ECS

Cloud Security Engineer

ECS$90K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Current Secret clearance with eligibility for Top Secret (TS) with SCI access.
  • 3-10 years of experience in cloud security engineering or related field.
  • Hands-on experience with AWS CloudWatch, GuardDuty, and SIEM tools (Splunk or Elastic).
  • Experience in vulnerability scanning, patch management, and incident response in federal or cloud environments.
  • Strong problem-solving and decision-making skills with clear communication abilities.

Responsibilities

  • Conduct patch management for WDP Core Integration cloud environments.
  • Validate patch implementation by testing and reviewing system behavior.
  • Operate logging and monitoring mechanisms for configuration drift and misconfigurations.
  • Support incident response by executing data collection and generating metrics.
  • Analyze indicators of compromise and prepare status reports for leadership.
  • Participate in lessons learned reviews to propose corrective actions and improvements.
  • Enhance defensive posture for NIPRNet, SIPRNet, and JWICS environments.

Benefits

  • Opportunities for professional development and training.
  • Work on pivotal defense initiatives with direct impact on national security.
  • Collaboration with high-level stakeholders within the U.S. Department of War.
  • Engagement in cutting-edge cloud security and AI integration projects.
  • Dynamic work environment in a multi-enclave cloud architecture.
Full Job Description
Everforth ECS is seeking a Cloud Security Engineer to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. Please Note: This position is contingent upon contract award.

The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI-First strategy introduced in early 2026. The WDP separates business and financial data from operational warfighting data, aiming to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts.

The Cloud Security Engineer delivers hands-on cloud security engineering and cyber defense operations across WDP's classified and unclassified environments, with a focus on patch management, continuous monitoring, and incident response spanning NIPRNet, SIPRNet, and JWICS. This role is integral to sustaining the security posture, authorization compliance, and operational readiness of WDP's multi-enclave AWS cloud infrastructure in direct support of DoW mission-owner communities and Joint Staff elements.
• Conducts patch management operations across War Data Platform (WDP) Core Integration cloud enclaves by operating vulnerability scanning workflows, identifying required updates, tracking patch applicability, and automating deployment actions aligned with Department of War patching directives supporting Joint Staff elements and mission-owner communities.
• Validates patch implementation in controlled environments by executing test sequences, reviewing system behavior, and confirming compliance with configuration baselines across virtual machines, containerized services, Infrastructure as Code modules, and platform services.
• Operates cloud logging and monitoring mechanisms using CloudWatch, GuardDuty, Splunk, Elastic clusters, and integrated SIEM pipelines to detect configuration drift, unauthorized change activity, and misconfigurations affecting War Data Platform (WDP) Core Integration readiness.
• Supports deployment and evaluation of incident response procedures by executing data collection steps, performing event correlation, documenting operational impact, and generating incident response metrics such as mean time to detect, mean time to respond, containment intervals, and recovery validation results.
• Contributes to incident triage by analyzing indicators of compromise, correlating system logs, validating remediation actions, and preparing status reporting for senior operational leaders.
• Participates in lessons learned reviews by identifying root causes, proposing corrective actions, and incorporating process improvements into standardized runbooks, intelligence feeds, and automated control mechanisms.
• Strengthens defensive posture across NIPRNet, SIPRNet, and JWICS environments by maintaining operational continuity, supporting cyber readiness objectives, and contributing to mission-aligned cloud security modernization efforts.
• Performs other duties as assigned.
• Current Secret security clearance with the ability to obtain and maintain a Top Secret (TS) security clearance with Sensitive Compartmented Information (SCI).
• 3-10 years of experience in cloud security engineering, cybersecurity operations, or a closely related discipline within federal, DoW, or enterprise cloud environments.
• Demonstrated hands-on experience with cloud-native security and monitoring tools including AWS CloudWatch, GuardDuty, and either Splunk or Elastic SIEM platforms, with applied experience in vulnerability scanning, patch management, and incident response operations across classified or government cloud environments.
• Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
• Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

  • ECS
    Cyber Solutions Architect
    $120K — $150K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Systems Administrator
    $70K — $95K *
    Huntsville, AL 35809 (Madison County)
    Technical Services
    In-Person
  • ECS
    Technical Writer / Analyst
    $70K — $95K *
    Stafford, VA 22554 (Stafford County)
    Education, Government & Non-Profit
    In-Person
  • ECS
    Senior SOC Manager
    $185K — $200K *
    Remote
    Information Technology
    Remote in United States
  • ECS
    Functional Analyst
    $80K — $110K *
    Quantico, VA 22134 (Prince William County)
    Education, Government & Non-Profit
    In-Person

More Information Technology Jobs

Find similar Cloud Security Engineer jobs: