Cloud Security Engineer *

FGS LLC

• $153K — $166K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizenship and active TS/SCI clearance required at hire.
  • Minimum eight years of relevant cybersecurity experience.
  • At least five years of experience with complex Government information systems.
  • Demonstrated expertise in cloud security and system security engineering.
  • Experience implementing cloud-security controls and assessing architectures.
  • Strong technical writing, analytical, and communication skills.
  • Knowledge of NIST and DoD cybersecurity standards.

Responsibilities

  • Engineer and implement cloud-security controls for identity and access management.
  • Assess cloud architectures for security gaps and compliance risks.
  • Develop and coordinate remediation plans with technical teams.
  • Integrate security into Infrastructure as Code and CI/CD workflows.
  • Maintain secure cloud baselines and configuration standards.
  • Implement security logging and monitoring for cloud workloads.
  • Investigate security events and determine root causes.

Benefits

  • Health, dental, and vision insurance.
  • 401(k) retirement plan with employer contributions.
  • Educational reimbursement for professional development.
  • Opportunities for professional growth within the organization.
  • Flexible work arrangements, including limited telework.
Full Job Description
Requires US Citizenship
Employment Term and Type: Regular, Full Time
Required Security Clearance: (Minimum for hire) TS/SCI
Required Education: (Minimum for hire) Master's degree in Engineering, Computer Science, Information Technology, or related technical discipline; additional relevant experience may be considered in lieu of education when permitted by applicable contract requirements.
Salary Band: $153,717 to $166,217

Job Description:
FGS, LLC is seeking a Cloud Security Engineer to engineer, implement, assess, and improve cybersecurity capabilities for secure cloud and hybrid-cloud solutions supporting the Office of Naval Intelligence in Suitland, Maryland. The selected candidate will integrate security requirements into cloud platforms, applications, data services, networks, and automated delivery pipelines throughout the system lifecycle.

The Cloud Security Engineer will work with cloud architects, systems engineers, developers, network engineers, cybersecurity personnel, and Government stakeholders to implement security controls, identify and remediate technical risk, and support authorization and continuous monitoring. This role requires hands-on technical depth in cloud security engineering, vulnerability mitigation, secure configuration, automation, and classified Government information systems.

Primary Duties and Responsibilities:
  • Engineer and implement cloud-security controls for identity, access management, segmentation, encryption, logging, monitoring, vulnerability management, and configuration management.
  • Assess cloud and hybrid-cloud architectures, services, configurations, and workloads for security gaps, vulnerabilities, threats, and compliance risks.
  • Develop prioritized remediation plans and coordinate corrective actions with cloud, systems, network, application, data, and cybersecurity teams.
  • Integrate security into Infrastructure as Code, CI/CD, DevSecOps, container, platform, and application-development workflows.
  • Develop and maintain secure cloud baselines, configuration standards, hardening guidance, reusable security patterns, and implementation procedures.
  • Implement and validate least privilege, role-based and attribute-based access, privileged-access controls, multifactor authentication, federation, and service identities.
  • Design and implement security logging, telemetry, alerting, audit, and SIEM integration for cloud platforms and workloads.
  • Support vulnerability scanning, secure configuration assessment, patch and remediation tracking, and validation using ACAS, Nessus, STIG, SCAP, cloud-native, and related tools.
  • Apply NIST SP 800-53, CNSSI 1253, DoD Cloud Computing Security Requirements Guide, DISA STIGs, and applicable Department of the Navy and Intelligence Community requirements.
  • Support risk assessments, security-control implementation, system authorization, continuous monitoring, and development of required cybersecurity artifacts.
  • Evaluate cloud-native and third-party security technologies and conduct technical trade studies, proofs of concept, and implementation reviews.
  • Implement security automation, policy as code, secrets management, cryptographic key management, certificate management, and automated compliance checks.
  • Investigate security events and technical findings, determine root cause and mission impact, and coordinate containment, remediation, and lessons learned.
  • Review implementation artifacts and delivered capabilities for conformance with approved architectures, security requirements, and technical baselines.
  • Brief Government and program leadership on cloud-security posture, technical risks, remediation status, dependencies, and recommended decisions.
Required Qualifications:
  • U.S. Citizenship.
  • Active TS/SCI security clearance at the time of hire.
  • Minimum eight years of relevant cybersecurity experience.
  • At least five years supporting complex Government information systems.
  • Demonstrated technical depth in cloud security, system security engineering, vulnerability mitigation, or a comparable cybersecurity specialization.
  • Experience implementing cloud-security controls for identity, networking, encryption, logging, monitoring, vulnerability management, and secure configuration.
  • Experience assessing cloud architectures and technical implementations, documenting security gaps, and developing actionable remediation plans.
  • Experience developing security documentation and supporting risk management, security-control assessment, system authorization, or continuous-monitoring activities.
  • Experience integrating security requirements into engineering, development, Infrastructure as Code, DevSecOps, or automated deployment workflows.
  • Knowledge of applicable NIST, DoD, Department of the Navy, and Intelligence Community cybersecurity standards and guidance.
  • Strong technical writing, analytical, problem-solving, collaboration, and verbal communication skills.
Desired Qualifications:
  • Professional cloud-security certification, such as CCSP, AWS Certified Security - Specialty, Microsoft Certified Cybersecurity Architect Expert, or comparable certification.
  • CISSP, CASP+, CISM, Security+ CE, or another certification appropriate to the assigned DoD 8140 work role.
  • Experience with AWS GovCloud, Azure Government, or other accredited Government cloud environments.
  • Experience with cloud-security posture management, cloud workload protection, containers, Kubernetes, and runtime security.
  • Experience with Terraform, CloudFormation, Bicep, Ansible, GitLab, or comparable Infrastructure as Code and automation technologies.
  • Experience with SIEM integration, security orchestration and automation, endpoint protection, network detection, and cloud-native security services.
  • Experience with cryptographic key management, secrets management, certificate services, data protection, and policy as code.
  • Experience implementing Zero Trust security principles in cloud and hybrid-cloud environments.
Education Requirements:
  • Master's degree in Engineering, Computer Science, Information Technology, or a related technical discipline. Additional relevant experience may be considered in lieu of education when permitted by applicable contract requirements.
Security Clearance Requirements:
  • U.S. citizenship and an active TS/SCI clearance are required at the time of hire. The employee must maintain clearance eligibility throughout employment.
Physical, Work Environment & Conditions:
  • Primarily onsite in Suitland, Maryland, with limited telework when authorized.
  • Work is performed in a professional office, secure-facility, and occasional data-center or equipment-room environment.
  • Must be able to use standard office and information-technology equipment and work at a computer for extended periods.
  • Must be able to communicate effectively with technical, mission, program, and senior leadership stakeholders.
  • Occasional schedule flexibility or limited travel may be required to support security assessments, integration, or deployment activities.

This position description is not intended as, nor should it be construed as, exhaustive of all responsibilities, skills, efforts, or working conditions associated with this job. This and all positions are eligible for organization-wide transfer. Management reserves the right to assign or reassign duties and responsibilities at any time.

FGS offers a generous compensation package including health, dental, vision, 401(k), group life insurance, educational reimbursement, among other benefits.

We value our employees and strive to offer many opportunities for professional growth.

#cjpost -Cloud Engineer

Similar Jobs

More Jobs at FGS LLC

More Information Technology Jobs

Find similar Cloud Security Engineer * jobs: