Senior Cloud Security Engineer-TS/SCI + poly Onsite

Sap National Security Services Inc.
Chantilly, VA, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Software Applications Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cloud Foundry Cyber Security Command-Query Responsibility Segregation (Software Development) Serialization Linux
+38 more
DevOps Identity and Access Management Intrusion Detection and Prevention JSON Unix Shell Log Analysis Node.Js Process Driven Development Scrum Methodology Software Architecture Ansible SAP (Applications) SAP Implementation Service-Oriented Architecture Security Information and Event Management Software Engineering Systems Integration Web Applications YAML Cloud Platform System Spring Cloud Spring-boot Firewalls (Computer Science) Backend Cloudformation Containerization AngularJS Kubernetes Infrastructure Automation Frameworks Information Technology SAP S/4HANA Front End Software Development Cloudwatch Terraform Splunk Docker Vulnerability Analysis Microservices

Requirements

Must be a U.S. Citizen with active TS/SC with Poly; NS2 does not offer Visa sponsorships for this role.

All internals must have manager’s approval to transfer.

The NS2 Senior Cloud Security Engineer candidate will be responsible for leading the development of a stand-alone implementation of SAP Products and solutions that meet our client’s complex needs. This position is located onsite in Chantilly, VA. Candidate should be hands-on and has the necessary knowledge of cloud-based systems and associated security principals to effectively work with minimal supervision in a cloud environment, understanding the complexities that come with cloud, and can effectively communicate cloud design/architecture ideas to technical as well as non-technical client stakeholders. This is a full-time position, and due to security requirements is on-site only.

Skills/Experience Requirements

Develop and implement cloud-based security policies, standards, and procedures. Maintain role-based access controls for cloud-based system components, users, and applications. Implement security controls and measures, such as encryption, access controls, and identity management, to protect cloud-based assets. Deep understanding of cloud-based security technologies, including firewalls, intrusion detection and prevention systems, vulnerability scanners, and log analysis tools. The ideal candidate will possess deep technical skills in software architecture and cloud computing as well as very strong written and public communication skills. Strong Design & Architecture skills- Experience in the overall architecture of software applications for products and solutions. Expertise using Infrastructure as Code tools such as CloudFormation, Terraform, Ansible and Chef. Experience with AWS Management Tools as CloudWatch and Cloud Trail. Understanding cloud relevant data serialization languages such as JSON and YAML. Proven strong system administration experience. 5+ years of experience with Linux (various distributions) and demonstrated strong UNIX Shell scripting knowledge. 5+ years of experience with native cloud backend and frontend development technologies such as: node.js, Spring Boot, Spring Cloud, Angular etc. Expertise in cloud-native architecture and development, including microservices, event-driven, and CQRS architecture. Experience in designing/architecting horizontally scalable, multi-tenant web applications, within a large-scale service-oriented architecture, delivered in a SaaS (software as a service) SaaS Architectural knowledge gained from experience. Sound experience in cloud environments (AWS, Azure and/or GCP) Develop and deploy application on Docker container. Experience with Kubernetes and associated tools like Helm, Kustomize and ArgoCD for microservice orchestration. Detailed understanding of Cloud Foundry architecture and development methodology. Implementing Agile practices and methodologies in software development Utilizing expert knowledge of full-stack cloud-native technologies, including cloud-based development with Cloud Foundry, Kyma, Azure, AWS, etc. Working with DevOps methodologies and tools to establish and execute a flawless development process, pipelines. Knowledge of Azure DevOps will be a good skill to have in this role Collaborating with all development process contributors, including Product Managers, Architects, Project Management, Scrum Masters, Developers, User Assistance Developers, and DevOps to ensure successful product delivery. Develop expertise on Product Standards like Security and Performance and incorporate them into the design. Hold or have the ability to obtain a required DoD 8570 certification (e.g., CASP+, CISSP) within 6 months of hire. Relevant cloud provider certifications. Desired Experience and Skills

Strong knowledge of SAP processes and experience in enterprise software development would be an added advantage. Industry recognized system administration certification Good Knowledge of SAP Business Technology Platform (BTP) and various services. SAP Full stack experience with S/4HANA implementations or extensions/integrations with BTP Understanding the core security concepts of BTP Additional Requirements

Systems Administration and/or Cloud certifications a plus. Knowledge of Splunk or similar SIEM Platform. BA/BS Degree is required. Ideally in Computer Science, Cyber Security, Information Security, Engineering, Information Technology. MA/MS Preferred. Top Secret Clearance with Polygraph

About the company

SAP is the global market leader for business software and related services. SAP National Security Services Inc.® (SAP NS2®) is an independent U.S. subsidiary of SAP. At SAP NS2, we leverage best-in-breed technologies engineered by SAP to protect the lives, assets and information of Americans. We offer SAP solutions with specialized levels of security and support to meet the requirements of U.S. national security and critical infrastructure customers.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · WWC 2025

1:35 min

Centralizing configuration logic with native YAML block references

Matthieu Vincent Matthieu Vincent · Europe 2026 Virtual

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

2:00 min

Introduction to YAML syntax and basic formatting

Chris Ayers · LIVE

Videos

See all

Related articles

See all