Information Technology - Engineer, Systems Ld

TalTeam, Inc

Reston, Virginia

JOB DETAILS
JOB TYPE
Full-time
SKILLS
AWS Lambda, Amazon Elastic Compute Cloud (EC2), Amazon Simple Storage Service (S3), Amazon Web Services (AWS), Ansible, Applications Security, Architectural Analysis, Architectural Services, Atlassian JIRA, Automation, Bash Scripting, Benchmarking, Best Practices, Capacity Management, Cloud Architecture, Cloud Computing, Cloud Storage, Computer Science, Computer Security, Consulting, Continuous Deployment/Delivery, Continuous Integration, Cost Control, Crucible, Cryptography, Design Patterns Programming Methodologies, DevOps, Disaster Recovery, Ecosystems, Engineering, Enterprise Applications, Enterprise Protection, Establish Priorities, Git, High Availability, Identify Issues, Information Technology & Information Systems, Infrastructure Software, Infrastructure as a Service (IaaS), Input/Output, Integration Testing, Internet Security, Jenkins, Leadership, Linux Administration, Linux Operating System, Mentoring, Microservices, Middleware, Multiplatform/Cross-Platform, Network Configuration Management, Network Connectivity, Network Performance/Analysis, Network Support, Operating Systems, Operational Audit, Operational Support, Operations Security (OPSEC), Performance Analysis, Performance Management, Performance Reviews, Product Support, Production Systems, Publications, Python Programming/Scripting Language, Reliability Engineering, Requirements Management, Research Skills, Risk, Risk Management, Root Cause Analysis, Security Analysis, Security Infrastructure, Security Monitoring, Security Software, Security System Design, Software Administration, Software Design, Software Engineering, Software Patches, Subnet, Sustainability, System Operations, Systems Administration/Management, Systems Analysis, Systems Engineering, Systems Maintenance, Systems Scalability, Team Player, Technical Research, Technical Strategy, Technical/Engineering Design, Technology Analysis, Telemetry, Testing, Time Management, Trend Analysis, Validation Testing
LOCATION
Reston, Virginia
POSTED
1 day ago
AWS Cloud Platform EngineerThis position is to remediate Indicators of misconfigurations (IOM's) and Indicators of attack (IOA's) reported by our Cloud Security Posture Management tool CrowdStrike. Defines, designs, develops, and engineers secure cloud platform solutions with a primary focus on the remediation of AWS cloud security vulnerabilities, compliance gaps, and platform risks. Performs vulnerability analysis, root-cause assessment, remediation planning, and engineering implementation across AWS services, infrastructure-as-code, operating systems, containers, and supporting platform components. Assesses architecture and current platform limitations, defines secure system specifications, and evaluates input/output processes and working parameters for cloud, infrastructure, and software compatibility. Coordinates remediation activities across Cloud Platform Engineering, Security, application teams, and infrastructure stakeholders to ensure vulnerabilities are prioritized, remediated, validated, and sustainably prevented. Defines system support requirements to include monitoring, capacity, staffing, patching/updating, automation, and security guardrails. Analyzes and resolves platform support deficiencies and conducts independent technical investigations in cloud security, systems design, and engineering remediation.Essential Functions:Leads hands-on remediation of AWS cloud security vulnerabilities, including findings related to IAM, network exposure, encryption, logging, patching, configuration drift, container security, and cloud service misconfiguration.Installs, tunes, upgrades, troubleshoots, and maintains cloud and systems platforms relevant to supported applications, including operating system administration, user access management, disaster recovery support, networking configuration, patching, and vulnerability remediation.Develops and implements engineering solutions, automation, and guardrails to prevent recurring security vulnerabilities and system problems.Evaluates new and existing cloud services, systems, and security controls by performing in-depth testing, end-user reviews, vulnerability validation, remediation verification, and performance assessments.Improves engineering and cloud security knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; benchmarking state-of-the-art AWS security, platform engineering, and vulnerability management practices; and participating in professional societies.Acts as a mentor for junior and senior team members, with emphasis on secure cloud engineering practices, vulnerability remediation, automation, infrastructure as code, and AWS platform standards.Qualifications:To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Education Level: Bachelor's DegreeEducation Details: Information Technology, Computer Science, Cybersecurity, Engineering, or related technical field.Experience: 8 years proven success overseeing the design, development, implementation, support, and secure operation of software systems, cloud platforms, infrastructure services, or enterprise applications. In lieu of a bachelor's degree, an additional 4 years of relevant work experience is required in addition to the required work experience.Preferred Qualifications:Seeking an experienced and hands-on AWS Cloud Platform Engineer with strong cloud security, vulnerability remediation, infrastructure engineering, and automation experience. This resource will focus on remediating cloud security vulnerabilities across the AWS environment, strengthening platform guardrails, and improving the security posture of enterprise cloud services. The AWS Cloud Platform Engineer will be responsible for analyzing security findings, designing and implementing remediation solutions, validating closure of vulnerabilities, and integrating preventive controls into the AWS platform. The role requires strong hands-on engineering capability, deep AWS platform knowledge, and the ability to collaborate with Security, Cloud Platform Engineering, application teams, architects, and operations teams to deliver scalable, reliable, secure, and compliant cloud solutions.Summary:Minimum of 10 years of IT experience, of which at least 5 years must be in AWS Cloud Platform engineering, administration, automation, or security remediation. Strong hands-on AWS engineering experience with proven ability to remediate cloud security vulnerabilities and harden AWS environments. Experience analyzing and remediating findings from cloud security, vulnerability management, configuration compliance, container security, and monitoring tools. Strong experience with AWS security services and controls, including IAM, Organizations, SCPs, GuardDuty, Security Hub, Inspector, Config, CloudTrail, CloudWatch, KMS, Secrets Manager, WAF, VPC, Security Groups, NACL, S3 security, EC2 hardening, Lambda security, and EKS security. Strong leadership experience driving security remediation, cloud transformation, and platform engineering initiatives. 3-5 years of experience in a Site Reliability Engineering or cloud operations role. Experience with SRE principles, operational resilience, and transformation. 3+ years of experience with containerization, Kubernetes, AWS EKS, DevOps toolchains, Ansible, Jenkins, Artifactory, Bitbucket, infrastructure as code, automated provisioning, release automation, and CI/CD. Solid understanding of software engineering practices, including build, integration, test, release, deployment, and automation using Python. Experience developing, challenging, and improving engineering solutions and practices in partnership with developers, architects, engineers, security teams, and customers. Platform engineering lead with hands-on experience building robust middleware, cloud, and Linux-based environments. Previous Linux system administration experience is required. Must have strong hands-on knowledge of AWS platform and services, including but not limited to VPC, networking, Direct Connect, subnets, NACLs, Security Groups, EC2, S3, IAM, ELB, Lambda, CloudWatch, CloudTrail, AWS Config, GuardDuty, Inspector, Security Hub, KMS, Secrets Manager, WAF, and EKS. Must have hands-on current implementation and production-level experience in AWS Cloud. Hands-on experience with automation and infrastructure provisioning is required; the target state is infrastructure as code, policy as code, automated remediation, and repeatable security guardrails. Must be familiar with Terraform automation, Ansible playbooks, Python code, and secure CI/CD practices. Experience with AWS CloudFormation and CDK is required. Must have hands-on experience writing Lambda functions, preferably in Python using Boto3, to support automation and remediation workflows. Must be well versed in writing Linux Bash scripts. Minimum of one AWS certification is required; AWS Security Specialty, Solutions Architect, SysOps Administrator, or DevOps Engineer certification is preferred. Hands-on experience with containerization and Amazon EKS is a strong plus. Strong understanding of DevOps toolchains, including Git/repo, Crucible, Jenkins, Bitbucket, Jira, Artifactory, and related tools. Solid understanding and experience with CI/CD toolchains and secure software delivery practices.Roles & Responsibilities:Lead hands-on remediation of AWS cloud security vulnerabilities, misconfigurations, compliance gaps, and platform risks across production and non-production environments. Review security findings from AWS-native and enterprise security tools, determine remediation approach, implement fixes, and validate successful closure. Communicate architectural decisions, remediation plans, goals, strategies, and short-term trade-offs versus long-term commitments, risk reduction, and cost impacts. Engage in and improve the end-to-end lifecycle of cloud services, starting from inception and design through deployment, operations, monitoring, and continuous security improvement. Establish automation capabilities leveraging AWS-native services, infrastructure as code, policy as code, and CI/CD pipelines to improve developer experience and reduce recurring vulnerabilities. Support activities including system design consulting, secure platform engineering, software platforms and frameworks, capacity planning, launch reviews, and operational readiness reviews. Troubleshoot difficult cloud security, infrastructure, and application platform issues and engage customers and stakeholders to drive timely remediation. Learn and apply new AWS services, security capabilities, and engineering practices as required. Improve system scalability, sustainability, reliability, and security through automation, repeatable patterns, and engineering standards. Support enterprise cloud transformation, migration, modernization, and security posture improvement efforts. Guide customers on cloud-native design, secure architecture patterns, AWS security controls, and platform guardrails. Provide consultation on technology infrastructure planning, security remediation, and engineering for assigned systems; assess the implications of technology strategies on infrastructure capabilities and risk posture. Establish strategies to migrate legacy applications to secure, cloud-native patterns, including microservices hosted on AWS Cloud. Leverage cloud-native architecture components including containers, immutable infrastructure, microservices, service mesh, serverless capabilities, and managed AWS services to build highly available, fault-tolerant, and secure applications. Conduct research on global technology, cloud security, and platform engineering trends and their applicability to client's products in support of internal development teams and business initiatives. Promote modern application design, engineering best practices, secure-by-design patterns, vulnerability mitigation, and lifecycle risk management. Monitor and manage stability, availability, performance, and security of enterprise systems and platforms across IT domains. Analyze systems, network, storage, cloud, and security telemetry to identify problems, trends, vulnerabilities, and opportunities for improvement. Automate end-to-end processes to maintain, patch, upgrade, harden, and secure the AWS cloud ecosystem. Make data-driven recommendations and decisions that improve the overall efficacy, efficiency, security, and reliability of software delivery and cloud platform capabilities. Mentor peers and engage across teams to socialize solutions, improve security practices, and increase engineering maturity.Strong skills are desired in each of the following areas:

About the Company

T

TalTeam, Inc