Cloud Security Engineer

Steampunk

Washington (District of Columbia)

On-site

USD 100,000 - 155,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

AWS/Azure/GCP certifications
Tuition for certifications
Health insurance
Retirement plan

Job summary

Steampunk is hiring a Cloud Security Engineer to join our DevSecOps practice, delivering secure cloud architectures for migration, optimization, and deployment. You will work with stakeholders to balance security with usability and monitor cloud environments for threats.

You will design secure solutions, implement IaC, and collaborate with developers to enforce security processes, while developing documentation and security artifacts for compliance.

Qualifications

  • Ability to obtain a U.S. government Security Clearance
  • BS Degree in an IT field OR BS in a non-IT field and 2 years related IT experience
  • 5 Years of Experience architecting, designing, developing, and implementing cloud solutions
  • 5 Years of Experience with one or more clouds (AWS, Azure, or GCP)
  • 5 Years of Experience with Git SCM providers such as GitHub, GitLab, Bitbucket
  • 5 Years of Experience with systems development in an Agile environment
  • 5 Years of Experience implementing infrastructure as code and orchestration
  • 5 Years of Experience providing conducting monitoring, risk assessment, threat modeling and security testing in cloud environments
  • 5 Years of Experience documenting POAMs, SSPs, and A&A support documentation

Responsibilities

  • Identify and implement secure cloud-based solutions for customers, including zero-trust components
  • Understand stakeholder needs and balance security with usability
  • Monitor cloud environments for suspicious activity and investigate security incidents
  • Examine infrastructure as code and analyze risk
  • Ensure systems are safe against threats via risk assessment, threat modeling, and compliance
  • Identify technical problems and develop fixes
  • Automate vulnerability and patch management
  • Collaborate with developers and DevSecOps engineers to enforce security processes
  • Support enterprise cloud security through IaC and large-scale deployments
  • Design and implement data protection and encryption for data at rest and in transit
  • Document current state, perform gap analysis, and present options and recommendations
  • Analyze vulnerabilities and deployment issues; implement improvements
  • Provide status updates and cross-train team members

Skills

Cloud security architecture
Cloud platforms (AWS/Azure/GCP)
Security governance & risk mgmt
Agile + DevOps
Infrastructure as Code (IaC)
Threat modeling & security testing
POAMs/SSPs documentation
Monitoring & incident response
Scripting (Python/Bash/PowerShell)

Education

BS Degree in IT or related field; or BS in non-IT field + 2 years IT exp

Tools

Git SCM (GitHub/GitLab/Bitbucket)
Terraform
CloudFormation
Ansible
Concourse
Bash
PowerShell
Python

Job description

Overview

AsCloud Security Engineer, you will work within our growing DevSecOps practice delivering features to support developing, testing, and monitoring secure cloud architectures for cloud migration, cloud optimization and cloud deployment. We are looking for candidates with 5-8 years experience with cloud platform services, cybersecurity and DevOps practices such as infrastructure as code and confirmation management automation.

Contributions
  • Identify and implement the most secure cloud-based solutions for the customer including components for zero-trust architectures, identity and access management policy, and data privacy
  • Understanding the needs of stakeholders and optimizing solutions that marry security with usability
  • Monitor cloud environments for suspicious activities with cloud native monitoring or SIEM solutions and investigate security incidents where appropriate
  • Examining infrastructure as code written by others and analyzing risk
  • Ensuring that systems are safe and secure against cybersecurity threats through risk assessment, threat modeling, and compliance with industry standards (e.g. NIST, ISO 27011, HIPPA, FISMA, etc.)
  • Identifying technical problems, performing root cause analysis, and developing updates and ‘fixes’
  • Automate security processes such as vulnerability management and patch management
  • Working with software developers and DevSecOps engineers to ensure that development follows established security processes and works as intended
  • Supportenterprise cloud security throughinfrastructure as code including any activities around automated server or network configurations, large-scale software deployments, and monitoring and testing
  • Ensure effective design and implementation of data protection and encryption mechanisms for data at rest and in transit
  • Document as-is state of the environment, perform a gap analysis, and produce artifacts that articulate options and recommendations
  • Identify, analyze, and resolve infrastructure vulnerabilities and application deployment issues
  • Engineer and implement solutions and provide recommendations for continuous improvement for the services provided
  • Present regular status updates and provide cross training to other team members.
Qualifications
  • Ability to obtain a U.S. government Security Clearance
  • BS Degree in an IT field OR BS in a non-IT field and 2 years related IT experience
  • 5 Years of Experience architecting, designing, developing, and implementing cloud solutions
  • 5 Years of Experience with one or more clouds (i.e. AWS, Azure, or GCP)
  • 5 Years of Experience with Git SCM providers such as GitHub, GitLab, Bitbucket
  • 5 Years of Experience with systems development in an Agile environment
  • 5 Years of Experience implementing infrastructure as code and orchestration
  • 5 Years of Experience providing conducting monitoring, risk assessment, threat modeling and security testing in cloud environments
  • 5 Years of Experience documenting POAMs, SSPs, and A&A support documentation

Preferred:

  • Certifications:
  • AWS Certified Security Specialty
  • AWS Certified Solution Solution Architect Associate
  • Microsoft Certified Azure Administrator Associate
  • Certified Information Systems Security Professional (CISSP)
  • Excellent written and verbal communication skills, interpersonal and collaborative skills
  • Experience with documenting an as-is state of the environment, perform a gap analysis, and produce artifacts that articulate options and recommendations preferred
  • Experience with scripting in Concourse, Bash, PowerShell, Python, Groovy, or Ruby
  • Experience with automation tools, including Pivotal, Chef, Terraform, CloudFormation, or Ansible
About steampunk

Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $100,000 to $155,000. The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here.

Identity Statement

As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Steampunk is aChange Agentin the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors. Through ourHuman-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges. If you want to learn more about our story, visithttp://www.steampunk.com.

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.Steampunk participates in the E-Verify program.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer
Senior Cloud Security Engineer

Steampunk, Inc. • Washington

On-site
USD 130,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Steampunk • Washington

On-site
USD 130,000 - 180,000
Cloud Security Engineer
Cloud Security Engineer

Steampunk, Inc. • McLean (VA)

On-site
USD 110,000 - 155,000
Employee owned
Salary range disclosed
Cloud Engineer
Cloud Engineer

Steampunk • McLean (VA)

On-site
USD 100,000 - 155,000
Cybersecurity/Technical Engineer
Cybersecurity/Technical Engineer

Steampunk • McLean (VA)

On-site
USD 85,000 - 170,000
Cloud Engineer
Cloud Engineer

Steampunk • Bloomington (IL)

On-site
USD 100,000 - 175,000
AWS Cloud Architect
AWS Cloud Architect

Steampunk, Inc. • McLean (VA)

On-site
USD 130,000 - 215,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Steampunk • Bloomington (IL)

On-site
USD 90,000 - 165,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Steampunk, Inc. • McLean (VA)

On-site
USD 150,000 - 185,000
Cybersecurity/Technical Engineer
Cybersecurity/Technical Engineer

Steampunk, Inc. • McLean (VA)

On-site
USD 85,000 - 170,000