AWS Cloud Engineer (Zero Trust Focus)
Indexed description
Responsibilities
The following reflects management’s definition of essential functions for this job but does not restrict the tasks that may be assigned.
- Provision and configure AWS services using AWS Cloud Development Kit (CDK) Infrastructure as Code (IAC)
- Provision and configure data and log transformation pipelines using AWS Lambda, FireHose, Glue, and other services.
- Build log mappings from application-native formats to OCSP standardized log format with the aid of AI tools
- Writing and debug AWS Lambda functions to automate operational and security processes.
- Lead discovery and prototyping efforts using artificial intelligence and machine learning services available in AWS, such as Amazon SageMaker, Comprehend, and Recognition.
- Identify, evaluate, and recommend emerging AWS-native AI/ML tools and services to enhance automation, analytics, and operational efficiency.
- Evaluate and integrate Zero Trust security frameworks into existing and new AWS system architectures.
- Implement and maintain Zero Trust Architecture principles, including least-privilege access, continuous authentication, and micro-segmentation within AWS environments.
- Collaborate with project stakeholders and cross-functional teams to manage cloud-related initiatives from planning through execution.
- Responsible for performing regular operational tasks in the AWS Console including creating new Amazon Elastic Compute Cloud (Amazon EC2) instances, debugging connectivity, provisioning users, managing credentials, configuring backup policies, and reviewing logs.
- Provide programmatic support including coordination, scheduling, budget tracking, and oversight of AWS infrastructure initiatives to ensure alignment with organizational objectives.
- Responsible for configuring and managing EC2 management tools like AWS Config, Systems Manager, and Patch Manager.
- Support DevSecOps implementation and team integration including automated testing, release pipelines, automated deployment, with AWS CodePipeline and its related components.
- Supports migration to serverless AWS offerings with the goal of reducing operational footprint on EC2 instances.
- Provides technical support and troubleshooting assistance.
- Responsible for system security hardening per DoD Security and Technical Implementation Guidelines (STIG) and providing required security documentation.
- Provide STIG guidance and assist in configuring computer and network devices.
- Supports Information Assurance Vulnerability Alert (IAVA) patching requirements for servers and systems.
- Develop and maintain documentation including Standard Operating Procedures (SOPs).
- Perform upgrades to server operating systems and applications.
- Assist technicians to maintain existing AWS Gov Cloud installation.
- Experience developing AWS solutions using AWS Cloud Development Kit (CDK)
- Experience writing and debugging Python scripts with Object Oriented Programming experience a plus
- Experience with design and development of high availability virtual platforms.
- In-depth performance monitoring of virtual system(s).
- Must excel at system documentation, to include in-depth system configuration, topology, and development of standard operating procedures.
- Bachelor’s degree in a STEM field from an accredited institution, or equivalent years of related work or military experience.
- Minimum of 3 years of relevant professional experience, including systems administration and cloud operations.
- Experience supporting DoD IT environments preferred.
- Experience using Agile methodologies and ticketing systems such as JIRA is desirable.
- Required:
- Active IAT II Certification which may include CompTIA Advanced Security Practitioner (CASP+), CompTIA Cybersecurity Analyst (CySA+), Certified Information Systems Security Professional (CISSP), or CompTIA Security+.
- AWS certification (e.g., AWS Certified AI Practitioner, AWS Certified Cloud Practitioner, AWS SysOps Administrator Associate, AWS Solutions Architect Associate)
Work Location:
- Position is based in Arlington, VA.
- Preferred: on-site three (3) days per week. Will consider fewer days on-site for the correct candidate.
- Occasional travel (1–2 weeks per year) within the Continental U.S. or to Hawaii may be required.
- This position may require working outside of normal business hours, including evenings and weekends, to meet operational or project demands.
- Ability to perform repetitive motions with the hands, wrists, and fingers.
- Ability to engage in and follow audible communications in emergency situations.
- Ability to sit for prolonged periods at a desk and working on a computer.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search