Cloud Security Engineer

ECS

Arlington (VA)

Hybrid

USD 140,000 - 170,000

Full time

24 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Everforth ECS in Arlington, VA, with hybrid work options, seeks a Cloud Security Engineer to manage vulnerability triage, scans, and risk-based analysis. You will drive remediation across cloud and on‑prem systems, implement CSPM and security tooling, and support RMF ATO processes with executive reporting.

You will partner with platform and application teams, perform architecture reviews, and deliver actionable guidance while communicating findings to leadership.

Qualifications

  • US citizenship required and ability to pass a Public Trust investigation.
  • Bachelor's degree in a related field.
  • 7+ years IT experience with 3+ years in cloud security or vulnerability management.
  • CISSP, CISA, CISM or relevant cloud certifications.

Responsibilities

  • Own vulnerability triage, validation, prioritization, and remediation tracking across cloud, on-prem, and applicaton environments.
  • Conduct authenticated and unauthenticated scans of web apps, APIs, servers, databases, and network devices.
  • Perform risk-based analysis of findings including false positives and remediation verification.
  • Partner with platform, cloud, and application teams to drive remediation outcomes.
  • Implement, operate, and tune CSPM tools and vulnerability scanners across AWS, Azure, and GCP.
  • Support RMF Step 6 continuous monitoring and ATO processes.

Skills

US citizenship
Python scripting
Bash scripting
PowerShell scripting
Terraform
risk prioritization

Education

Bachelor's degree

Tools

Python
Bash
PowerShell
Terraform

Job description

Job Description

Everforth ECS is seeking a Cloud Security Engineer to work in our Arlington, VA office/remote. We are looking for a security engineer who understands vulnerability management as an end-to-end discipline. Not just scanning, but contextualizing findings, eliminating false positives, and driving remediation outcomes across engineering, development and platform teams. You have hands-on experience operating security tooling across AWS and Azure, you can perform architecture reviews and deliver actionable guidance, and you’re comfortable supporting ATO processes and continuous monitoring under RMF. You work well without heavy direction, you know how to prioritize risk in complex environments, and you can translate technical findings into clear reporting for both technical and executive audiences. You are comfortable giving technical presentations to leadership, that results in understanding and acceptance. You are familiar with Artificial Intelligence GPT prompting.

What You’ll Do
  • Own vulnerability triage, validation, prioritization, and remediation tracking across cloud, on-prem, and application environments
  • Conduct authenticated and unauthenticated scans of web applications, APIs, servers, databases, and network devices
  • Perform risk-based analysis of findings including false positive validation, asset context evaluation, and remediation verification
  • Partner with platform, cloud, and application teams to drive sustainable remediation outcomes
  • Implement, operate, and tune CSPM tools, vulnerability scanners, and application security tooling across AWS, Azure, and GCP
  • Perform security architecture and design reviews covering IAM, encryption, logging, monitoring, and network controls
  • Support static, dynamic, container, and dependency scanning and help dev teams understand and fix what’s found
  • Perform secure configuration reviews against DISA STIGs and other security baselines
  • Automate vulnerability validation, remediation tracking, and control validation using Python, Bash, PowerShell, and Terraform
  • Manage certificate lifecycle including inventory, renewal tracking, and deployment coordination
  • Support ATO activities, POA&M management, and RMF Step 6 continuous monitoring
  • Build and maintain runbooks, technical reports, executive dashboards, and risk summaries
  • Assist during security audits and incident response investigations involving vulnerable systems
  • Prototype and provide training on new tools and solutions

Salary: $140,000 - $170,000

Benefits

General Description of Benefits

Required Skills
  • Must have US citizenship.
  • Ability to pass a Public Trust investigation.
  • Bachelor's degree in a related field.
  • 7 years of overall IT experience, with at least 3 years focused specifically on cloud security or vulnerability management
  • CISSP, CISA, CISM, or relevant cloud provider certifications required
  • Hands-on scripting experience in Python, Bash, or PowerShell
  • Familiarity with compliance frameworks including SOC 2, CIS, NIST, or ISO 27001
  • Understanding of CVEs, CWEs, CVSS scoring, and how to apply them in practice
  • Experience generating AI GPT prompts the produce the expected output
Desired Skills
  • Active security clearance

#EverforthECS1

ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.

Everforth ECS is the federal segment of Everforth, a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

We Value
  • Attracting and developing top talent and high-performing teams
  • Fostering a culture that is engaging, accountable, and mission-driven

Meet the challenge. Make a difference with Everforth ECS!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

ECS • Washington

Hybrid
USD 120,000 - 130,000
Cloud DevOps Engineer
Cloud DevOps Engineer

ECS • Arlington (VA)

Hybrid
USD 130,000 - 160,000
Cloud Engineer - MID
Cloud Engineer - MID

ECS • Fairfax (VA)

On-site
USD 125,000 - 173,000
AWS Cloud / Security Engineer
AWS Cloud / Security Engineer

ECS • Stafford (VA)

Hybrid
USD 100,000 - 120,000
Senior Cloud Engineer
Senior Cloud Engineer

ECS • Fairfax (VA)

Hybrid
USD 170,000 - 200,000
Hybrid work model
Information Systems Security Engineer SME
Information Systems Security Engineer SME

ECS • Stafford (VA)

On-site
USD 120,000 - 150,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

ECS • Virginia (MN)

On-site
USD 130,000 - 160,000
Enterprise Vulnerability Assessment Program- AI Focused
Enterprise Vulnerability Assessment Program- AI Focused

ECS • Washington

On-site
USD 160,000 - 205,000
Senior Cloud Engineer
Senior Cloud Engineer

Everforth ECS • Merrifield (VA)

Hybrid
USD 120,000 - 160,000
Sr Cloud DevOps Engineer
Sr Cloud DevOps Engineer

ECS • Virginia (MN)

Hybrid
USD 180,000 - 205,000