Senior Cloud Cyber Security Engineer - TS/SCI

VMD Corp

Bethesda, MD

JOB DETAILS
SKILLS
Administrative Skills, Amazon Web Services (AWS), Artificial Intelligence (AI), Automation, Bash Scripting, Best Practices, CCNA - Cisco Certified Network Associate, CCSP - Cisco Certified Security Professional, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Architecture, Cloud Computing, Code Reviews, CompTIA Linux+, CompTIA Security+, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Cryptography, Customer Support/Service, Defense Information Systems Agency (DISA), Defense Intelligence, Government, ISSAP - Information Systems Security Architecture Professional, ISSEP - Information Systems Security Engineering Professional, Integrated Circuits (ICs), Intelligence Community, International Classification of Diseases (ICD), Internet Security, Leading Edge Technology, Linux Administration, Linux Operating System, Machine Learning, Maintain Compliance, Microservices, Military/DoD Standards, Nessus, OSINT (Open Source Intelligence), Python Programming/Scripting Language, Red Hat Linux Operating System, Risk Analysis, Risk Management Framework (RMF), Scripting (Scripting Languages), Secure Coding, Security Analysis, Security Attacks, Security Compliance, Security Monitoring, Sensitive Compartmented Information (SCI), Software Development, Software Engineering, Splunk, System Architecture, Systems Engineering, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), Vulnerability Scanners
LOCATION
Bethesda, MD
POSTED
3 days ago

Description

Senior Cloud Cyber Security Engineer  – TS/SCI  

Xcelerate Solutions is seeking our next Cloud Cyber Security Engineer, to play a critical role in the accreditation of a state-of-the-art technology stack under the DOMEX Technology Platform (DTP) where we support our client’s mission to centralize and standardize Tasking, Collection, Processing, Exploitation and Dissemination (TCPED) of Open Source Intelligence (OSINT) across the Defense and Intelligence Community enterprises. We leverage cloud-based computing, artificial intelligence (Al), machine learning (ML), and cross-domain transfer systems to provide cutting edge data exploitation, enrichment, triage, and analytics capabilities to the Defense Intelligence Enterprise.

As a Cloud Cyber Security Engineer, you will be responsible for providing technical security expertise in securing, hardening, and maintaining compliance of cloud-based software platforms and infrastructure across multiple secure networks. You will lean on your experience with security technologies, industry best practices, vulnerability management, and risk management frameworks (RMF) to employ effective security solutions. In this role, you will collaborate closely with compliance personnel, software engineers, system engineers, system architects, and Government counterparts to perform the full spectrum of systems and cyber security engineering tasks to ensure system regulatory compliance and security posture. Come join our award-winning organization and work with some of the most talented and brightest minds in the GovCon industry. 

Location:   

Bethesda, MD

 

Security Clearance:  

Active TS/SCI  

 

Responsibilities:  

 

  • Develop and maintain security policies, procedures, and best practices for cloud and cloud-native environments 
  • Perform security assessments, vulnerability management, and risk analysis for cloud-based systems across secure enclaves 
  • Implement and manage security controls for Kubernetes clusters and containerized applications 
  • Ensure integration of security measures into CI/CD pipelines and DevSecOps processes 
  • Conduct security reviews of cloud architectures, service configurations, and system design changes to understand the impact to security controls 
  • Develop and maintain ATO packages and ensure compliance with DOD/IC standards and frameworks such as DODI 8500 series, NIST SP 800-37, SP 800-53, CNSSI 1253, ICD 503 
  • Implement and manage continuous monitoring solutions for cloud environments 
  • Collaborate with development teams to ensure secure coding practices and perform code reviews 
  • Stay current with emerging cloud security threats, technologies, and best practices 

 

Requirements:  

  • Active or current Top Secret with SCI eligibility and ability to obtain Polygraph
  • Bachelor’s degree in a related field and 8+ years of industry experience with 5+ years in cybersecurity or additional years of experience in lieu of degree (ISSO experience must be supplemented with demonstrated technical expertise)
  • At least one DoD 8570.01-M IAT Level II or higher certification e.g., CCNA Security, CySA+, Security+ CE, CISSP (or Associate)
  • 5+ years securing cloud-based software applications and infrastructure as well as the implementation of security controls to controlled cloud environments
  • 5+ years of experience hardening Linux hosts and automating DISA STIG implementation
  • Demonstrated experience securing Kubernetes platforms (secrets management, RBAC, etc.) and integrating security into CI/CD pipelines and containers; must understand microservices architecture and service mesh.
  • Demonstrated experience developing A&A packages to obtain and maintain ATO in secure environments. Strong knowledge of compliance frameworks NIST SP 800-37, SP 800-53, CNSSI 1253 and applicable DOD
  • Experience with tools such as Xacta or eMass, performing vulnerability compliance scans, and assessing STIG compliance
  • Experience with scripting languages such as Bash and Python for automation
  • Understanding of secure software development practices and code reviews
  • Experience with encryption and transport, especially in the cloud

  

Preferred Qualifications:  

 

  • Multiple IAT/IAM II or III advanced certifications (e.g. CISSP-ISSAP/ISSEP, CISM, CCSP, Security X/CASP+)
  • Cloud certifications such as AWS Solutions Architect (Associate or Professional), AWS Security Specialty
  • Kubernetes certifications such as KCNA, CKA, CKS
  • Prior Linux administration experience and certifications such as Linux+, Red Hat certifications (e.g. RHCSA, RHCE)
  • Experience with ICD 503 and related compliance directives, policies, procedures
  • Experience with security tool such as Splunk, Nessus, SonarQube, as well as DAST & SAST tools such as Prisma Cloud and SonarQube
  • Experience applying Zero Trust framework to secure systems
  • Prior network engineering experience
  • Experience applying security controls to Generative AI implementations

 

About Xcelerate Solutions:
Founded in 2009 and headquartered in McLean, VA, Xcelerate Solutions (www.xceleratesolutions.com) is one of America's fastest-growing companies. Xcelerate’s culture is defined by our diversified workforce of dynamic and versatile professionals, supported with growth and development opportunities that contribute to individual and company growth. This strong commitment to our employees has been recognized by our inclusion on the Washington Business Journal’s “50 Best Places to Work” list as well as being a “Great Place to Work” certified company with a 4.6 star, and a 99% CEO approval Glassdoor rating. Come find out why Xcelerate Solutions is one of the DC Metro topemployers!

Xcelerate Solutions is an Equal Employment Opportunity/Affirmative Action Employer.  We evaluate qualified applicants without regard to race, color, national origin, religion, age, equal pay, disability, veteran status, sex, sexual orientation, gender identity, geneticinformation, or expression of another protected characteristic. As part of this commitment to the full inclusion of all qualified individuals, Xcelerate provides reasonable accommodations if needed because of an applicant's or an employee's disability.

Pay Transparency Notice: Xcelerate Solutions will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.

 

 

About the Company

V

VMD Corp

We are a team of visionary leaders who shift the paradigm to bring our customers game changing innovations and emerging technologies to strengthen their missions. As a Vision, Mission, and Driven company, VMD has been delivering information technology solutions to the Federal government in Agile Engineering, Cybersecurity, and Critical Infrastructure Protection since 2002.

Why Join VMD Corp?

At VMD you have the opportunity to thrive in your career and become a Game Changer. The quality and talent of our people is what drives the success of VMD. We embrace an employee-first culture and make it a priority to provide professional development opportunities that foster career growth.

We help protect American Citizens and the nation’s most critical infrastructure by working alongside our customers and delivering game changing solutions to strengthen their missions. We believe our passion and commitment to achieve our customers' goals and solve their most critical challenges defines who we are. We don’t just dream big, we act on it – through teamwork, dedication, and resilience.

Learn more about our Game Changing Culture here: VMD Culture

COMPANY SIZE
500 to 999 employees
INDUSTRY
Computer/IT Services
EMPLOYEE BENEFITS
Parking, Prescription Drug Coverage, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Transportation Allowance, Tuition Reimbursement, Life Insurance, Military Leave
FOUNDED
2002
WEBSITE
https://www.vmdcorp.com