ECS

Cloud Security Engineer

ECS$100K — $140K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Current Secret security clearance with ability to obtain Top Secret (TS) clearance with SCI.
  • 3-10 years of experience in cloud security engineering or cybersecurity operations in federal environments.
  • Hands-on experience with AWS CloudWatch, GuardDuty, and Splunk or Elastic SIEM tools.
  • Demonstrated expertise in vulnerability scanning, patch management, and incident response in government cloud settings.
  • Strong problem-solving skills with a focus on evaluating costs and benefits of actions.

Responsibilities

  • Conduct patch management across War Data Platform cloud enclaves, tracking updates and automating deployment actions.
  • Validate patch implementation in controlled environments through testing sequences and system behavior reviews.
  • Operate monitoring mechanisms using tools like CloudWatch and Splunk to detect configuration issues and unauthorized changes.
  • Support incident response by collecting data, correlating events, and documenting impact metrics.
  • Analyze indicators of compromise and prepare status reports for operational leaders during incident triage.
  • Participate in lessons learned reviews to propose corrective actions and improve standard operating procedures.
  • Enhance security across NIPRNet, SIPRNet, and JWICS environments while maintaining operational continuity.

Benefits

  • Potential for growth and development within a key initiative of the Department of War.
  • Opportunity to work on cutting-edge AI technologies in military applications.
  • Ability to engage with diverse stakeholders, enhancing communication and collaboration skills.
Full Job Description
Everforth ECS is seeking a Cloud Security Engineer to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. Please Note: This position is contingent upon contract award.

The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI-First strategy introduced in early 2026. The WDP separates business and financial data from operational warfighting data, aiming to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts.

The Cloud Security Engineer delivers hands-on cloud security engineering and cyber defense operations across WDP's classified and unclassified environments, with a focus on patch management, continuous monitoring, and incident response spanning NIPRNet, SIPRNet, and JWICS. This role is integral to sustaining the security posture, authorization compliance, and operational readiness of WDP's multi-enclave AWS cloud infrastructure in direct support of DoW mission-owner communities and Joint Staff elements.
• Conducts patch management operations across War Data Platform (WDP) Core Integration cloud enclaves by operating vulnerability scanning workflows, identifying required updates, tracking patch applicability, and automating deployment actions aligned with Department of War patching directives supporting Joint Staff elements and mission-owner communities.
• Validates patch implementation in controlled environments by executing test sequences, reviewing system behavior, and confirming compliance with configuration baselines across virtual machines, containerized services, Infrastructure as Code modules, and platform services.
• Operates cloud logging and monitoring mechanisms using CloudWatch, GuardDuty, Splunk, Elastic clusters, and integrated SIEM pipelines to detect configuration drift, unauthorized change activity, and misconfigurations affecting War Data Platform (WDP) Core Integration readiness.
• Supports deployment and evaluation of incident response procedures by executing data collection steps, performing event correlation, documenting operational impact, and generating incident response metrics such as mean time to detect, mean time to respond, containment intervals, and recovery validation results.
• Contributes to incident triage by analyzing indicators of compromise, correlating system logs, validating remediation actions, and preparing status reporting for senior operational leaders.
• Participates in lessons learned reviews by identifying root causes, proposing corrective actions, and incorporating process improvements into standardized runbooks, intelligence feeds, and automated control mechanisms.
• Strengthens defensive posture across NIPRNet, SIPRNet, and JWICS environments by maintaining operational continuity, supporting cyber readiness objectives, and contributing to mission-aligned cloud security modernization efforts.
• Performs other duties as assigned.
• Current Secret security clearance with the ability to obtain and maintain a Top Secret (TS) security clearance with Sensitive Compartmented Information (SCI).
• 3-10 years of experience in cloud security engineering, cybersecurity operations, or a closely related discipline within federal, DoW, or enterprise cloud environments.
• Demonstrated hands-on experience with cloud-native security and monitoring tools including AWS CloudWatch, GuardDuty, and either Splunk or Elastic SIEM platforms, with applied experience in vulnerability scanning, patch management, and incident response operations across classified or government cloud environments.
• Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
• Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

  • ECS
    STO Programmatic SETA
    $120K — $150K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • ECS
    AI Methodologist
    $120K — $150K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer IV
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer III
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Program Control Analyst Senior
    $90K — $120K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Cloud Security Engineer jobs: