AWS Cloud / Security Engineer

ECS Federal, LLC.
Stafford, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Job location

Stafford, United States of America

Tech stack

Agile Methodologies
Amazon Web Services (AWS)
Amazon Web Services (AWS)
Bash
Cloud Computing
Cloud Computing Security
Cloud Engineering
Identity and Access Management
Local Security Policy
Powershell
Scripting (Bash/Python/Go/Ruby)
Amazon Web Services (AWS)
GIT
Cloudformation
SC Clearance
Kubernetes
Software Version Control
Plan of Action and Milestones

Job description

Experteer Overview In this role you will design, build, and secure cloud infrastructure to support CODIS development across AWS environments. You will partner with cross-functional teams to keep Dev and Test stable and compliant, while implementing security controls and automated provisioning. You will contribute to security documentation and assessment evidence for ATO processes and NIST controls. The position blends hands-on cloud engineering with regulatory compliance in a mission-critical federal context. Compensation / Benefits * Design, build, and maintain AWS infrastructure (EC2, IAM, VPC, security groups, AMI lifecycle) for development, test, pre-prod, and prod. * Provision and manage infrastructure as code using CloudFormation. * Collaborate with CODIS development and infrastructure teams to ensure stability and availability of environments. * Provide off-hours support for system upgrades, patches, and maintenance as needed. * Implement and validate security settings across cloud, OS baselines, and application platforms. * Design and maintain least-privilege IAM roles and policies; remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config. * Implement NIST SP 800-53 controls in the cloud and document satisfaction within RMF/ATO processes. * Contribute to ATO package content (SSP narratives, control statements, diagrams, inventory artifacts). * Support security assessments with evidence, respond to assessor questions, and drive POA&M to closure. * Participate in Agile ceremonies, refine infrastructure and security stories, and provide sprint estimates. * Troubleshoot environment and pipeline issues with documented root cause and repeatable fixes. Tasks * Active Secret clearance * Hands-on AWS experience administering EC2, IAM, VPC, and AMIs * Experience implementing security settings and hardening across cloud and OS layers * Familiarity with NIST SP 800-53 controls and RMF/ATO processes, including security documentation and POA&M remediation * Kubernetes and container image experience * Git-based version control across multiple projects * Security+ certification or ability to obtain within 6 months * System administration experience * Strong attention to detail and troubleshooting ability * Scripting proficiency (PowerShell or Bash preferred) Key requirements *

Requirements

using OS baselines, and application platforms. * Design and maintain least-privilege IAM roles and policies; remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config. * Implement NIST SP 800-53 controls in the cloud and document satisfaction within RMF/ATO processes. * Contribute to ATO package content (SSP narratives, control statements, diagrams, inventory artifacts). * Support security assessments with evidence, respond to assessor questions, and drive POA&M to closure. * Participate in Agile ceremonies, refine infrastructure and security stories, and provide sprint estimates. * Troubleshoot environment and pipeline issues with documented root cause and repeatable fixes. Tasks * Active Secret clearance * Hands-on AWS experience administering EC2, IAM, VPC, and AMIs * Experience implementing security settings and hardening across cloud and OS layers * Familiarity with NIST SP 800-53 controls and RMF/ATO processes, including security documentation and POA&M aaaaaaa from * Kubernetes and container image experience * Git-based version control across multiple projects * Security+ certification or ability to obtain within 6 months * System administration experience * Strong attention to detail and troubleshooting ability * Scripting proficiency (PowerShell or Bash preferred) Key requirements *

Apply for this position