ECS

AWS Cloud / Security Engineer

ECS • $100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Secret clearance required
  • 5-7 years of hands-on AWS experience with EC2, IAM, VPC, and AMIs
  • Practical experience with hardening security measures across cloud and OS layers
  • Familiarity with NIST SP 800-53 controls and Risk Management Framework
  • Experience with Kubernetes and managing container images
  • Ability to obtain Security+ certification within 6 months if not already held
  • Proficiency in scripting languages, such as PowerShell or bash

Responsibilities

  • Work within the Security & Infrastructure team for AWS cloud-based development
  • Design, build, and maintain AWS infrastructure for CODIS environments
  • Provision and manage infrastructure as code with CloudFormation
  • Partner with development teams to ensure availability and stability of environments
  • Occasional off-hours support for system upgrades and maintenance
  • Implement and validate security settings across cloud infrastructure
  • Provide network and security support including encryption and key management
  • Maintain least privilege IAM roles and remediate security findings
  • Implement NIST SP 800-53 controls and document compliance
  • Support security assessments and manage Plan of Action and Milestones
  • Participate in Agile ceremonies and refine security stories
  • Troubleshoot and document environmental and pipeline issues

Benefits

  • Robust professional development opportunities
  • Supportive team environment with Agile practices
  • Flexibility with a hybrid work model
  • Opportunity to work on mission-critical applications
  • Engagement with security protocols and environment compliance
  • Chance to contribute to important national security objectives
Full Job Description
Everforth ECS is seeking a AWS Cloud Security Engineer to work in our Stafford, VA (hybrid) office.

The ECS Team provides focused Agile software development and maintenance for CODIS, a mission-critical application for the FBI. CODIS supports a database repository of DNA profiles from individuals, unsolved crime scene evidence, and missing persons. CODIS software allows local, state, and national laboratories to compare DNA profiles electronically, thereby linking serial crimes to each other and identifying suspects by matching DNA profiles from crime scenes to individuals' profiles.

Responsibilities:
  • Work in the Security & Infrastructure team for cloud-based development in AWS
  • Design, build, and maintain AWS infrastructure supporting CODIS development ,test , pre-prod and prod environments, including EC2, IAM, VPC networking, security groups, and AMI lifecycle management.
  • Provision and manage infrastructure through code using CloudFormation.
  • Partner with the CODIS development and infrastructure teams to keep Dev and Test environments stable, current, and available to the sprint teams.
  • Occasional need for off-hours support for system upgrades, patches and maintenance activities
  • Implement and validate security settings across cloud infrastructure, operating system baselines, and application platforms.
  • Provide AWS network and security support, including subnet and routing design, security group and NACL configuration, encryption in transit and at rest, KMS key management, and enterprise certificate and TLS trust management.
  • Design and maintain least privilege IAM roles and policies, and remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
  • Implement NIST SP 800-53 security controls in the cloud environment and document how each is satisfied, working within the NIST Risk Management Framework.
  • Contribute technical content to ATO packages, including System Security Plan (SSP) narratives, control implementation statements, diagrams, and inventory artifacts.
  • Support security assessments by producing evidence on request, responding to assessor questions, and driving Plan of Action and Milestones (POA&M) items to closure.
  • Participate in Agile ceremonies, refine infrastructure and security stories, and provide realistic estimates to the sprint team.
  • Troubleshoot environment and pipeline issues with precision, and document root cause and resolution so the fix is repeatable.


Salary Range: $100,000-$130,000
General Description of Benefits

  • Active Secret clearance
  • Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
  • Practical experience implementing security settings and hardening across cloud and operating system layers.
  • Working familiarity with NIST SP 800-53 controls and the RMF or ATO process, including contributing to security documentation, assessment evidence, or POA&M remediation on an accredited system.
  • Experience working with Kubernetes and container images
  • Experience using or managing Git-based version control across multiple projects
  • Current Security+ certification or the ability to obtain within 6 months
  • System Administration experience
  • Strong attention to detail and solid troubleshooting ability
  • Proficiency in scripting language(s), PowerShell or bash preferred
  • Experience with security settings implementation

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar AWS Cloud / Security Engineer jobs: