Candidate must be located in DMV area and able to commute to Stafford, VA office 4-5 times per month. ***Security Clearance: Active Secret Clearance required.** We are seeking an AWS Cloud Security Engineer to work in our Stafford, VA (hybrid) office. The Team provides focused Agile software development and maintenance for CODIS, a mission-critical application for the FBI. CODIS supports a database repository of DNA profiles from individuals, unsolved crime scene evidence, and missing persons. CODIS software allows local, state, and national laboratories to compare DNA profiles electronically, thereby linking serial crimes to each other and identifying suspects by matching DNA profiles from crime scenes to individuals’ profiles. RESPONSIBILITIES: Work in the Security & Infrastructure team for cloud-based development in AWS Design, build, and maintain AWS infrastructure supporting CODIS development ,test , pre-prod and prod environments, including EC2, IAM, VPC networking, security groups, and AMI lifecycle management. Provision and manage infrastructure through code using CloudFormation. Partner with the CODIS development and infrastructure teams to keep Dev and Test environments stable, current, and available to the sprint teams. Occasional need for off-hours support for system upgrades, patches and maintenance activities Implement and validate security settings across cloud infrastructure, operating system baselines, and application platforms. Provide AWS network and security support, including subnet and routing design, security group and NACL configuration, encryption in transit and at rest, KMS key management, and enterprise certificate and TLS trust management. Design and maintain least privilege IAM roles and policies, and remediate findings from IAM Access Analyzer, Security Hub, GuardDuty, and Config. Implement NIST SP 800-53 security controls in the cloud environment and document how each is satisfied, working within the NIST Risk Management Framework. Contribute technical content to ATO packages, including System Security Plan (SSP) narratives, control implementation statements, diagrams, and inventory artifacts. Support security assessments by producing evidence on request, responding to assessor questions, and driving Plan of Action and Milestones (POA&M) items to closure. Participate in Agile ceremonies, refine infrastructure and security stories, and provide realistic estimates to the sprint team. Troubleshoot environment and pipeline issues with precision, and document root cause and resolution so the fix is repeatable. MANDATORY SKILLS/EXPERIENCE Note: Candidates who do not have the mandatory skills will not be considered Active Secret clearance Minimum 3 years of experience Demonstrated hands-on AWS experience administering EC2, IAM, VPC, and AMIs Practical experience implementing security settings and hardening across cloud and operating system layers. Working familiarity with NIST SP 800-53 controls and the RMF or ATO process, including contributing to security documentation, assessment evidence, or POA&M remediation on an accredited system. Experience working with Kubernetes and container images Experience using or managing Git-based version control across multiple projects Current Security+ certification or the ability to obtain within 6 months System Administration experience Strong attention to detail and solid troubleshooting ability Proficiency in scripting language(s), PowerShell or bash preferred Experience with security settings implementation DESIRED SKILLS Experience in Agile SDLC Familiarity with FedRAMP, AWS GovCloud, or CJIS Security Policy requirements. Experience using Infrastructure as Code tools like Terraform and CloudFormation Previous experience working in a software development shop Knowledge of security monitoring/scanning tools and their usage Linux experience is a bonus. If you are interested in getting more information about this opportunity, please contact Irina Rozenberg Recruiting@arielpartners.com at your earliest convenience. At Ariel Partners, we solve the most difficult problems that inhibit technology from enabling our customers to achieve their goals. Our vision is to be recognized by our stakeholders as an elite provider of IT solutions, so when they have their biggest challenges, we are on their short list. We are looking for team members who share our values of: Integrity to do the right thing even when it hurts; Commitment to the long-term success and happiness of our customers, our people, and our partners; Courage to take on difficult challenges, accept new ideas, and accept incremental failure; and the constant pursuit of Excellence. Ariel Partners is an Equal Opportunity Employer in accordance with federal, state, and local laws.
Senior Security Engineer I, Product Security
Oscar Health
Security Engineer II - Cloud & Vulnerability Management
Nasuni
Senior Cloud Security Engineer
ComPsych
Systems Engineer I (Hybrid) - WashU IT, Cloud and Endpoint Security
Wustl
Senior Cloud Security Engineer (AWS)
Abnormal
Cloud Security Operations Engineer (GCP/AWS) - Remote
Medable