6 часов назад
Security Engineer (Cloud Security)
150 000 - 200 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Cloud Security) (FedRAMP/NIST): Supporting cybersecurity operations, compliance, and risk management for FedRAMP-authorized and Intelligence Community systems with an accent on RMF and ATO lifecycle management, cloud security, and continuous monitoring. Focus on designing secure AWS GovCloud and Azure Government controls, integrating security into DevSecOps pipelines, and leading vulnerability management and incident response.
Location: McLean, VA, United States; onsite role
Salary: $150,000–$200,000 per year
Company
develops analytical, operational, and technical solutions for complex national security challenges.
What you will do
- Lead FedRAMP Moderate/High and Intelligence Community ATO authorization efforts under NIST RMF, NIST 800-53, NIST 800-37, FedRAMP, and ICD 503 requirements.
- Conduct risk assessments, security control assessments, gap analyses, and security architecture reviews.
- Manage RMF activities, continuous monitoring, vulnerability assessments, compliance validation, remediation tracking, and security reporting.
- Develop and maintain SSPs, SARs, POA&Ms, control traceability artifacts, and audit evidence.
- Support security operations and incident response, including threat monitoring, alert analysis, investigations, root cause analysis, and coordination with SOCs and government stakeholders.
- Design security controls for AWS GovCloud and Azure Government and integrate automated security testing, vulnerability scanning, compliance validation, and Infrastructure-as-Code security into DevSecOps pipelines.
Requirements
- Active TS/SCI clearance with Polygraph required.
- Bachelor’s degree or higher in Cybersecurity, IT, or a related field with 5+ years of cybersecurity experience in federal or Intelligence Community environments, or a master’s degree with 3+ years of relevant experience.
- Strong knowledge of NIST RMF, NIST 800-53 controls, and FedRAMP requirements.
- At least one of the following certifications: CISM, CISA, CompTIA Security+, CAP, or CCSP.
- Experience with RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, AWS GovCloud, and Azure.
Nice to have
- Experience with cloud-native security tools and DevSecOps pipelines in regulated environments.
- Knowledge of Zero Trust Architecture.
- Experience with cross-domain solutions.
Culture & Benefits
- Competitive total compensation package.
- Team-oriented, dynamic, and growing work environment.
- Focus on exceptional performance, professional development, and mentoring junior staff.
- Equal employment opportunity for qualified applicants.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Cybersecurity Engineer - US Federal
130 200 - 195 400$
5 дней назад
Senior Cybersecurity Engineer (US Federal)
159 600 - 239 400$
5 дней назад
Security Engineer (OAMD)
5 дней назад
Principal Cybersecurity Engineer (US Federal)
184 800 - 277 200$
4 дня назад
Security Engineer (Cybersecurity)
180 000 - 350 000$
6 дней назад
Cloud Security Engineer (AWS GovCloud)
150 000 - 200 000$