AWS Cloud Security Engineer

Quevera LLC

$120K — $145K *
Technical Services
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in AWS cloud security engineering
  • Active TS/SCI clearance required
  • Proficiency in Infrastructure as Code (IaC) and cloud orchestration tools
  • Experience with compliance standards and security frameworks
  • Strong understanding of machine learning models and classification techniques

Responsibilities

  • Design and implement intelligent model-routing logic for AWS GenAI applications
  • Build and maintain orchestration layers for multi-model workflows
  • Train and evaluate classification models to improve performance
  • Architect strategies for conversation-context analysis and user intent interpretation
  • Develop standards for prompt-engineering and manage context-window techniques
  • Architect enterprise-level GenAI solutions with a focus on performance and cost management
  • Engage with stakeholders to validate solutions and participate in Agile/Scrum ceremonies

Benefits

  • Remote work acceptable with occasional on-site SCIF attendance
  • Work across multiple U.S. locations
  • Opportunity to shape government security processes
  • Engage with cutting-edge machine learning and AI technologies
  • Collaborative environment with Agile/Scrum methodologies
Full Job Description
Job Description:

Quevera is seeking an AWS Cloud Security Engineer with an active TS/SCI clearance to support security architecture, automation, compliance, and security posture management across a complex, multi-vendor AWS environment.

The position supports work across Herndon, Virginia; Springfield, Virginia; Denver, Colorado; and Seattle, Washington, with work split approximately 80% low-side and 20% high-side. Remote work is acceptable, but candidates must be willing and able to work from AWS SCIFs as required.

Job Responsibilities:

  • Design and implement intelligent model-routing logic using ML-based classification to route requests to appropriate LLMs based on conversational context, task complexity, and performance requirements.
  • Build and maintain orchestration layers using AWS Bedrock, LangChain, or custom frameworks to support multi-model workflows.
  • Train, evaluate, and iterate on classification models using evaluation frameworks and feedback loops.
  • Architect conversation-context analysis, retrieval, and embedding strategies to interpret user intent across multi-turn interactions.
  • Develop prompt-engineering standards and context-window management techniques supporting intent classification and routing.
  • Architect enterprise-scale GenAI solutions with high availability, performance optimization, and cost management.
  • Apply GenAI platform practices including observability, model evaluation, guardrails, responsible AI controls, and versioning.
  • Design and maintain data extraction and transformation pipelines supporting model training, evaluation, and enterprise application integration.
  • Engage with customer stakeholders and technical counterparts to gather requirements, validate solutions, and participate in Agile/Scrum ceremonies.
  • Collaborate with the Engagement Manager to track progress and risks and produce technical documentation, architecture diagrams, and handoff artifacts.


Minimum Requirements:

  • Develop reusable Infrastructure as Code (IaC) and cross-account integrations to standardize and centralize security services across a complex, multi-vendor environment with distributed AWS accounts under an externally managed organization.
  • Assess current security posture and drive vendor alignment with organizational standards.
  • Help shape government security processes and support the production of compliance artifacts, including IATTs and ATOs.
  • Integrate distributed logging to a centralized reviewer (C5ISR).


Desired Skills:

  • Active TS/SCI clearance required.
  • Must be willing and able to work from AWS SCIFs as required.
  • Candidates must be local to Herndon, Virginia; Denver, Colorado; or Seattle, Washington.


Work Location:

  • AWS IAD21 - Herndon, Virginia
  • Customer Site - Springfield, Virginia
  • Denver, Colorado
  • Seattle, Washington
  • Work split: approximately 80% low-side / 20% high-side.
  • Remote work is acceptable, with attendance at AWS SCIFs as required.


Similar Jobs

More Jobs at Quevera LLC

More Technical Services Jobs

Find similar AWS Cloud Security Engineer jobs: