SonicJobs Logo
Left arrow iconBack to search

Cloud System & Platform Administrator

BaseCamp Consulting & Solutions
Posted 2 days ago, valid for 16 days
Location

Reston, VA, US

Salary

$125,000 - $145,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The Cloud System & Platform Administrator position involves implementing and maintaining DoD-compliant cloud-native systems for the Department of the Navy, specifically managing the NAVSUP AWS Training Environment.
  • Candidates must have an active Top Secret clearance, privileged system access, and at least five years of experience in AWS cloud administration and containerization technologies.
  • Responsibilities include managing Active Directory, maintaining security baselines, deploying IaaS, PaaS, and SaaS services, and executing cost management across various accounts.
  • The role requires relevant certifications, including CompTIA Security+ CE and AWS certifications, with a focus on maintaining compliance and optimizing cloud architecture.
  • This remote position offers a competitive salary commensurate with experience, specifically targeting professionals with extensive technical expertise in cloud systems.

POSITION OVERVIEW

The Cloud System & Platform Administrator implements and sustains DoD-compliant cloud-native systems on NAVSUP virtual hardware in support of the Department of the Navy, and owns the official NAVSUP AWS Training Environment end to end. This role is responsible for Active Directory and Group Policy administration of the Training Domain; maintaining configuration and security baselines across training-management and engineering EC2 instances through DISA STIG application and scheduled patching; deploying and configuring IaaS, PaaS, and SaaS services; executing cost management and account hygiene across training, sandbox, and proof-of-concept accounts; and optimizing CloudFormation-based deployment automation. Work is performed remotely from within the United States. This position requires an active Top Secret clearance, privileged system access, and an IT-I security designation.



DUTIES AND RESPONSIBILITIES

  • Maintain the official NAVSUP AWS Training Environment and ensure its availability during business hours through availability automation
  • Manage Active Directory structures for the Training Domain, including Group Policy Objects (GPOs)
  • Maintain configuration baselines of all training-management and engineering EC2 instances to ensure secure and right-sized systems
  • Maintain security baselines of all training-management EC2 instances by applying applicable Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs)
  • Apply patches to all training-management and engineering EC2 instances during designated intervals
  • Provide Tier 1 troubleshooting support for Training, Engineering, and Sandbox environments
  • Maintain Security Group and host-level firewall connectivity across environments
  • Deploy and configure IaaS, PaaS, and SaaS services, including server and application installations
  • Deliver optimization proposals for existing architectures using AWS PaaS and SaaS offerings, and optimize cloud architecture to sustain brokerage capabilities
  • Execute weekly cost management checks, purging resources tagged 
  • Purge and re-baseline Sandbox accounts following proof-of-concept (POC) efforts, and execute all POC efforts within NAVSUP's designated POC accounts
  • Audit training spoke accounts for lingering resources and tag compliance
  • Update and sustain the Training Wiki/Portal, and deliver documentation for the Training Environment and supporting processes
  • Deliver technical process documentation for sustainment of AWS-hosted services
  • Update and optimize CloudFormation templates for deployment automation
  • Resolve technical gaps in system administration for Cloud, Security, and Automation alongside the Government team
  • Execute monthly knowledge transfer and mentoring to NAVSUP BSC Government personnel, and document each event in the Monthly Knowledge Transfer Log



QUALIFICATIONS

  • Active Top Secret clearance
  • IT-I security designation and privileged system access
  • DoD 8570.01-M IAT Level II baseline certification: CompTIA Security+ CE, or an approved substitute — CCNA Security with CEs, CCNA Cybersecurity, CySA+, GICSP, GSEC, CND, or SSCP. Certification must be current at the contract period start date; there is no grace period
  • Active enrollment and participation in the certification maintenance program
  • Information Assurance Technical Level I training and certification, with certification on the operating system or computing environment maintained
  • Computing environment certification, current no later than six (6) months after start: AWS Certified Solutions Architect, AWS Certified Cloud Practitioner, AWS Certified Developer, AWS Certified SysOps Administrator, Microsoft Certified Systems Engineer, Red Hat Linux, or equivalent
  • Five (5) years of experience with AWS cloud administration and containerization technologies including Amazon ECS, ECR, EKS, Kubernetes, and Docker 
  • Hands-on experience applying DISA STIGs, maintaining configuration and security baselines, and administering Active Directory and Group Policy Objects
  • Experience with infrastructure-as-code deployment automation using AWS CloudFormation
  • Ability to work remotely from a U.S. location and to complete DoD onboarding, security, and mandatory annual training requirements on schedule
  • Preferred: prior NAVSUP or Department of the Navy cloud experience; experience operating AWS GovCloud environments at DoD Impact Levels 4 and 5



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.