openqareer

Senior Cloud Platform & DevSecOps Engineer – Federal Compliance

Human Resources Technologies · United States

# Senior Cloud Platform & DevSecOps Engineer – Federal Compliance **Human Resources Technologies** · United States · `On-site` 🕒 **Статус:** *Опубликовано: 4 дня назад* · *Источник: Indeed* --- ### About the Role About the Role FedHIVE is seeking an experienced, hands-on Senior Cloud Platform Engineer to design, secure, automate, and operate cloud infrastructure supporting federal, DoD, and regulated environments. This is not a compliance-advisory-only position or a traditional systems administration role. We are looking for an engineer who can translate security and compliance requirements into working technical controls—and then implement, automate, monitor, troubleshoot, and maintain those controls in production. The ideal candidate combines strong AWS/cloud infrastructure and DevSecOps engineering experience with practical experience implementing security controls in FedRAMP, NIST SP 800-53, NIST SP 800-171, CMMC, and/or DoD environments . This is also a customer-facing technical role . You will work directly with customer engineering and security teams, assessors, and FedHIVE teams throughout onboarding, assessments, remediation, and ongoing operations. Performance Bonus: Annual target bonus of 10% of base salary. Employment Requirements Candidates must hold a current DoD IAT Level II (or higher) qualifying certification , such as CompTIA Security+ . Applicants must provide the certification name, date earned, and current expiration or renewal date on or with their resume. Expired certifications or certifications submitted without the required dates will not be accepted. 7+ years of experience in Infrastructure Operations, DevOps, DevSecOps, Platform Engineering, Site Reliability Engineering, Cloud Engineering, or a related technical discipline. U.S. citizenship is required. Must successfully complete a background check and satisfy applicable customer and system access requirements. · Full-time, U.S.-based remote position with minimal travel. · Regular work hours are aligned with Eastern Time (ET) . Occasional after-hours work may be required for security updates, maintenance, incident response, or other production needs. What You’ll Do Design, build, secure, and operate highly available and resilient production AWS and AWS GovCloud infrastructure , including networking, compute, storage, IAM, logging, monitoring, and security services. Build and maintain infrastructure using Terraform and modern Infrastructure as Code (IaC) practices; experience with Ansible, CloudFormation, or comparable automation tools is valuable. Develop and maintain CI/CD and DevSecOps pipelines using modern Git-based workflows and platforms such as GitHub, GitLab, Jenkins, or comparable technologies. Integrate security testing and controls into delivery pipelines, including vulnerability scanning, secret detection, container/image scanning, dependency analysis, and IaC security scanning. Translate FedRAMP, NIST, CMMC, and/or DoD security requirements into practical technical implementations. Implement secure configuration baselines, IAM, encryption, logging, monitoring, vulnerability management, and system hardening, including DISA STIGs or comparable standards . Own technical remediation of security findings from identification and prioritization through implementation, validation, documentation, rescanning, and closure, including POA&M items. Build automation that validates security controls, detects configuration drift, collects technical evidence, and reduces manual compliance operations. Lead technical portions of customer onboarding, architecture reviews, assessments/3PAO activities, remediation, and production troubleshooting . Work directly with customer engineering and security teams to support implementation, onboarding, architecture discussions, and technical troubleshooting. Troubleshoot complex production issues, perform root-cause analysis, and maintain appropriate technical documentation, architecture diagrams, procedures, and operational runbooks . Serve as a customer-facing technical advisor , clearly communicating architecture decisions, technical risks, security requirements, evidence, and recommended solutions to customers, security teams, and assessors. What We’re Looking For Strong hands-on experience designing and operating production AWS cloud environments . Strong experience with Terraform and Infrastructure as Code , CI/CD, and Git-based engineering workflows. Proficiency with Linux and scripting/automation using Python, Bash, PowerShell, or similar tools; Windows administration experience is a plus . Strong understanding of cloud networking , including routing, DNS, firewalls/security groups, load balancing, VPNs, and network segmentation, as well as IAM, encryption, logging, monitoring, vulnerability management, and system hardening. Practical experience implementing technical security controls within FedRAMP, NIST SP 800-53, NIST SP 800-171, CMMC, and/or DoD environments . Experience with vulnerability remediation, secure configuration/hardening, and remediation of security findings. Strong production troubleshooting and root-cause analysis skills. Demonstrated ability to own complex technical problems and drive them through resolution . Demonstrated experience working directly with customers or external technical stakeholders . Comfort operating as both an engineer and technical advisor —equally comfortable troubleshooting infrastructure, walking a customer through an architecture decision, and explaining technical evidence to an assessor. Ability to work independently, exercise sound technical judgment, and communicate effectively with technical and non-technical stakeholders. Highly Desired Experience with one or more of the following is a plus: FedRAMP Moderate or High DoD Cloud Computing SRG / IL4 or IL5 environments CMMC and NIST RMF Kubernetes/EKS and Docker/container security Splunk or comparable SIEM platforms AWS security and operations services such as Security Hub, Config, GuardDuty, Inspector, Systems Manager, Secrets Manager, KMS, CloudTrail, and CloudWatch Security/compliance automation and automated evidence collection Policy-as-code or OSCAL Additional AWS, Linux, Terraform, Kubernetes, or other relevant technical certifications What Success Looks Like You can take a security or compliance requirement through the complete technical lifecycle: Requirement → Architecture → Implementation → Automation → Testing → Evidence → Assessment → Continuous Monitoring → Remediation → Closure You are comfortable discussing a requirement with a customer, implementing the solution in AWS/Terraform, troubleshooting it in production, explaining the implementation to an assessor, and producing the technical evidence needed to demonstrate that the control is operating effectively. You can explain what you built, why you built it that way, and how it meets the requirement . About FedHIVE FedHIVE helps technology companies bring their products into high-assurance federal and DoD environments without building an entire federal cloud and compliance operation from scratch . Our team manages the security and compliance operations needed to achieve and sustain federal market access, including continuous monitoring, assessments, remediation, reporting, and government engagement. Our engineers work at the intersection of cloud platform engineering, cybersecurity, DevSecOps, federal security, and customer delivery . We don't simply advise customers on security requirements—we help build, operate, validate, and maintain the technical environments that make those requirements real. Pay: $175,000.00 - $250,000.00 per year Benefits: 401(k) Dental insurance Health insurance Paid time off Vision insurance Application Question(s): Candidates must currently hold and maintain an active, unexpired DoD IAT Level II (or higher) qualifying certification, such as CompTIA Security+. Expired certifications do not meet this requirement. Please enter your certification name, date earned, and current expiration/renewal date. Are you available to work Monday through Friday, 8:00 AM to 5:00 PM Eastern Time? Experience: relevant: 7 years (Required) Location: United States (Required) Work Location: Remote

Наблюдалась 2026-09-21, впервые 2026-09-17, источник — Indeed.

Открыть у работодателя