AWS Cloud Security Engineer

Ariel Partners

Stafford (VA)

Hybrid

USD 110,000 - 140,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ariel Partners in Stafford, VA is seeking an AWS Cloud Security Engineer to join our hybrid office. You will design and maintain secure AWS infrastructure for CODIS, supporting multiple environments and ensuring compliance with security controls.

Responsibilities include cloud security design, IaC with CloudFormation, RMF/ATO alignment, and collaboration with development and infrastructure teams to maintain stable Dev and test environments. Hybrid schedule and security-focused role.

Qualifications

  • Active Secret clearance is required.
  • Minimum 3 years of experience.
  • Hands-on AWS experience with EC2, IAM, VPC, and AMIs.
  • Security settings and hardening across cloud and OS.
  • Familiarity with NIST SP 800-53 controls and RMF/ATO.
  • Experience with Kubernetes and container images.
  • Experience with Git-based version control.
  • Security+ certification or ability to obtain within 6 months.
  • System administration experience.
  • Strong attention to detail and troubleshooting.
  • Scripting in PowerShell or Bash preferred.
  • Experience with security settings implementation.

Responsibilities

  • Work in Security & Infrastructure team for cloud-based development in AWS.
  • Design, build, and maintain AWS infrastructure for CODIS environments (prod/test/pre-prod).
  • Provision and manage infrastructure via CloudFormation.
  • Collaborate with CODIS teams to keep Dev/Test environments stable and available.
  • Occasional off-hours support for system upgrades and maintenance.
  • Implement and validate security settings across cloud and OS layers.
  • Provide AWS network and security support including VPC/subnets, SGs, NACLs, encryption, KMS, TLS trust.
  • Design and maintain least-privilege IAM roles and policies; remediate findings.
  • Implement NIST SP 800-53 controls in cloud and document satisfaction within RMF/ATO.
  • Contribute to ATO artifacts and security documentation.
  • Support assessments with evidence and POA&M remediation.
  • Participate in Agile ceremonies and provide realistic estimates.
  • Troubleshoot environments and pipelines with documented root causes.

Skills

Active Secret Clearance
3+ years experience
Scripting (PowerShell/Bash)

Tools

AWS (EC2, IAM, VPC)
Kubernetes
Git
Terraform
CloudFormation
PowerShell
Bash

Job description

Candidate must be located in DMV area and able to commute to Stafford, VA office 4-5 times per month.

Security Clearance: Active Secret Clearance required.

We are seeking an AWS Cloud Security Engineer to work in our Stafford, VA (hybrid) office.

The Team provides focused Agile software development and maintenance for CODIS, a mission-critical application for the FBI. CODIS supports a database repository of DNA profiles from individuals, unsolved crime scene evidence, and missing persons. CODIS software allows local, state, and national laboratories to compare DNA profiles electronically, thereby linking serial crimes to each other and identifying suspects by matching DNA profiles from crime scenes to individuals’ profiles.

RESPONSIBILITIES
  • Work in the Security & Infrastructure team for cloud-based development in AWS
  • Design, build, and maintain AWS infrastructure supporting CODIS development ,test , pre-prod and prod environments, including EC2, IAM, VPC networking, security groups, and AMI lifecycle management.
  • Provision and manage infrastructure through code using CloudFormation.
  • Partner with the CODIS development and infrastructure teams to keep Dev and Test environments stable, current, and available to the sprint teams.
  • Occasional need for off-hours support forsystemupgrades, patches and maintenance activities
  • Implement and validate security settings across cloud infrastructure, operating system baselines, and application platforms.
  • Provide AWS network and security support, including subnet and routing design, security group and NACL configuration, encryption in transit and at rest, KMS key management, and enterprise certificate and TLS trust management.
  • Design and maintain least privilege IAM roles and policies, and remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
  • Implement NIST SP 800-53 security controls in the cloud environment and document how each is satisfied, working within the NIST Risk Management Framework.
  • Contribute technical content to ATO packages, including System Security Plan (SSP) narratives, control implementation statements, diagrams, and inventory artifacts.
  • Support security assessments by producing evidence on request, responding to assessor questions, and driving Plan of Action and Milestones (POA&M) items to closure.
  • Participate in Agile ceremonies, refine infrastructure and security stories, and provide realistic estimates to the sprint team.
  • Troubleshoot environment and pipeline issues with precision, and document root cause and resolution so the fix is repeatable.
MANDATORY SKILLS/EXPERIENCE

Note: Candidates who do not have the mandatory skills will not be considered

  • Active Secret clearance
  • Minimum 3 years of experience
  • Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
  • Practical experience implementing security settings and hardening across cloud and operating system layers.
  • Working familiarity with NIST SP 800-53 controls and the RMF or ATO process, including contributing to security documentation, assessment evidence, or POA&M remediation on an accredited system.
  • Experience working with Kubernetes and container images
  • Experience using or managing Git-based version control across multiple projects
  • Current Security+ certification or the ability to obtain within 6 months
  • SystemAdministration experience
  • Strong attention to detail and solid troubleshooting ability
  • Proficiency in scripting language(s), PowerShell or bash preferred
  • Experience with security settings implementation
DESIRED SKILLS
  • Experience in Agile SDLC
  • Familiarity with FedRAMP, AWS GovCloud, or CJIS Security Policy requirements.
  • Experience using Infrastructure as Code tools like Terraform and CloudFormation
  • Previous experience working in a software development shop
  • Knowledge of security monitoring/scanning tools and their usage
  • Linux experience is a bonus.

At Ariel Partners, we solve the most difficult problems that inhibit technology from enabling our customers to achieve their goals. Our vision is to be recognized by our stakeholders as an elite provider of IT solutions, so when they have their biggest challenges, we are on their short list. We are looking for team members who share our values of: Integrity to do the right thing even when it hurts; Commitment to the long-term success and happiness of our customers, our people, and our partners; Courage to take on difficult challenges, accept new ideas, and accept incremental failure; and the constant pursuit of Excellence. Ariel Partners is an Equal Opportunity Employer in accordance with federal, state, and local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AWS Cloud Security Engineer with Active Secret Clearance
AWS Cloud Security Engineer with Active Secret Clearance

Ariel Partners • Stafford (VA)

Hybrid
USD 120,000 - 160,000
Technical Expert
Technical Expert

Ariel Partners • Stafford (VA)

On-site
USD 90,000 - 120,000
AWS Cloud Security Engineer - Secret Clearance, Hybrid VA
AWS Cloud Security Engineer - Secret Clearance, Hybrid VA

Ariel Partners • Stafford (VA)

Hybrid
USD 120,000 - 160,000
Hybrid AWS Cloud Security Engineer – Secret Clearance
Hybrid AWS Cloud Security Engineer – Secret Clearance

Ariel Partners • Stafford (VA)

Hybrid
USD 110,000 - 140,000
Test Engineer
Test Engineer

Ariel Partners • Stafford (VA)

On-site
USD 90,000 - 120,000
Cloud Security Specialist (AWS) – Washington, DC
Cloud Security Specialist (AWS) – Washington, DC

Citi Us • Falls Church (VA)

On-site
USD 100,000 - 140,000
Mid-Level Software Developer
Mid-Level Software Developer

Ariel Partners • Stafford (VA)

On-site
USD 90,000 - 110,000
AWS Cloud Engineer
AWS Cloud Engineer

RMantra Solutions • Alexandria (VA), Northern (KY)

Hybrid
USD 120,000 - 160,000
Security Engineer
Security Engineer

Inadev • Reston (VA)

Hybrid
USD 120,000 - 150,000
C# Application Developer with Active Secret Clearance
C# Application Developer with Active Secret Clearance

Ariel Partners • Stafford (VA)

On-site
USD 100,000 - 130,000