investigations, containment activities, eradication efforts, and recovery actions.
  • Assist with log collection, tool validation, endpoint or network containment actions, access changes, system isolation, and forensic preservation activities as directed.
  • Develop and maintain scripts, queries, automation, and repeatable procedures to improve security operations and engineering response efficiency.
  • Participate in after-action reviews and support implementation of technical improvements based on incident lessons learned.

Documentation, Standards & Continuous Improvement

  • Develop and maintain technical documentation, configuration standards, diagrams, implementation guides, runbooks, and operational procedures.
  • Support change management, configuration management, asset documentation, and security engineering governance processes.
  • Recommend improvements to security tools, engineering processes, baselines, automation, monitoring coverage, and technical control implementation.
  • Stay current with emerging threats, security technologies, hardening guidance, and engineering best practices relevant to enterprise security environments.
  • Other duties, as assigned.

Salary Range: $120,000 - $160,000

Requirements

  • Active DoD Secret security clearance.
  • Bachelor’s degree with 5+ years of experience in cybersecurity engineering, security operations, systems administration, network administration, cloud security, or related technical security roles.
  • Active DoD 8140 IAT Level II Security+ (or higher).
  • Ability to work in a hybrid capacity in Fairfax, VA (up to 3 days in office).
  • Ability to travel < 20% throughout the lifespan of the Program to CONUS / OCONUS customer sites and government installations.
  • Hands-on experience:
  • Implementing, configuring, or supporting Microsoft Azure-Based security tools, technical controls, secure configurations, and enterprise security technologies.
  • With Windows, Linux, networking, identity and access management, endpoint security, logging, vulnerability management, and common security architectures.
  • Experience applying security requirements, hardening standards, vulnerability remediation guidance, and configuration baselines across Azure Cloud environments.
  • Ability to troubleshoot technical security issues involving systems, networks, applications, integrations, agents, logs, policies, and monitoring tools.
  • Familiarity with cybersecurity frameworks, standards, and best practices such as NIST, CIS Controls, DISA STIGs, ISO 27001, or organizational security baselines.
  • Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
  • Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.disabledperson.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · World Congress 2023

Videos

See all

Related articles

See all