> Markdown version of [/jobs/ext/881545-aws-cloud-security-engineer-cleared](https://www.wearedevelopers.com/jobs/ext/881545-aws-cloud-security-engineer-cleared). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AWS Cloud Security Engineer - Cleared - **Company:** RightDirection Technology Solutions - **Location:** Washington, DC, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Bash Shell, Cloud Computing Security, Cyber Security, DevOps, Identity and Access Management, Python (Programming Language), Network Security, Routing, OpenID, Zero Trust Network Access, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, Software Vulnerability Management, AWS Cdk, Data Logging, Scripting, Firewalls (Computer Science), Information Technology, CIS Benchmarks, Cloudwatch, Terraform, Devsecops, Vulnerability Analysis - **Published:** June 9, 2026 - **Apply:** https://www.careerboard.com/us/en/find-jobs-in-United-States/-F03DEB14C1FC1840BF/ ## About the Role * Must possess an active Security Clearance * Bachelor's degree in Computer Science, Cybersecurity, Engineering, or related field (or equivalent experience) * 3+ years of experience in cloud security or infrastructure security * Strong understanding of STIG hardening, vulnerability scanning, and remediation processes * Strong hands-on experience with AWS security services and architecture * Understanding of IAM, encryption (KMS), and key management best practices * Experience with network security in AWS (VPCs, routing, firewalls) * Proficiency in Scripting languages (Python, Bash) * Experience with Infrastructure as Code (Terraform or AWS CDK Python) * Understanding of compliance frameworks such as NIST 800-53, RMF, CIS Benchmarks, and FedRAMP Desired Qualifications: * Experience with STIG hardening * Experience with container security (EKS, ECS, image scanning) * Knowledge of identity federation (SSO, SAML, OIDC) * Experience integrating AWS logs with SIEM platforms * Familiarity with Zero Trust architecture principles * AWS certifications (AWS Certified Security - Specialty, Solutions Architect, etc.) * Security certifications (CISSP, CISM, CEH, or Security+) ## Description RDTS is seeking a skilled AWS Security Engineer to design, implement, and maintain secure cloud architectures within AWS. This role is responsible for strengthening cloud security posture, implementing preventative and detective controls, and ensuring compliance with organizational and regulatory requirements. The ideal candidate combines deep AWS technical knowledge with a strong security engineering mindset. The position is 100% onsite and full-time, Monday-Friday with standard office hours. Key Responsibilities: * Design and implement secure AWS architectures aligned with security best practices * Configure and manage IAM policies, roles, and permission boundaries using least-privilege principles * Implement and manage security services such as AWS GuardDuty, Security Hub, Inspector, Macie, and WAF * Develop and maintain infrastructure security controls using Infrastructure as Code (Terraform, AWS CDK Python) * Perform threat modeling, risk assessments, and vulnerability remediation * Implement logging, monitoring, and alerting strategies using CloudTrail, CloudWatch, and centralized SIEM solutions * Participate in incident response efforts for cloud-related security events * Automate security checks and compliance validation across AWS environments * Collaborate with DevOps and engineering teams to embed security into CI/CD pipelines (DevSecOps) * Responding to RFIs ## Related Videos - [Building Reliable Serverless Applications with AWS CDK and Testing](https://www.wearedevelopers.com/videos/812-building-reliable-serverless-applications-with-aws-cdk-and-testing) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [The power of Cloud Development Kit (CDK): How to get the most out of it](https://www.wearedevelopers.com/videos/740-the-power-of-cloud-development-kit-cdk-how-to-get-the-most-out-of-it) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026)