GuidePoint Security
Posted 1mo ago

Cloud Security Engineer

GuidePoint Security
Reston, Virginia, United States
RemoteFull Time
Responsibilities
  • evaluating systems
  • implementing architectures
  • assessing compliance
Requirements
  • TS/SCI with CI polygraph required
  • 5+ years building/administering cloud environments
  • RMF and security documentation experience
  • Ability to obtain DoD 8570 certifications
  • Associate/bachelor/master experience combinations accepted
Technical tools mentioned
TerraformCloudFormationBicepGreenhouseZoom

Job description

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

About GuidePoint Security

GuidePoint Security is a leading cybersecurity solutions and services firm enabling federal government organizations to make smarter security decisions that minimize risk. With more than 800 vetted technology vendor partnerships and deep practitioner expertise across every major cybersecurity domain, GuidePoint serves more than half of the U.S. Government’s cabinet-level agencies across Civilian, DoD, and Intelligence Community segments, as well as Federal System Integrators and major defense prime contractors. We are growing our federal presales engineering team and looking for technically exceptional engineers who thrive at the intersection of federal mission and cybersecurity technology.

As a security engineer on our team, you’ll evaluate and support the documentation, validation, assessment, and accreditation processes necessary to ensure that Information Technology (IT) systems meet the organization’s Information Assurance (IA) and security requirements. You’ll assist in defining organizations’ desired state and risk thresholds and analyze actual state information to assess compliance. You’ll work with leaders to advise on codifying strategic objectives into doctrine and procedures that can help meet defined objectives. You’ll assist with evaluation of computer applications, software, or specialized utility programs to determine if software assurance best practices are followed. You’ll recommend tools and capabilities based on your research of the current environment and knowledge of various on-premises, cloud-based, and hybrid resources to address security requirements. You will implement the cloud security architectures, tools, and processes that you helped to shape and define. Your technical experience will be vital as you work with IC clients to ensure standards are met with security requirements. This is an opportunity to use the latest cloud technologies as you look for ways to secure your customer’s environment while collaborating with tomorrow’s cloud security experts.

Requirements

  • MUST have a TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
  • 5+ years of experience building and administering cloud environments, utilizing cloud-native functionality, and COTs, GOTS, and open-source tools to meet objectives
  • Experience with developing and evaluating security documentation, including system security plans, contingency plans, security procedures, and continuity of operations plans
  • Experience with security architecture evaluations, guidance development, and troubleshooting
  • Experience with the Risk Management Framework (RMF)
  • Experience with working in an Agile development environment
  • Knowledge of Infrastructure code concepts such as Terraform, CloudFormation, or Bicep
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities
  • Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX (formerly CASP+), CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP certification within 30 days of start date
  • Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification (CSSP-IS), including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes

Preferred Qualifications

  • Experience with the software development life cycle (SDLC)
  • Experience with cloud technologies
  • Possession of excellent team leadership, development, and client relationship skills
  • Possession of excellent interpersonal skills
  • Possession of excellent verbal and written communication skills

Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information.”

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.


Why GuidePoint?

GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.  

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option

 

About GuidePoint Security

Provides cybersecurity consulting, managed services, and integrated technology solutions.

Year founded
2011
Employees
1200
Organization type
Private
Latest investment
Raised $5.00M Private Equity (2023) — led by Audax Private Equity
Headquarters
US

Similar jobs

Cloud Security Engineer roles near Reston, Virginia
1d
Save
Mark Applied
Hide
Cloud Security Engineer 2
Bethesda, Maryland, United States
OnsiteFull Time
Base-2 Solutions
Base-2 Solutions: Delivers engineering and technology services for national security.
3+ YOEBachelor's degree or equivalent and 3 years of category experience, or equivalent substitutions; 1+ year AWS experience, Kubernetes and CI/CD security expertise, RMF knowledge, DoD IAT II certification, and active TS/SCI clearance.
AWS, Kubernetes, CI/CD, DevSecOps, Splunk, Nessus, SonarQube, Prisma Cloud, DAST, SAST, Linux, Generative AI
2d
Save
Mark Applied
Hide
Cloud Security Engineer, Senior
Charlottesville or Alexandria
$99k-$225k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
8+ YOE8+ years securing systems and cloud environments, 4+ years in Army, DoD, or IC cybersecurity, Top Secret clearance, cloud automation, RMF, DevSecOps, IaC, and eligible IAT Level II certification.
Amazon Web Services (AWS), Microsoft Azure, Infrastructure as a Service, Bash, PowerShell, Python, Azure Command Line Interface (CLI), Git, Jira, Confluence, Linux, Windows, Continuous Integration/Continuous Delivery (CI/CD), Infrastructure-as-Code (IaC), DevSecOps, RMF, STIG, NIST, ICD 503, Agile
1w
Save
Mark Applied
Hide
Cloud Security Engineer
McLean or Herndon
$142k-$236k/yr OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
7+ YOERequires 7+ years in cloud security or cyber operations, 7+ years in systems/network/security architecture, 5+ years AWS, 3+ years Python, and active TS/SCI with Polygraph; bachelor's degree and certifications preferred.
Amazon Web Services (AWS), Python, Splunk Query Language, Splunk, Azure, OCI, SOAR
1w
Save
Mark Applied
Hide
Security Lead - Senior Cloud Security Engineer
McLean, Virginia, United States
$130k-$180k/yr OnsiteFull Time
Steampunk
Steampunk: Federal digital transformation and consulting services provider.
7+ YOEBachelor's degree in IT or related field, 7+ years cloud solution experience, 5+ years AWS, Git, infrastructure as code, cloud security, and Agile systems development; AWS certification and clearance eligibility required.
AWS, GitHub, GitLab, Bitbucket, Bash, PowerShell, Python, Groovy, Ruby, Pivotal, Chef, Terraform, CloudFormation, Ansible, SIEM, Microsoft PowerShell
1w
Save
Mark Applied
Hide
AWS Cloud / Security Engineer
Stafford, Virginia, United States
$100k-$120k/yr HybridFull Time
ECS
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
Requires active Secret clearance, AWS administration, cloud security hardening, NIST SP 800-53 and RMF/ATO experience, Kubernetes, Git, Security+, system administration, and scripting skills.
AWS, Amazon EC2, AWS IAM, Amazon VPC, Amazon Machine Images (AMIs), AWS CloudFormation, Kubernetes, Git, PowerShell, Bash, NIST SP 800-53, Risk Management Framework (RMF), Authorization to Operate (ATO), AWS KMS, AWS IAM Access Analyzer, AWS Security Hub, Amazon GuardDuty, AWS Config, Terraform, FedRAMP, AWS GovCloud, CJIS Security Policy, Linux
1w
Save
Mark Applied
Hide
Cloud Security Engineer
Baltimore, Maryland, United States
$140k-$150k/yr OnsiteFull Time
Brown Advisory
Brown Advisory: Provides investment management and financial advisory services to global clients.
4+ YOEBachelor's degree or equivalent experience; 4–8 years in information or cloud security; hands-on Microsoft Azure security experience; cross-functional collaboration and strong written communication skills.
Microsoft Azure, Microsoft Defender for Cloud, Azure Policy, Microsoft 365, Microsoft Entra ID, Microsoft Purview, Microsoft Defender, Salesforce, Box, SIEM
2w
Save
Mark Applied
Hide
Cloud Security Engineer
Linthicum, Maryland, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: Provides advanced technology and mission support for government agencies.
7+ YOEDesign, implement, and secure DoD cloud environments; knowledge of RMF/STIGs/ATO processes; AWS/Azure, Kubernetes, Git, CI/CD, Ansible/Terraform; active Top Secret/SCI and IAT Level II (Security+); advanced degree or extensive experience required.
firewalls, IDS, SIEMs, AWS, Azure, Git, Kubernetes, Java, Python, C#, Ansible, Terraform, Azure Entra ID, AWS IAM, Keycloak
2w
Save
Mark Applied
Hide
Cloud Security Engineer
Linthicum, Maryland, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: National security and mission-critical government technology services provider.
7+ YOEActive Top Secret/SCI clearance and IAT Level II (Security+); strong cloud (AWS/Azure) and CI/CD security experience; RMF/STIG/ATO knowledge; Kubernetes, IAM, Linux, and programming (Java/Python/C#) skills.
IDS, SIEM, AWS, Azure, cloud observability toolsets, Git, CI/CD, Kubernetes, Ansible, Terraform, Java, Python, C#, Azure Entra ID, AWS IAM, Keycloak