Cloud Platform Engineer

ICF International

United States

Hybrid

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ICF is seeking a Cloud Platform Engineer to deploy, configure, and maintain cloud infrastructure for a federal technology program. This remote-friendly role reports to the Cloud / Enterprise Architecture Lead and builds the multi-cloud landing zone using IaC and DevSecOps practices.

Work location is primarily remote with occasional onsite requirements in the Washington, DC Metro area. US citizenship and ability to obtain a Public Trust are required for federal contract work.

Qualifications

  • Bachelor's degree or equivalent.
  • 5+ years of experience in cloud engineering or platform operations.
  • 3+ years deploying and managing cloud landing zones in production environments (Azure, AWS, or GCP).
  • 2+ years implementing infrastructure as code using Terraform, Bicep, CloudFormation, or equivalent.
  • 2+ years supporting federal IT programs in health-related agencies.
  • U.S. Citizenship required due to federal contract requirements.
  • Ability to obtain and maintain a Public Trust background investigation.
  • Candidate must reside in the US and work must be performed in the US.

Responsibilities

  • Deploy and manage cloud landing zone architectures across Azure, AWS, and Google Cloud using automated provisioning and policy enforcement.
  • Implement infrastructure and policy as code with IaC templates and CI/CD pipelines.
  • Build and maintain system integrations using APIs, SDKs, webhooks, and event streams with proper secrets management.
  • Deploy and manage Azure Virtual Desktop for remote access scenarios.
  • Manage DNS-as-code for agency platforms and services, including certificates.
  • Integrate platform logs and alerts into central monitoring and use automation to flag misconfigurations and risky activity.
  • Perform quarterly reviews of configurations against security baselines and compliance requirements.
  • Coordinate with identity, device, and cybersecurity teams to enforce a consistent Zero Trust model.
  • Maintain documentation of cloud architectures and runbooks.
  • Resolve complex cloud platform issues escalated from operations.

Skills

Cloud engineering
DevSecOps
Infrastructure as code
IaC tooling
CI/CD pipelines
Security best practices

Education

Bachelor's degree or equivalent

Tools

Terraform
Bicep
CloudFormation
GitHub Actions
Azure Virtual Desktop

Job description

This role is contingent upon a contract award.

ICF is seeking a Cloud Platform Engineer to deploy, configure, and maintain cloud infrastructure for a federal technology program. Reporting to the Cloud / Enterprise Architecture Lead, this role is responsible for building and operating the multi-cloud landing zone environment using infrastructure-as-code and DevSecOps practices. Where the EA Lead sets architecture standards and policy, this role executes and maintains them in production.

Job Location: This is a remote-friendly position with occasional onsite requirements in the Washington, DC Metro area.

This position requires that the job be performed in the United States. If you accept this position, you should note that ICF does monitor employee work locations and blocks access from foreign locations/foreign IP addresses and also prohibits personal VPN connections.

What You'll Be Doing
  • Deploy and manage cloud landing zone architectures across Azure, AWS, and Google Cloud Platform using repeatable, automated provisioning with identity-first controls, guardrails, network security, and policy enforcement.
  • Implement infrastructure and policy as code using IaC templates, GitHub Actions, and CI/CD pipelines so environments can be created, updated, and audited consistently and without manual intervention.
  • Build and maintain system integrations using APIs, SDKs, webhooks, and event streams, with proper secrets management, least-privilege scoping, error handling, and logging.
  • Deploy and manage Azure Virtual Desktop for remote access scenarios and specific user personas.
  • Manage DNS-as-code for all agency platforms and services, including certificates and related configurations.
  • Integrate platform logs, alerts, and risk signals into central monitoring tools, and use automation to flag misconfigurations, risky behavior, and suspicious activity.
  • Perform quarterly reviews of cloud environment configurations against security baselines and compliance requirements, using compliance-as-code tooling where available.
  • Coordinate with identity, device, and cybersecurity teams to ensure cloud access policies, device compliance rules, and conditional access work together as part of a consistent Zero Trust model.
  • Maintain documentation of cloud architectures, configuration baselines, runbooks, and operational procedures so others can safely operate and extend the environment.
  • Resolve complex cloud platform issues escalated from operations and service desk teams.
Minimum Requirements
  • Bachelor's degree or equivalent
  • 5+ years of experience in cloud engineering or platform operations
  • 3+ years deploying and managing cloud landing zones in Azure, AWS, or GCP in production environments
  • 2+ years implementing infrastructure as code using tools such as Terraform, Bicep, CloudFormation, or equivalent
  • 2+ years supporting federal IT programs in HHS, NIH, FDA, or other health-focused agencies
  • U.S. Citizenship required due to federal contract requirements
  • Ability to obtain and maintain a Public Trust background investigation
  • Candidate must reside in the US, be authorized to work in the US, and work must be performed in the US
Preferred Qualifications
  • Experience managing Azure Virtual Desktop or equivalent virtual desktop infrastructure
  • Familiarity with NIST 800-53, FedRAMP, CIS benchmarks, and CISA Zero Trust guidelines as they apply to cloud infrastructure
  • Experience integrating platform telemetry with SIEM or SOAR tools for automated alerting and remediation
  • Relevant certifications such as Microsoft Azure Administrator, AWS SysOps Administrator, or Google Cloud Professional Cloud Engineer
  • Experience with DevSecOps delivery practices including automated security testing in CI/CD pipelines
Working at ICF

ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer . Together, our employees are empowered to share their expertise and collaborate with others to achieve perso

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Platform Engineer
Cloud Platform Engineer

ICF Olson • Washington

Hybrid
USD 108,006 - 183,610
Cloud Platform Engineer
Cloud Platform Engineer

ICF • Annapolis (MD)

Hybrid
USD 108,000 - 184,000
Cloud Platform Engineer
Cloud Platform Engineer

ICF • Richmond (VA)

Hybrid
USD 108,000 - 184,000
Cloud Platform Engineer - Remote, Multi-Cloud & IaC
Cloud Platform Engineer - Remote, Multi-Cloud & IaC

ICF • Richmond (VA)

Hybrid
USD 108,000 - 184,000
Cloud Engineer (Clearance required)
Cloud Engineer (Clearance required)

ICF • Reston (VA)

On-site
USD 89,000 - 153,000
Cloud Platform Engineer - Multi-Cloud IaC & DevSecOps
Cloud Platform Engineer - Multi-Cloud IaC & DevSecOps

ICF International • United States

Hybrid
USD 120,000 - 180,000
Remote Cloud Platform Engineer: Multi-Cloud IaC & DevSecOps
Remote Cloud Platform Engineer: Multi-Cloud IaC & DevSecOps

ICF • Annapolis (MD)

Hybrid
USD 108,000 - 184,000
Senior Cloud Architect - Remote
Senior Cloud Architect - Remote

ICF • Reston (VA)

On-site
USD 144,000 - 245,000
Remote Cloud Platform Engineer: Multi-Cloud Landing Zone
Remote Cloud Platform Engineer: Multi-Cloud Landing Zone

ICF Olson • Washington

Hybrid
USD 108,006 - 183,610
Software Security Engineer- Cloud/GovCloud (Top Secret cleared)
Software Security Engineer- Cloud/GovCloud (Top Secret cleared)

ICF • Virginia (MN)

On-site
USD 81,000 - 139,000