Find Jobs
Find Jobs Near You – Available Work in Your Location
Cloud Security Engineer * - Suitland, MD
Job Description
Cloud Security Engineer
- - Suitland, MD
Requires US CitizenshipEmployment Term and Type:
Regular, Full TimeRequired Security Clearance:
(Minimum for hire)
TS/SCIRequired Education:
(Minimum for hire) Master's degree in Engineering, Computer Science, Information Technology, or related technical discipline; additional relevant experience may be considered in lieu of education when permitted by applicable contract requirements.
Salary Band:
$153,717 to $166,217
FGS, LLC
is seeking a Cloud Security Engineer to engineer, implement, assess, and improve cybersecurity capabilities for secure cloud and hybrid-cloud solutions supporting the Office of Naval Intelligence in Suitland, Maryland. The selected candidate will integrate security requirements into cloud platforms, applications, data services, networks, and automated delivery pipelines throughout the system lifecycle.
The Cloud Security Engineer will work with cloud architects, systems engineers, developers, network engineers, cybersecurity personnel, and Government stakeholders to implement security controls, identify and remediate technical risk, and support authorization and continuous monitoring. This role requires hands-on technical depth in cloud security engineering, vulnerability mitigation, secure configuration, automation, and classified Government information systems.
Primary Duties and Responsibilities:
- Engineer and implement cloud-security controls for identity, access management, segmentation, encryption, logging, monitoring, vulnerability management, and configuration management.
- Assess cloud and hybrid-cloud architectures, services, configurations, and workloads for security gaps, vulnerabilities, threats, and compliance risks.
- Develop prioritized remediation plans and coordinate corrective actions with cloud, systems, network, application, data, and cybersecurity teams.
- Integrate security into Infrastructure as Code, CI/CD, DevSecOps, container, platform, and application-development workflows.
- Develop and maintain secure cloud baselines, configuration standards, hardening guidance, reusable security patterns, and implementation procedures.
- Implement and validate least privilege, role-based and attribute-based access, privileged-access controls, multifactor authentication, federation, and service identities.
- Design and implement security logging, telemetry, alerting, audit, and SIEM integration for cloud platforms and workloads.
- Support vulnerability scanning, secure configuration assessment, patch and remediation tracking, and validation using ACAS, Nessus, STIG, SCAP, cloud-native, and related tools.
NIST SP 800-53, CNSSI
1253, DoD Cloud Computing Security Requirements Guide, DISA STIGs, and applicable Department of the Navy and Intelligence Community requirements.
- Support risk assessments, security-control implementation, system authorization, continuous monitoring, and development of required cybersecurity artifacts.
- Evaluate cloud-native and third-party security technologies and conduct technical trade studies, proofs of concept, and implementation reviews.
- Implement security automation, policy as code, secrets management, cryptographic key management, certificate management, and automated compliance checks.
- Investigate security events and technical findings, determine root cause and mission impact, and coordinate containment, remediation, and lessons learned.
- Review implementation artifacts and delivered capabilities for conformance with approved architectures, security requirements, and technical baselines.
- Brief Government and program leadership on cloud-security posture, technical risks, remediation status, dependencies, and recommended decisions.
Required Qualifications:
- U.S. Citizenship.
- Active TS/SCI security clearance at the time of hire.
- Minimum eight years of relevant cybersecurity experience.
- At least five years supporting complex Government information systems.
- Demonstrated technical depth in cloud security, system security engineering, vulnerability mitigation, or a comparable cybersecurity specialization.
- Experience implementing cloud-security controls for identity, networking, encryption, logging, monitoring, vulnerability management, and secure configuration.
- Experience assessing cloud architectures and technical implementations, documenting security gaps, and developing actionable remediation plans.
- Experience developing security documentation and supporting risk management, security-control assessment, system authorization, or continuous-monitoring activities.
- Experience integrating security requirements into engineering, development, Infrastructure as Code, DevSecOps, or automated deployment workflows.
- Knowledge of applicable NIST, DoD, Department of the Navy, and Intelligence Community cybersecurity standards and guidance.
- Strong technical writing, analytical, problem-solving, collaboration, and verbal communication skills.
Desired Qualifications:
- Professional cloud-security certification, such as
CCSP, AWS
Certified Security - Specialty, Microsoft Certified Cybersecurity Architect Expert, or comparable certification.
- CISSP, CASP+, CISM, Security+ CE, or another certification appropriate to the assigned DoD 8140 work role.
- Experience with AWS GovCloud, Azure Government, or other accredited Government cloud environments.
- Experience with cloud-security posture management, cloud workload protection, containers, Kubernetes, and runtime security.
- Experience with Terraform, CloudFormation, Bicep, Ansible, GitLab, or comparable Infrastructure as Code and automation technologies.
- Experience with SIEM integration, security orchestration and automation, endpoint protection, network detection, and cloud-native security services.
- Experience with cryptographic key management, secrets management, certificate services, data protection, and policy as code.
- Experience implementing Zero Trust security principles in cloud and hybrid-cloud environments.
Education Requirements:
- Master's degree in Engineering, Computer Science, Information Technology, or a related technical discipline.
Additional relevant experience may be considered in lieu of education when permitted by applicable contract requirements.
Security Clearance Requirements:
- U.
S. citizenship and an active TS/SCI clearance are required at the time of hire. The employee must maintain clearance eligibility throughout employment.
Physical, Work Environment & Conditions:
- Primarily onsite in Suitland, Maryland, with limited telework when authorized.
- Work is performed in a professional office, secure-facility, and occasional data-center or equipment-room environment.
- Must be able to use standard office and information-technology equipment and work at a computer for extended periods.
- Must be able to communicate effectively with technical, mission, program, and senior leadership stakeholders.
- Occasional schedule flexibility or limited travel may be required to support security assessments, integration, or deployment activities.
This position description is not intended as, nor should it be construed as, exhaustive of all responsibilities, skills, efforts, or working conditions associated with this job. This and all positions are eligible for organization-wide transfer. Management reserves the right to assign or reassign duties and responsibilities at any time.
Company Overview:
FGS, LLC
is an international, leading-edge provider of technical services to include Secure Information Systems, Security and Engineering and Intelligence Analysis. Our turn-key solutions include design, engineering, deployment operations, and sustainment of secure technology and critical infras...Visit the Employer site for more details
Benefits
- Dental Insurance