Series A GovTech Compliance Startup ONSITE in Arlington, VA
Role Focus & Technical Matrix
Zero Trust & Identity: Monitoring Zscaler connectors, HashiCorp & Vault basic secret updates.
Infrastructure as Code: Running pre-written Terraform plans, Git PR workflows, fundamental CloudFormation playbooks.
Security & Compliance: FedRAMP baselines, sorting Wiz/Qualys vulnerability alerts, basic CrowdStrike endpoint checks
Observability & Ops: Grafana dashboard upkeep, CloudWatch metrics, ServiceNow ticketing, shadow on-call protocols
Key Responsibilities
Zero Trust & Identity Operations
- Assist in monitoring Zero Trust Network Access tools (Zscaler ZPA / PRA), verifying application connectors and remote access pathways remain operational.
- Support secrets management workflows within HashiCorp Vault, including basic credential generation, entry updates, and confirming automated rotations execute without error.
- Review basic IAM permissions and cloud role policies to ensure alignment with least-
Infrastructure & Automation Support
- Run, test, and troubleshoot pre-defined Terraform modules across development and staging environments in AWS, Azure, or GCP.
- Identify and log configuration drift or environment resource issues, assisting senior engineers with standard infrastructure patching and remediation tasks.
- Review cloud security groups, public endpoint configurations, and basic network routes to cross-check them against compliance baselines.
- Monitor and triage failing CI/CD pipeline runs within GitHub Actions, GitLab CI, or Azure DevOps, escalating systemic errors to the team.
- Review automated security scan readouts (SAST, SCA, and container scans) embedded in the pipeline.
- Assist in updating, building, and running security base-image layers for containers (Docker) destined for managed Kubernetes clusters (EKS, AKS, GKE).
Compliance Monitoring & Change Administration
- Assist compliance with the programmatic gathering of audit evidence for ongoing FedRAMP Continuous Monitoring (ConMon) cycles, specifically targeting CM-2, CM-6, AU-2, and SC-12 controls.
- Assist with Plan of Action and Milestones (POA&M) ticket creation, tracking remediation deadlines across the platform.
- Draft and submit technical change requests within ServiceNow, ensuring correct structural documentation for review by the Change Advisory Board (CAB).
Observability & Incident Support
- Maintain and adjust basic Grafana and CloudWatch dashboards, ensuring alert notifications are mapped accurately to operational notification streams.
- Monitor standard system health indicators, performing low-severity alert triaging to
- Maintain open telemetry operations for ongoing application monitoring
- Participate in a shadow on-call rotation capacity (PagerDuty) alongside senior engineers to develop live diagnostic and real-time incident resolution skills.
Qualifications
Required Experience & Core Aptitude
- Experience: 1–2 years of experience in an entry‑level technical role (e.g., IT Support, Junior Systems Administrator, Helpdesk/NOC, Cyber Operations, or relevant cloud
- Location: Must be able to work fully on‑site at our Washington, DC office.
- Linux Fundamentals: Comfortable navigating the Linux command line (Bash), managing file permissions, viewing system logs, and executing basic terminal commands.
- Networking Core: Solid grasp of foundational networking concepts (DNS, TCP/IP, HTTP/HTTPS, SSH, Subnets, and basic firewall/security group rules).
- Cloud & Version Control Exposure: Foundational exposure to public cloud concepts (AWS preferred) and basic Git workflows (cloning, branching, commits, Pull Requests).
- Basic Scripting: Ability to read and write fundamental scripts in Python or Bash to automate repetitive tasks, parse logs, or and interact with simple APIs.
- Security Mindset: Strong conceptual understanding of core security principles (Least Privilege, Multi‑Factor Authentication, IAM basics, Encryption).
- Soft Skills & Growth Mindset: High technical curiosity, excellent written documentation habits, and a strong eagerness to learn directly from senior engineers on‑site
Nice to Have (Bonus Experience / Technologies You Will Learn)
- Exposure to Infrastructure as Code concepts (Terraform or CloudFormation).
- Familiarity with container basics (Docker) or CI/CD pipelines (GitHub Actions, GitLab CI)
- Basic experience using ticketing or monitoring tools (Jira, ServiceNow, CloudWatch, Grafana)
- Conceptual awareness of federal security or compliance frameworks (FedRAMP, NIST 800-53, or SOC 2).
Desirable Certifications
- CompTIA Security+ or Linux+
- AWS Certified Cloud Practitioner or Solutions Architect (Associate)
- HashiCorp Certified: Terraform Associate (or actively pursuing)
- Certified: Terraform Associate (or actively pursuing)