Federal Aws Security, Ato And Cloud-Operations Engineer

Axyde Analytics

  • Midlothian, Virginia
  • 15 days ago

    Highlights

    Axyde Analytics seeks a senior cloud-security engineer to support the secure transition and operation of an AWS-based federal data and AI platform handling Controlled Unclassified Information, specialized nuclear-security information, and sensitive personally identifiable information. Configure and monitor IAM, KMS, CloudTrail, CloudWatch, AWS Config, Security Hub, VPC, logging, encryption, and approved security services.

    Numbers & Facts

    LocationMidlothian, Virginia

    Description

    Axyde Analytics seeks a senior cloud-security engineer to support the secure transition and operation of an AWS-based federal data and AI platform handling Controlled Unclassified Information, specialized nuclear-security information, and sensitive personally identifiable information.

    Responsibilities

    • Translate FedRAMP, NIST SP 800-53 Revision 5, DOE, NNSA, CUI, privacy, and system-security requirements into implementable controls.

    • Support development of the system security plan and activities necessary to request an IATO or ATO.

    • Configure and monitor IAM, KMS, CloudTrail, CloudWatch, AWS Config, Security Hub, VPC, logging, encryption, and approved security services.

    • Design integration with DOE OneID/SAML and Government SIEM capabilities, including Splunk where directed.

    • Implement least privilege, role-based access, row/column controls, auditability, incident response, vulnerability management, and continuous monitoring.

    • Maintain security artifacts, evidence, control mappings, POA&Ms, configuration baselines, and operational procedures.

    • Review proposed architecture changes for authorization-boundary and security consequences.

    • Support production and test environments, release management, backup, recovery, availability, and operational monitoring.

    • Train delivery personnel on applicable handling and security obligations.

    Required Experience

    • Five or more years securing AWS systems in federal or highly regulated environments.

    • Experience supporting federal ATO or IATO packages.

    • Working knowledge of FedRAMP Moderate, NIST SP 800-53 Revision 5, CUI, incident response, continuous monitoring, and AWS shared responsibility.

    • Hands-on experience with AWS identity, encryption, logging, monitoring, networking, and security-posture services.

    • Experience with SIEM integration and security evidence production.

    • Strong technical writing and audit-support skills.

    Personnel Requirements

    U.S. citizenship is required. No current DOE/NNSA clearance is required, but the candidate must be capable of obtaining a DOE/NNSA Q clearance if required. Experience handling CUI, UCNI, or similarly restricted information is strongly preferred.

    Engagement

    Remote within the United States with occasional travel. Proposal-stage advisory work may begin immediately. Transition and operations work is contingent upon contract award.

    Similar Jobs

    See more jobs