Network/Cloud Engineer

CACI International Inc.

National (WA)

On-site

USD 105,000 - 231,000

Full time

11 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CACI International Inc. seeks a Network/Cloud Engineer to assess cloud architectures across AWS, Azure, and hybrid environments, focusing on maturity of CI/CD pipelines, DevSecOps practices, and security controls.

You will analyze IaC adoption, IAM posture, and zero-trust patterns to guide modernization for FEMA ITSA 3.0 initiatives. The role emphasizes practical modernization strategies, secure automation, and reliable cloud-delivered capabilities for mission-critical services in a federal

Qualifications

  • Bachelor's degree required; 15+ years of infrastructure, cloud, and security engineering experience across hybrid environments.
  • Experience architecting solutions on AWS and/or Azure with core services (compute, storage, networking, security).
  • Proven CI/CD pipelines, DevSecOps workflows, and automated deployment expertise.
  • Proficiency with IaC tools (Terraform, CloudFormation, ARM templates, Ansible).
  • Knowledge of security controls across cloud/hybrid environments (NIST, RMF, FedRAMP).

Responsibilities

  • Evaluate cloud architectures across AWS, Azure, and hybrid environments for HA/DR readiness.
  • Assess CI/CD pipelines, security integration, and testing coverage.
  • Evaluate IaC adoption and config management; enforce policy-as-code.
  • Assess IAM, MFA, secrets management, and PAM for least-privilege posture.
  • Recommend modernization roadmaps and service-mesh/api gateway patterns.

Skills

Cloud architectures
CI/CD
DevSecOps
Infrastructure-as-Code
Kubernetes
Security controls
AWS
Azure
FedRAMP/NIST

Education

Bachelor's degree in IT/CS

Tools

Terraform
CloudFormation
Ansible
Kubernetes

Job description

Job Title: Network/Cloud EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: NoneEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:In emergency management, technology agility can mean the difference between rapid response and delayed relief. As a Network/Cloud & DevSecOps Engineer on our FEMA ITSA 3.0 program, you will evaluate the cloud architectures, automation maturity, and security controls that enable FEMA systems to deliver mission capabilities with speed, resilience, and compliance. Your assessments will identify the technical enablers—CI/CD automation, infrastructure-as-code, API gateways, service mesh architectures, and modern security patterns—that can accelerate FEMA's modernization journey while strengthening security posture.You'll dive into cloud hosting platforms, DevSecOps pipelines, and security control implementations to assess maturity, identify gaps, and recommend practical paths forward. Your expertise will inform strategic decisions on cloud migration, automation investment, security architecture enhancement, and DevSecOps transformation—ensuring FEMA can leverage modern engineering practices to deliver capabilities faster, more securely, and with greater reliability. This role offers a unique opportunity to assess and influence the engineering foundations of one of the federal government's most critical missions, where your cloud and DevSecOps expertise will shape how FEMA builds, secures, and operates technology that serves communities in crisis.Responsibilities:Cloud Architecture & Platform Assessment:Evaluate cloud hosting architectures across AWS, Azure, and hybrid environments including compute, storage, networking, and managed services utilizationAssess cloud-native design patterns, serverless adoption, containerization maturity, and platform-as-a-service (PaaS) opportunitiesReview multi-region and multi-availability zone strategies for high availability and disaster recoveryEvaluate environment design across development, test, staging, and production including environment parity and configuration driftIdentify cloud cost optimization opportunities including rightsizing, reserved capacity, and architectural efficiencyAssess alignment with FedRAMP requirements, cloud security best practices, and DHS cloud policiesCI/CD Pipeline & DevSecOps Maturity Evaluation:Review Continuous Integration/Continuous Deployment (CI/CD) pipelines including build automation, testing frameworks, and deployment orchestrationAssess artifact management practices, container registries, and software composition analysisEvaluate deployment strategies including blue-green deployments, canary releases, rolling updates, and rollback proceduresReview test automation coverage including unit testing, integration testing, security testing (SAST/DAST), and performance testingAssess DevSecOps maturity including security integration within development workflows, shift-left security practices, and automated compliance validationIdentify pipeline bottlenecks, manual handoffs, and opportunities to accelerate delivery velocity while maintaining security and qualityInfrastructure-as-Code & Configuration Management:Evaluate Infrastructure-as-Code (IaC) adoption using tools such as Terraform, CloudFormation, ARM templates, or similar platformsAssess configuration management practices, version control discipline, and code review processes for infrastructureReview environment provisioning automation, infrastructure testing, and policy-as-code implementationEvaluate immutable infrastructure patterns, container orchestration (Kubernetes, ECS, AKS), and declarative configuration approachesIdentify opportunities to reduce configuration drift, improve environment consistency, and enhance infrastructure reliability through automationCybersecurity Controls & Authorization Posture:Assess Identity and Access Management (IAM) patterns, role-based access control (RBAC), and least-privilege implementationEvaluate Multi-Factor Authentication (MFA) enforcement, privileged access management (PAM), and secrets management practicesReview Security Information and Event Management (SIEM) integration, centralized logging coverage, and log retention complianceAssess alerting mechanisms, threat detection capabilities, and Security Orchestration, Automation and Response (SOAR) maturityEvaluate incident response preparedness, playbook documentation, and security operations center (SOC) integrationReview vulnerability management practices including scanning frequency, remediation workflows, and patch management automationAssess compliance with NIST SP 800-53 security controls, Risk Management Framework (RMF) requirements, and continuous monitoring practicesModern Architecture Enablers & Integration Patterns:Recommend adoption of API gateways for centralized API management, traffic control, and security policy enforcementEvaluate service mesh opportunities (Istio, Linkerd, AWS App Mesh) to improve microservices observability, security, and resilienceAssess automation platforms and orchestration tools that can improve operational efficiency and reduce manual toilIdentify opportunities to leverage managed services, serverless computing, and event-driven architecturesRecommend container orchestration, service discovery, and distributed tracing implementationsAdvise on interoperability improvements through standardized APIs, event streaming, and asynchronous messaging patternsQualifications:Required:Bachelor's degree and 15+ years of infrastructure, cloud, and security engineering experience across hybrid cloud and on-premises environmentsHands-on experience architecting and implementing solutions on AWS and/or Azure including core services (compute, storage, networking, databases, security)Demonstrated expertise designing and implementing CI/CD pipelines, DevSecOps workflows, and automated deployment strategiesProficiency with Infrastructure-as-Code tools (Terraform, CloudFormation, ARM templates, Ansible, or similar)Deep understanding of security control implementation across cloud and hybrid environmentsExperience assessing technical maturity, identifying gaps, and recommending practical modernization strategiesStrong analytical skills with the ability to evaluate complex technical environments and distill findings into actionable recommendationsAbility to obtain DHS Entry on Duty (EOD) clearanceDesired:FedRAMP authorization experience including security assessment, continuous monitoring, and compliance documentationFamiliarity with NIST Risk Management Framework (RMF), Authority to Operate (ATO) processes, and federal security control baselinesKnowledge of DHS cloud policies, Trusted Internet Connection (TIC) 3.0 requirements, and DHS Enterprise Architecture standardsExperience implementing zero-trust architecture principles including software-defined perimeter, micro-segmentation, and identity-centric securityHands-on experience with container orchestration platforms (Kubernetes, Docker, ECS, AKS)Background with service mesh architectures (Istio, Linkerd, Consul) and API gateway platforms (Kong, Apigee, AWS API Gateway)Proficiency with observability and monitoring tools (Prometheus, Grafana, Datadog, Splunk, ELK stack)Experience with security automation tools including SAST/DAST scanners, dependency scanning, and compliance-as-code platformsCloud certifications: AWS Solutions Architect, AWS DevOps Engineer, Azure Solutions Architect, Azure DevOps Engineer, or equivalentSecurity certifications: CISSP, CCSP, or cloud security specialty certificationsDevOps/DevSecOps certifications or demonstrable expertiseExperience supporting federal IT modernization programs or cloud migration initiativesBackground in Site Reliability Engineering (SRE) practices and chaos engineering principles-What You Can Expect: A culture of integrity.At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.An environment of trust.CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.A focus on continuous growth.Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.Pay Range :There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.Since this position can be worked in more than one location, the range shown is the national average for the position.The proposed salary range for this position is:$105,100-$231,100CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network/Cloud Engineer
Network/Cloud Engineer

CACI International • Washington

On-site
USD 105,000 - 231,000
Network/Cloud Engineer
Network/Cloud Engineer

CACI International Inc • Washington

On-site
USD 105,000 - 231,000
Network Engineer
Network Engineer

Talentify • National Harbor (MD)

On-site
USD 75,000 - 158,000
Senior Systems Engineer
Senior Systems Engineer

CACI International Inc • Washington

On-site
USD 115,000 - 252,000
Healthcare benefits
Flexible time off
Learning & development resources
Cyber Security Engineer
Cyber Security Engineer

CACI International Inc. • Oklahoma City (OK)

On-site
USD 81,000 - 171,000
Cloud Operations Administrator
Cloud Operations Administrator

CACI International Inc. • Hampton (VA)

On-site
USD 75,000 - 158,000
Senior Data Analyst
Senior Data Analyst

CACI International Inc. • National (WA)

On-site
USD 105,000 - 231,000
Cloud Automation Engineer
Cloud Automation Engineer

CACI International Inc. • Washington

On-site
USD 115,000 - 252,000
Staff Infrastructure/DevSecOps Engineer
Staff Infrastructure/DevSecOps Engineer

CACI International Inc. • King of Prussia (PA)

On-site
USD 99,000 - 207,000
FEMA Senior Okta Engineer
FEMA Senior Okta Engineer

CACI International Inc. • United States

Remote
USD 105,000 - 231,000