Prepin
Log in
ECS Tech Inc

engineering opportunity

AWS Cloud / Security Engineer

The AWS Cloud Security Engineer will design, build, and maintain secure cloud infrastructure for mission-critical FBI applications. Responsibilities include implementing NIST security controls, managing IAM policies, and collaborating with development teams to ensure environment stability.

Stafford, Virginia, United StateshybridFULL_TIME

Posted

About the role

What will you do at ECS Tech Inc?

Everforth ECS is seeking a AWS Cloud Security Engineer to work in our Stafford,

VA (hybrid) office.

The ECS Team provides focused Agile software development and maintenance for

CODIS, a mission-critical application for the FBI. CODIS supports a database

repository of DNA profiles from individuals, unsolved crime scene evidence, and

missing persons. CODIS software allows local, state, and national laboratories

to compare DNA profiles electronically, thereby linking serial crimes to each

other and identifying suspects by matching DNA profiles from crime scenes to

individuals’ profiles.

Responsibilities

  • * Work in the Security & Infrastructure team for cloud-based development in AWS
  • * Design, build, and maintain AWS infrastructure supporting CODIS development
  • ,test , pre-prod and prod environments, including EC2, IAM, VPC networking,
  • security groups, and AMI lifecycle management.
  • * Provision and manage infrastructure through code using CloudFormation.
  • * Partner with the CODIS development and infrastructure teams to keep Dev and
  • Test environments stable, current, and available to the sprint teams.
  • * Occasional need for off-hours support for system upgrades, patches and
  • maintenance activities
  • * Implement and validate security settings across cloud infrastructure,
  • operating system baselines, and application platforms.
  • * Provide AWS network and security support, including subnet and routing
  • design, security group and NACL configuration, encryption in transit and at
  • rest, KMS key management, and enterprise certificate and TLS trust
  • management.
  • * Design and maintain least privilege IAM roles and policies, and remediate
  • findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config.
  • * Implement NIST SP 800-53 security controls in the cloud environment and
  • document how each is satisfied, working within the NIST Risk Management
  • Framework.
  • * Contribute technical content to ATO packages, including System Security Plan
  • (SSP) narratives, control implementation statements, diagrams, and inventory
  • artifacts.
  • * Support security assessments by producing evidence on request, responding to
  • assessor questions, and driving Plan of Action and Milestones (POA&M) items
  • to closure.
  • * Participate in Agile ceremonies, refine infrastructure and security stories,
  • and provide realistic estimates to the sprint team.
  • * Troubleshoot environment and pipeline issues with precision, and document
  • root cause and resolution so the fix is repeatable.
  • Salary Range: $100,000-$120,000
  • General Description of Benefits [https://ecstech.com/careers/benefits]

Qualifications

  • * Active Secret clearance
  • * Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs
  • * Practical experience implementing security settings and hardening across
  • cloud and operating system layers.
  • * Working familiarity with NIST SP 800-53 controls and the RMF or ATO process,
  • including contributing to security documentation, assessment evidence, or
  • POA&M remediation on an accredited system.
  • * Experience working with Kubernetes and container images
  • * Experience using or managing Git-based version control across multiple
  • projects
  • * Current Security+ certification or the ability to obtain within 6 months
  • * System Administration experience
  • * Strong attention to detail and solid troubleshooting ability
  • * Proficiency in scripting language(s), PowerShell or bash preferred
  • * Experience with security settings implementation

Which skills does this role require?

AWSCloud SecurityInfrastructure as CodeCloudFormationIAMVPCKubernetesNIST SP 800-53Risk Management FrameworkSecurity+System AdministrationPowerShellBashGitTroubleshootingNetwork SecurityEC2RMFATOEncryptionKMSTLSAgileSecurity HubGuardDutyConfigSecret ClearanceAMIDevOpsComplianceSystem Security PlanPOA&MREST APIs

Make your next move

Build a shortlist and prepare

Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.

Review the responsibilities and requirements before adding an opening to your shortlist.

Role information can change. Confirm current details on the original application page.

Product

AI Candidate AgentCompaniesBrowse JobsDeep ProfileSkill AssessmentOpportunity Matching
Prepin.ai

© 2026 Prepin | All rights reserved.