SonicJobs Logo
Left arrow iconBack to search

AWS Cloud / Security Engineer

ECS Tech Inc
Posted 2 days ago, valid for 22 days
Location

Stafford, VA, US

Salary

$100,000 - $120,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Everforth ECS is looking for an AWS Cloud Security Engineer for their hybrid office in Stafford, VA, offering a salary range of $100,000 to $120,000.
  • The role involves working with the ECS Team to support the CODIS application, which is critical for the FBI's DNA profile database.
  • Candidates should have hands-on experience with AWS services such as EC2, IAM, and VPC, and a solid understanding of security settings implementation.
  • An active Secret clearance and a current Security+ certification or the ability to obtain one within six months are required, along with system administration experience.
  • The position also demands familiarity with NIST SP 800-53 controls and experience with Kubernetes, Git-based version control, and scripting languages.
Everforth ECS is seeking a AWS Cloud Security Engineer to work in our Stafford, VA (hybrid) office.
 
The ECS Team provides focused Agile software development and maintenance for CODIS, a mission-critical application for the FBI. CODIS supports a database repository of DNA profiles from individuals, unsolved crime scene evidence, and missing persons. CODIS software allows local, state, and national laboratories to compare DNA profiles electronically, thereby linking serial crimes to each other and identifying suspects by matching DNA profiles from crime scenes to individuals’ profiles.
 
Responsibilities:
  • Work in the Security & Infrastructure team for cloud-based development in AWS
  • Design, build, and maintain AWS infrastructure supporting CODIS development ,test  , pre-prod and prod environments, including EC2, IAM, VPC networking, security groups, and AMI lifecycle management.
  • Provision and manage infrastructure through code using CloudFormation.
  • Partner with the CODIS development and infrastructure teams to keep Dev and Test environments stable, current, and available to the sprint teams.
  • Occasional need for off-hours support for system upgrades, patches and maintenance activities
  • Implement and validate security settings across cloud infrastructure, operating system baselines, and application platforms.
  • Provide AWS network and security support, including subnet and routing design, security group and NACL configuration, encryption in transit and at rest, KMS key management, and enterprise certificate and TLS trust management.
  • Design and maintain least privilege IAM roles and policies, and remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
  • Implement NIST SP 800-53 security controls in the cloud environment and document how each is satisfied, working within the NIST Risk Management Framework.
  • Contribute technical content to ATO packages, including System Security Plan (SSP) narratives, control implementation statements, diagrams, and inventory artifacts.
  • Support security assessments by producing evidence on request, responding to assessor questions, and driving Plan of Action and Milestones (POA&M) items to closure.
  • Participate in Agile ceremonies, refine infrastructure and security stories, and provide realistic estimates to the sprint team.
  • Troubleshoot environment and pipeline issues with precision, and document root cause and resolution so the fix is repeatable.

Salary Range: $100,000-$120,000

General Description of Benefits
Qualifications
  • Active Secret clearance
  • Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
  • Practical experience implementing security settings and hardening across cloud and operating system layers.
  • Working familiarity with NIST SP 800-53 controls and the RMF or ATO process, including contributing to security documentation, assessment evidence, or POA&M remediation on an accredited system.
  • Experience working with Kubernetes and container images
  • Experience using or managing Git-based version control across multiple projects
  • Current Security+ certification or the ability to obtain within 6 months
  • System Administration experience
  • Strong attention to detail and solid troubleshooting ability
  • Proficiency in scripting language(s), PowerShell or bash preferred
  • Experience with security settings implementation



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.