FEDERAL AWS SECURITY, ATO AND CLOUD-OPERATIONS ENGINEER - Remote

Axyde Analytics

$120K — $145K *
US-AnywhereRemote in Midlothian, VA
Education, Government & Non-Profit
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years securing AWS systems in federal or regulated environments.
  • Experience supporting federal ATO or IATO packages.
  • Knowledge of FedRAMP, NIST SP 800-53 Rev 5, and CUI requirements.
  • Hands-on experience with AWS security and monitoring services.
  • Experience with SIEM integration and producing security evidence.
  • Strong technical writing and audit-support skills.

Responsibilities

  • Translate security requirements into implementable controls.
  • Develop system security plan and request IATO or ATO.
  • Configure and monitor AWS security services like IAM and KMS.
  • Design integration with government security capabilities like SIEM.
  • Implement least privilege and incident response strategies.
  • Maintain security documentation and control mappings.
  • Review architecture changes for security impact.
  • Support production, test environments, and operational monitoring.

Benefits

  • Remote work within the U.S.
  • Occasional travel required.
  • Immediate engagement on proposal-stage work.
  • Opportunity to support a federal data and AI platform.
Full Job Description
Axyde Analytics seeks a senior cloud-security engineer to support the secure transition and operation of an AWS-based federal data and AI platform handling Controlled Unclassified Information, specialized nuclear-security information, and sensitive personally identifiable information.

Responsibilities
  • Translate FedRAMP, NIST SP 800-53 Revision 5, DOE, NNSA, CUI, privacy, and system-security requirements into implementable controls.
  • Support development of the system security plan and activities necessary to request an IATO or ATO.
  • Configure and monitor IAM, KMS, CloudTrail, CloudWatch, AWS Config, Security Hub, VPC, logging, encryption, and approved security services.
  • Design integration with DOE OneID/SAML and Government SIEM capabilities, including Splunk where directed.
  • Implement least privilege, role-based access, row/column controls, auditability, incident response, vulnerability management, and continuous monitoring.
  • Maintain security artifacts, evidence, control mappings, POA&Ms, configuration baselines, and operational procedures.
  • Review proposed architecture changes for authorization-boundary and security consequences.
  • Support production and test environments, release management, backup, recovery, availability, and operational monitoring.
  • Train delivery personnel on applicable handling and security obligations.

Required Experience
  • Five or more years securing AWS systems in federal or highly regulated environments.
  • Experience supporting federal ATO or IATO packages.
  • Working knowledge of FedRAMP Moderate, NIST SP 800-53 Revision 5, CUI, incident response, continuous monitoring, and AWS shared responsibility.
  • Hands-on experience with AWS identity, encryption, logging, monitoring, networking, and security-posture services.
  • Experience with SIEM integration and security evidence production.
  • Strong technical writing and audit-support skills.

Personnel Requirements

U.S. citizenship is required. No current DOE/NNSA clearance is required, but the candidate must be capable of obtaining a DOE/NNSA Q clearance if required. Experience handling CUI, UCNI, or similarly restricted information is strongly preferred.

Engagement

Remote within the United States with occasional travel. Proposal-stage advisory work may begin immediately. Transition and operations work is contingent upon contract award.

Similar Jobs

More Jobs at Axyde Analytics

More Education, Government & Non-Profit Jobs

Find similar FEDERAL AWS SECURITY, ATO AND CLOUD-OPERATIONS ENGINEER - Remote jobs: