About the role
What will you do at ECS Tech Inc?
Everforth ECS is seeking a AWS Cloud Security Engineer to work in our Stafford,
VA (hybrid) office.
The ECS Team provides focused Agile software development and maintenance for
CODIS, a mission-critical application for the FBI. CODIS supports a database
repository of DNA profiles from individuals, unsolved crime scene evidence, and
missing persons. CODIS software allows local, state, and national laboratories
to compare DNA profiles electronically, thereby linking serial crimes to each
other and identifying suspects by matching DNA profiles from crime scenes to
individuals’ profiles.
Responsibilities
- * Work in the Security & Infrastructure team for cloud-based development in AWS
- * Design, build, and maintain AWS infrastructure supporting CODIS development
- ,test , pre-prod and prod environments, including EC2, IAM, VPC networking,
- security groups, and AMI lifecycle management.
- * Provision and manage infrastructure through code using CloudFormation.
- * Partner with the CODIS development and infrastructure teams to keep Dev and
- Test environments stable, current, and available to the sprint teams.
- * Occasional need for off-hours support for system upgrades, patches and
- maintenance activities
- * Implement and validate security settings across cloud infrastructure,
- operating system baselines, and application platforms.
- * Provide AWS network and security support, including subnet and routing
- design, security group and NACL configuration, encryption in transit and at
- rest, KMS key management, and enterprise certificate and TLS trust
- management.
- * Design and maintain least privilege IAM roles and policies, and remediate
- findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
- * Implement NIST SP 800-53 security controls in the cloud environment and
- document how each is satisfied, working within the NIST Risk Management
- Framework.
- * Contribute technical content to ATO packages, including System Security Plan
- (SSP) narratives, control implementation statements, diagrams, and inventory
- artifacts.
- * Support security assessments by producing evidence on request, responding to
- assessor questions, and driving Plan of Action and Milestones (POA&M) items
- to closure.
- * Participate in Agile ceremonies, refine infrastructure and security stories,
- and provide realistic estimates to the sprint team.
- * Troubleshoot environment and pipeline issues with precision, and document
- root cause and resolution so the fix is repeatable.
- Salary Range: $100,000-$120,000
- General Description of Benefits [https://ecstech.com/careers/benefits]
Qualifications
- * Active Secret clearance
- * Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
- * Practical experience implementing security settings and hardening across
- cloud and operating system layers.
- * Working familiarity with NIST SP 800-53 controls and the RMF or ATO process,
- including contributing to security documentation, assessment evidence, or
- POA&M remediation on an accredited system.
- * Experience working with Kubernetes and container images
- * Experience using or managing Git-based version control across multiple
- projects
- * Current Security+ certification or the ability to obtain within 6 months
- * System Administration experience
- * Strong attention to detail and solid troubleshooting ability
- * Proficiency in scripting language(s), PowerShell or bash preferred
- * Experience with security settings implementation
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
IT Senior Security Engineer
August Schell · Bethesda, Maryland, United States
Security Engineer
Brightspot · Reston, Virginia, United States
Lead Engineer, Information Security (Application Security)
RXO, Inc. · United States
Cloud Security Engineer
Morgan & Morgan, P.A. · Tampa, Florida, United States
Senior Security Engineer
Credit Sesame · Mountain View, California, United States
CSfC Network Security Engineer
TECH(x) · Aberdeen, Maryland, United States
Role information can change. Confirm current details on the original application page.
