ECS

AWS Cloud / Security Engineer

ECS$100K — $120K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Secret clearance
  • Hands-on AWS experience with EC2, IAM, VPC, and AMIs
  • Experience implementing security settings and hardening for cloud and OS
  • Familiarity with NIST SP 800-53 controls and RMF/ATO process
  • Experience with Kubernetes and container images
  • Git-based version control management across projects
  • Current Security+ certification or ability to obtain within 6 months
  • System Administration experience
  • Strong attention to detail and solid troubleshooting skills
  • Proficient in scripting languages such as PowerShell or bash

Responsibilities

  • Work with the Security & Infrastructure team on AWS cloud development
  • Design and maintain AWS infrastructure for CODIS environments
  • Provision infrastructure as code using CloudFormation
  • Partner with development teams to ensure environment stability
  • Provide off-hours support for system upgrades and maintenance
  • Implement and validate security configurations across cloud infrastructure
  • Manage AWS network security, including subnet design and encryption
  • Create least privilege IAM roles and remediating IAM security findings
  • Implement NIST SP 800-53 controls and document compliance
  • Support security assessments by providing evidence and addressing findings
  • Engage in Agile practices and improve infrastructure security backlogs
  • Troubleshoot issues and document resolutions for repeatability

Benefits

  • Flexible work environment with hybrid model
  • Opportunity to work on mission-critical application for the FBI
  • Engagement in Agile software development practices
  • Gain experience in cloud security and infrastructure
  • Hands-on work with AWS and advanced security protocols
  • Professional growth opportunities in a collaborative team
  • Access to work with leading technologies in cloud and cybersecurity
Full Job Description
Everforth ECS is seeking a AWS Cloud Security Engineer to work in our Stafford, VA (hybrid) office.

The ECS Team provides focused Agile software development and maintenance for CODIS, a mission-critical application for the FBI. CODIS supports a database repository of DNA profiles from individuals, unsolved crime scene evidence, and missing persons. CODIS software allows local, state, and national laboratories to compare DNA profiles electronically, thereby linking serial crimes to each other and identifying suspects by matching DNA profiles from crime scenes to individuals' profiles.

Responsibilities:
  • Work in the Security & Infrastructure team for cloud-based development in AWS
  • Design, build, and maintain AWS infrastructure supporting CODIS development ,test , pre-prod and prod environments, including EC2, IAM, VPC networking, security groups, and AMI lifecycle management.
  • Provision and manage infrastructure through code using CloudFormation.
  • Partner with the CODIS development and infrastructure teams to keep Dev and Test environments stable, current, and available to the sprint teams.
  • Occasional need for off-hours support for system upgrades, patches and maintenance activities
  • Implement and validate security settings across cloud infrastructure, operating system baselines, and application platforms.
  • Provide AWS network and security support, including subnet and routing design, security group and NACL configuration, encryption in transit and at rest, KMS key management, and enterprise certificate and TLS trust management.
  • Design and maintain least privilege IAM roles and policies, and remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
  • Implement NIST SP 800-53 security controls in the cloud environment and document how each is satisfied, working within the NIST Risk Management Framework.
  • Contribute technical content to ATO packages, including System Security Plan (SSP) narratives, control implementation statements, diagrams, and inventory artifacts.
  • Support security assessments by producing evidence on request, responding to assessor questions, and driving Plan of Action and Milestones (POA&M) items to closure.
  • Participate in Agile ceremonies, refine infrastructure and security stories, and provide realistic estimates to the sprint team.
  • Troubleshoot environment and pipeline issues with precision, and document root cause and resolution so the fix is repeatable.


Salary Range: $100,000-$120,000
General Description of Benefits

  • Active Secret clearance
  • Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
  • Practical experience implementing security settings and hardening across cloud and operating system layers.
  • Working familiarity with NIST SP 800-53 controls and the RMF or ATO process, including contributing to security documentation, assessment evidence, or POA&M remediation on an accredited system.
  • Experience working with Kubernetes and container images
  • Experience using or managing Git-based version control across multiple projects
  • Current Security+ certification or the ability to obtain within 6 months
  • System Administration experience
  • Strong attention to detail and solid troubleshooting ability
  • Proficiency in scripting language(s), PowerShell or bash preferred
  • Experience with security settings implementation

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar AWS Cloud / Security Engineer jobs: