Senior Cloud Cybersecurity Engineer

Base-2 Solutions

$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or Master's degree in Cybersecurity, Computer Science, or related field with years of relevant experience equivalent to degree level.
  • DoD 8570.01-M IAT or IAM Level II certification or higher required, with the ability to obtain elevated access per DoD policy.
  • Hands-on experience with Linux and scripting languages (Bash, Python, Perl).
  • Experience with cloud services, particularly AWS, and securing software applications/infrastructure.
  • Familiarity with RMF processes and compliance scanning for cybersecurity.

Responsibilities

  • Collect, review, and assess cybersecurity system artifacts and provide feedback.
  • Conduct compliance scans and vulnerability assessments for cloud systems.
  • Implement and manage security controls for containerized applications in the cloud.
  • Collaborate with DevSecOps and software development teams to ensure secure engineering practices.
  • Develop and execute automation scripts for compliance and validation.
  • Support cybersecurity officials in preparing necessary authorization packages.
  • Stay updated with emerging cloud security threats and best practices.

Benefits

  • 100% company-paid medical, dental, and vision premiums for employees and dependents.
  • 401(k) plan with 8% total company contribution and immediate vesting.
  • Up to 20 days of flexible paid time off (PTO) and 11 paid floating holidays.
  • Flexible work schedules including options for flex time and compressed work periods.
  • Employee referral bonuses and additional performance-related bonuses.
Full Job Description
  • Requisition ID: 3071
  • Standard Title:
  • Required Security Clearance: Top Secret/SCI
  • Location: Bethesda, MD
  • Work Type: On-Site
  • Shift: First
  • Referral Eligibility: Eligible
  • U.S. Citizenship Required? Yes


Position Summary

This role supports the mission to centralize and standardize Tasking, Collection, Processing, Exploitation and Dissemination (TCPED) of Open Source Intelligence (OSINT) across the Defense and Intelligence Community enterprises, leveraging cloud computing, artificial intelligence, machine learning, and cross-domain transfer systems to provide advanced data exploitation and analytics capabilities.
Essential Duties and Responsibilities
  • Collect, review, assess, and provide feedback on system cybersecurity, architecture, and engineering artifacts.
  • Collect, review, assess, and provide feedback on system cybersecurity Body-of-Evidence (BOE) results required to support DoD & IC RMF cybersecurity authorization processes.
  • Conduct periodic compliance scanning, vulnerability assessments, and risk analysis for cloud-based systems.
  • Implement and manage security controls for containerized applications and the underlying cloud-based infrastructure.
  • Collaborate with DevSecOps, infrastructure, and software development teams to ensure secure coding and engineering practices.
  • Ensure integration of security measures into software development processes, CI/CD pipelines, and engineering tools.
  • Develop, maintain, and execute shell commands, scripts, and automation code for STIG compliance and validation.
  • Implement and manage continuous monitoring solutions of cloud-based architectures.
  • Support Government cybersecurity officials and program personnel in preparing cybersecurity packages, including Interim Authority to Test (IATT) packages, Authority to Operate (ATO) packages, and Change Requests (CRs).
  • Stay current with emerging cloud security threats, technologies, and best practices.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline and 12-15 years of relevant experience OR Master's degree with 10-13 years of relevant experience. Additional years of experience may be considered in lieu of a degree.
  • At least one DoD 8570.01-M IAT or IAM Level II or higher certification (e.g., CCNA Security, CySA+, Security+ CE, CISSP or Associate) and the ability to obtain Privileged User Account (PUA)/elevated access per DoD 8570 policy.
  • Hands-on experience with Linux operating systems and scripting languages such as Bash, Python, Perl or similar.
  • Experience with Commercial Cloud Services (C2S) and cloud-based enterprise services, preferably AWS.
  • Experience securing software applications and infrastructure by implementing security controls.
  • Experience supporting RMF processes such as authorization and continuous monitoring.
  • Experience with NIST SP 800-37, SP 800-53 Rev4 or Rev5, CNSSI 1253, and applicable DoDI publications.
  • Experience implementing and validating STIG compliance across operating system, database, server, and application tiers.
  • Experience with RMF/GRC platforms such as Xacta or eMASS.
  • Experience performing compliance and vulnerability scans and related security tools for SIEM and event management, SAST, DAST.
  • Demonstrated understanding of unique security threats in the cloud and the required corresponding system security posture.
  • Demonstrated understanding of how to secure Kubernetes platforms and integrate security into CI/CD pipelines, containers, and platform orchestration tools.
Preferred Qualifications
  • Experience supporting the Intelligence Community in RMF activities with ICD 503 and related compliance directives, policies, and procedures.
  • Multiple IAT/IAM II or III advanced certifications such as CISSP-ISSAP, ISSEP, CISM, CCSP, Security+, CASP+.
  • Cloud certifications such as AWS Solutions Architect, AWS Security Specialty, Kubernetes and Cloud Native Associate (KCNA), Certified Kubernetes Administrator (CKA), Certified Kubernetes Security Specialist (CKS).
  • Linux certifications such as Linux+, Red Hat Certified System Administrator - Enterprise Linux (RHCSA), Red Hat Certified Engineer - Enterprise Linux (RHCE), Red Hat Certified Architect - Enterprise Linux (RHCA).
  • Prior network engineering experience with encryption and transport in the cloud.
  • Experience applying DoW Zero Trust framework.
  • Experience applying security controls to various AI implementations.
  • Understanding of secure software development practices and code reviews in Agile and DevSecOps environments.
Required Education and Experience Equivalency
  • Bachelor's degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline with 12-15 years of experience.
  • Master's degree in Cybersecurity, Computer Science, Information Assurance, Engineering, or related technical discipline with 10-13 years of experience.
Required Certifications
  • At least one DoD 8570.01-M IAT or IAM Level II or higher certification (e.g., CCNA Security, CySA+, Security+ CE, CISSP or Associate).
Required Security Clearance
  • Active Top Secret/SCI


Pay & Benefit Highlights
Compensation
  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
Health
  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.
Income Protection
  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.
Retirement
  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.
Leave
  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.
Work-Life Balance
  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).


NT

Similar Jobs

More Jobs at Base-2 Solutions

More Information Technology Jobs

Find similar Senior Cloud Cybersecurity Engineer jobs: