Alibaba Cloud Linux Vs Ubuntu Jobs in Usa
2,058 positions found — Page 2
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is looking for a Senior Cyber Cloud Assessment Engineer to join our team in support of an upcoming cybersecurity risk management and assessment program with our DoD customer. As a Team Lead, you will be responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.
Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.
Responsibilities Include:
- Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the Department of Defense (DoD) Provisional Authorization (PA) process.
- Evaluate Cloud Service Provider (CSP) documentation packages following government guidance and procedures, including key artifacts such as the Cloud Architecture Diagram, System Security Plan (SSP), SSP Addendum, Readiness Assessment Report (RAR), System Architecture, Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated Plans of Action & Milestones (POA&Ms).
- Review, analyze, and process additional documents including Change Requests, Extension Requests, Deviation Requests, Whitelist Requests, Corrective Action Plans, templates, process guide approvals, and continuous monitoring (ConMon) artifacts for existing Provisional Authorizations.
- Prepare and deliver up to 30 Cloud Security Assessment Packages annually, each including validated cybersecurity controls, certifier recommendations, and a statement of residual risk.
- Participate in technical kickoff meetings and review preliminary documentation to assess a CSP's readiness posture.
- Analyze and provide detailed feedback on CSP submissions such as the RAR, SAP, SSP, and architectural diagrams.
- Assess and document the operational impact of authorizations, changes, and vulnerabilities on the CSP environment.
- Develop Cloud Security Assessment Packages in accordance with established guidelines, including the SAR, POA&M, and any Deviation Requests.
- Draft Authorization Recommendation Memoranda outlining CSO compliance with DoD cybersecurity controls, residual risks, and technical findings.
- Prepare formal DoD Provisional Authorization memoranda, detailing authorization length, CSO boundary, services provided, operating conditions, DoD usage considerations, and follow-on activities.
- Validate CSO controls within eMASS or other government-provided Governance, Risk, and Compliance (GRC) tools; ensure accurate tracking in the Mission Status Report (MSR).
- Review and verify the Customer Responsibility Matrix (CRM), ensuring proper control inheritance is reflected in eMASS/GRC systems.
- Upload authorization conditions as system-level POA&Ms in eMASS and monitor their resolution.
- Organize and associate all received documentation with applicable security controls within eMASS.
- Maintain and update the DoD Cloud Process Guide, including all checklists, templates, forms, and guidance documents.
- Assist in developing internal requirements and how-to guides for assessors conducting CSP validations.
- Document and refine assessment procedures and validation best practices to align with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG).
- Contribute to the ongoing development and annual updates of the DoD Cloud Assessment Process Guides as requested by the Government.
Requirements:
- Bachelor's degree (IT-related field preferred)
- Eight (8) years of overall experience in cybersecurity or network security position
- Have an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IAM/IA Technical (IAT) Level III certification
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Solid understanding of DoD Risk Management Framework (RMF), DoDI 8510.01, and DoD Cloud Computing Security Requirements Guide (SRG)
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Hands-on experience with eMASS or other government-provided GRC tools
- Familiarity with cloud security documentation, including SSPs, SARs, RARs, and POA&Ms
- Ability to analyze complex cloud architectures and provide accurate risk assessments
- Strong technical writing and communication skills to produce security assessment reports and formal recommendations
- Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full time.
Compensation: $110,000+
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.
MUST BE LOCAL TO SOUTH FLORIDA
2nd interview onsite If you cannot do an onsite interview, please do not apply.
POSITION INFORMATION
Reports To: Senior Manager, Security Architecture
Division: Global Cybersecurity Services
Department: Security Architecture
Job Location: South Florida
LEADERSHIP / SUPERVISORY RESPONSIBILITY
- Direct Reports: No
- Hiring/Firing: No
- Promoting: No
- Compensating: No
- Training: No
- Budgeting: No
- Disciplining: No
- Scheduling: No
- Measuring Performance: No
BUDGETARY RESPONSIBILITY
- Administering Budgets: No
- Setting Budgets: No
- Monitoring Expenses: No
- Authorizing Payments: No
- Securing Equipment/Goods: No
SCOPE
- Collaborate with both shoreside and operational teams
- Global responsibilities across multiple business units
JOB SUMMARY
The Cloud Cybersecurity Architect is responsible for the development of technical security design specifications, integration standards, security requirements, and implementation of appropriate cloud security architectures to mitigate risk across enterprise cloud environments. This role works across global business units under the guidance of senior cloud security leadership to drive cloud security strategy, posture, and governance.
ESSENTIAL FUNCTIONS
#Responsibility% of Time
1
Support IT teams and business stakeholders in optimizing the use of Cloud Security Posture Management (CSPM) tools.
30%
2
Research, test, and implement cloud security guardrails.
20%
3
Document and transition cloud security posture reporting to operational teams.
5%
4
Define and maintain cloud security policies, standards, and procedures.
5%
5
Provide security architecture and consulting services to business units and IT teams, including threat modeling, risk assessments, and security design reviews for cloud-based systems (AWS, Azure, GCP, OCI, or hybrid environments).
15%
6
Review network designs, application data flows, and system integrations in cloud environments to ensure compliance with security policies, standards, and industry best practices.
10%
7
Assist in creating high-level network designs for security tools and reference architecture documentation.
5%
8
Contribute to the design and evolution of multi-cloud security strategy.
5%
9
Support and mature cloud security review intake processes.
5%
The above statements describe the general nature and level of work and are not an exhaustive list of all responsibilities. Duties may be added or modified as business needs evolve.
QUALIFICATIONS
Minimum Education
- Bachelor's degree in Cybersecurity, Computer Science, or a related field
- Master's degree is a plus
Required Experience
- 5+ years of cloud cybersecurity experience in a large enterprise environment
- Strong understanding of major cloud platforms and their core services (AWS, Azure, GCP, etc.)
Required Technical Skills
- Familiarity with cloud security principles including networking, IAM, data protection, infrastructure security, and logging/monitoring
- Strong understanding of DevOps principles and experience with Infrastructure as Code (IaC) tools such as Terraform or CloudFormation
- Working knowledge of Python
- Solid understanding of cybersecurity risks in architectural designs and the ability to recommend effective mitigating controls
Preferred Experience
- Experience with Cloud Security Posture Management (CSPM) tools (e.g., Orca)
Knowledge, Skills & Abilities
- Proven experience in security architecture and designing secure systems capable of withstanding cyber threats
- Ability to communicate cybersecurity architecture concepts to non-technical stakeholders
- Understanding of AI-related cybersecurity risks
Our client is looking C++ Linux Developer for Fulltime project in Austin, Texas (Onsite) Below is the detail requirement.
Title - C++ Linux Developer
Location – Austin, Texas
Experience – 5 to 7 years
Job Description:
Mandatory Skills:
- 7 years strong hands-on experience in software development using C++
- Proven hands-on experience with C and C++, including both legacy and modern standards
- Experience in API migration and code refactoring
- 6 years strong experience with Linux environments
- Knowledge of PAM, SSH, and gRPC is preferred
- Familiarity with build and installer processes
- Good working knowledge of cybersecurity principles
Potential Project Areas
- Web server upgrades
- Git repository migration
- CVE identification and remediation
Title : Oracle Fusion ERP Administrator (Cloud Administrator)
Work Location: Onsite (Monday–Friday) – Detroit Metropolitan (DTW) & Willow Run (YIP) Airports
Engagement Duration: Six (6) months, with possibility of extension or direct hire
Position Overview
The Client is seeking a qualified Oracle Fusion ERP Administrator (Cloud Administrator) to provide onsite administration and support of the Oracle Fusion Cloud environment. This role is responsible for security configuration, integrations, custom report development, workflow configuration, and ensuring the overall security, performance, and availability of the Oracle Fusion suite.
The ideal candidate will bring strong technical expertise, collaborative communication skills, and hands-on experience administering Oracle Fusion Cloud ERP in a complex enterprise environment.
Key Responsibilities
- Deploy, configure, test, and troubleshoot Oracle Fusion applications
- Administer Oracle security configuration, including user roles, data access, and security policies
- Develop and maintain integrations between Oracle Fusion and third-party systems
- Design, build, and maintain data models and reports using BI Publisher and OTBI
- Configure and optimize workflow processes to improve business operations
- Ensure system performance, availability, and security of the Oracle Fusion suite
- Collaborate with Oracle and third-party vendors as required
- Communicate maintenance schedules, refresh cycles, and outages effectively
- Monitor system performance and resolve issues in a timely manner
- Maintain comprehensive documentation of configurations, procedures, and processes
- Perform additional duties as assigned
Education Requirement
- Bachelor’s Degree from an accredited college or university in Computer Science, Information Technology, Engineering, or a related field
Minimum Qualifications
- Five (5) years of overall ERP administration experience
- Three (3) years of hands-on experience administering Oracle Fusion Cloud ERP
- Participation in at least one full Oracle Fusion Cloud Applications implementation
- Functional working knowledge of Oracle Fusion applications
- Functional working knowledge of Oracle Cloud Infrastructure (OCI)
- Strong communication and interpersonal skills with the ability to collaborate across all organizational levels
Preferred Qualifications & Competencies
- Experience administering Oracle Fusion Cloud HCM
- Experience administering Oracle Fusion Cloud EPM
- Experience designing and supporting business process workflows
- Experience developing functional and technical design specifications
- Experience with data conversions and data management practices
- Strong analytical and problem-solving capabilities
- Willingness to train and mentor internal staff
- Familiarity with SDLC, IT Change Control processes, deployment methodologies, and application lifecycle management
- Familiarity with core enterprise technologies such as ServiceNow and Office 365
- Public sector experience
Preferred Certifications (at least one or equivalent)
- Oracle Financials Cloud Implementation Professional
- Oracle Payroll Cloud Implementation Professional
- Oracle Fusion Cloud Procurement Implementation Professional
- Oracle Financial Consolidation and Close Implementation Professional
- Oracle Cloud Infrastructure Application Integration Professional
- Oracle Cloud Infrastructure Enterprise Analytics Professional
- Oracle Cloud Infrastructure Digital Assistant Professional
- Oracle Cloud Infrastructure (OCI) Foundations Associate
Endava is a leading technology services company dedicated to helping clients accelerate their digital transformation journeys. We're seeking a Google Cloud Industry Consultant to join our growing Google Cloud team. In this role, you'll be a true builder, with deep technical knowledge, working as an entrepreneur within our organization. You'll partner with Endava Industry Sellers and Google Cloud's sales teams to identify, pitch, and sell innovative, cloud-native solutions that directly address complex customer challenges. Your work will not only drive our clients' success but also contribute to the growth of our Google Cloud business. You'll be a trusted advisor, a technical visionary, and a hands-on leader, shaping the future of cloud solutions at the intersection of industry expertise and cutting-edge technology.
Accountabilities
As a Google Cloud Industry Consultant, you'll be accountable for:
- Pioneering Solutions and Market Building:
Act as an entrepreneur within Endava, working with Endava sellers to identify new market opportunities and build a pipeline of projects. You'll be a key player in the entire sales cycle, from initial discovery to closing the deal, focusing on selling services that leverage Google Cloud's capabilities to solve customer challenges. - Collaborative Client Engagement:
Work in close partnership with Endava industry sellers and Google sellers throughout the client engagement process. At times, you may lead the process, directing strategy and client interactions. In other situations, you'll be a key member of a collaborative team, providing technical expertise and support to achieve a shared goal. - Solution Architecture & Design:
Design and architect scalable, secure, and cost-effective cloud solutions on GCP. This includes creating detailed technical architectures, selecting appropriate GCP services, and defining migration and modernization strategies for complex enterprise environments. - Technical Leadership & Delivery:
Act as a hands-on technical leader, guiding delivery teams through the initial phases of client projects. You'll ensure architectural integrity and quality throughout the implementation process, providing expert guidance on everything from infrastructure as code (IaC) to CI/CD pipelines. - Industry Expertise & Thought Leadership:
Apply your deep knowledge of a specific industry (e.g., Financial Services, Retail, Healthcare) to tailor solutions that address unique sector-specific challenges and regulatory requirements. You'll contribute to Endava's intellectual capital by developing best practices, frameworks, and reusable assets.
Attributes
- We're looking for someone with a blend of technical prowess, strategic thinking, and exceptional interpersonal skills.
- Builder & Entrepreneur:
You must have a strong desire to build and grow something new. You're proactive, resourceful, and comfortable with ambiguity. You're energized by the challenge of creating a pipeline and closing deals. - Trusted Advisor:
You should be a credible and reliable source of expertise for clients and colleagues, capable of building long-term relationships based on trust and mutual respect. - Problem Solver:
You'll need to be analytical and adept at diagnosing complex business and technical issues. Your ability to think critically and propose innovative solutions is essential. - Communicator:
You must be able to articulate complex technical concepts in a clear, concise manner to a variety of audiences, from technical leads to non-technical business executives. - Collaborator:
The role requires working effectively with diverse, globally distributed teams and stakeholders. You'll need to share knowledge and contribute to a supportive, collaborative culture.
Ideal Profile
The ideal candidate will possess a compelling mix of experience and technical certifications.
Experience:
- 5+ years of hands-on experience in a cloud architecture, consulting, or solution design role.
- Extensive experience designing and implementing large-scale solutions on Google Cloud Platform (GCP).
- Demonstrated industry expertise in banking, payments or insurance
- Experience working in a pre-sales or business development capacity, including identifying opportunities, preparing proposals, and delivering pitches.
Technical Skills:
- Expert knowledge of core GCP services (Compute Engine, GKE, Cloud Storage, BigQuery, IAM, Networking).
- Hands-on experience with Infrastructure as Code tools like Terraform.
- Deeper technical experience in either AI & Data (e.g., Gemini, BigQuery, Vertex AI, Dataflow) or Security (e.g., Cloud Armor, VPC Service Controls, Security Command Center) is highly preferred.
- Familiarity with containerization (Docker, Kubernetes) and CI/CD tools.
- Understanding of data management, security, and governance best practices in a cloud environment.
Education & Certifications:
- Bachelor's degree in Computer Science, Engineering, or a related field.
- Google Cloud Professional Cloud Architect certification is highly preferred.
- Additional GCP certifications (e.g., Professional Data Engineer, Professional DevOps Engineer) are a plus
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance:
Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus; - Career Development:
Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership; - Learning Opportunities:
Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences; - Work-Life Balance:
Hybrid work and flexible working hours, employee assistance programme; - Health:
Global internal wellbeing programme, access to wellbeing apps; - Community:
Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
Additional Employee Requirements
- Participation in both internal meetings and external meetings via video calls, as necessary.
- Ability to go into corporate or client offices to work onsite, as necessary.
- Prolonged periods of remaining stationary at a desk and working on a computer, as necessary.
- Ability to bend, kneel, crouch, and reach overhead, as necessary.
- Hand-eye coordination necessary to operate computers and various pieces of office equipment, as necessary.
- Vision abilities including close vision, toleration of fluorescent lighting, and adjusting focus, as necessary.
- For positions that require business travel and/or event attendance, ability to lift 25 lbs, as necessary.
- For positions that require business travel and/or event attendance, a valid driver’s license and acceptable driving record are required, as driving is an essential job function.
If requested, reasonable accommodations will be made to enable employees requiring accommodations to perform the essential functions of their jobs, absent undue hardship.
USA Benefits (Full time roles only, does not apply to contractor positions)
- Robust healthcare and benefits including Medical, Dental, vision, Disability coverage, and various other benefit options
- Flexible Spending Accounts (Medical, Transit, and Dependent Care)
- Employer Paid Life Insurance and AD&D Coverages
- Health Savings account paired with our low-cost High Deductible Medical Plan
- 401(k) Safe Harbor Retirement plan with employer match with immediately vest
At Endava, we’re committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives—because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know.
CarMax, the way your career should be!
Principal Engineer – Network, Cloud & Identity (ISE / NAC)
About This Role
CarMax is modernizing and scaling its technology platforms to support secure, reliable, and resilient digital experiences. As a Principal Engineer within the Solutions Delivery and Engineering organization, you will provide senior technical leadership across enterprise networking, cloud networking, and automation, with a specific focus on Identity Services Engine (ISE) and Network Access Control (NAC).
This role combines hands-on technical expertise with architectural guidance and cross-team influence. You will partner with engineering teams, operational support teams, architects, and leadership to implement, support, and evolve secure network platforms that support both cloud and on-premise environments.
Key Responsibilities
- Provide senior technical leadership for enterprise network and cloud networking platforms, ensuring reliability, scalability, and security.
- Partner with technology leadership to support large, cross‑organizational initiatives and address complex technical challenges.
- Collaborate with engineering, architecture, and product teams to design and deliver network and identity solutions aligned with business needs.
- Influence technical standards, patterns, and best practices across teams, with an emphasis on security, automation, and operational efficiency.
- Lead design and implementation efforts for network access control (NAC) and identity-based network security solutions.
- Mentor and guide engineers through technical reviews, design discussions, and problem resolution.
- Participate in on-call rotation to support scheduled change windows and incident response for enterprise networks.
- Display high level leadership skills, being able to drive the overall vision of the organization.
- Stay current with industry trends in networking, cloud connectivity, automation, and identity services, and apply relevant advancements where appropriate.
Role Summary
The Principal Engineer is a senior individual contributor role focused on technical depth, architectural consistency, and engineering excellence. This position requires strong problem-solving skills, the ability to work across organizational boundaries, and experience influencing technical direction without direct authority. You will be expected to balance strategic thinking with hands-on involvement, particularly in complex or high-impact initiatives related to network security and identity.
Required Qualifications
- Bachelor’s Degree in Computer Science, Decision Science, Engineering, Statistics, or a related field, or equivalent alternative education, skills, and/or practical experience is preferred.
- 7+ years of work experience required in Network, Cloud Network, Network Security, and other areas directly relevant to Network/Cloud/Automation responsibilities and tasks; multiple certifications preferred.
- Demonstrated experience working in large, complex enterprise environments.
Technical Experience
Network, Cloud, and Automation
- 7+ years of experience with enterprise routing, switching, firewalls, and wireless networks, with HPE Aruba and Fortinet experience preferred.
- 5+ years of experience designing, building, and operating network infrastructure in cloud platforms, with Azure preferred.
- Strong understanding of hybrid networking models connecting on‑premise environments with public cloud platforms.
- Experience with network automation and scripting using languages such as Python, Ansible or PowerShell.
- Proven ability to design and support highly available and resilient network architectures.
- Experience driving technical improvements or standards across multiple teams.
Identity, NAC, and Cisco ISE
- Hands-on experience designing, implementing, and supporting Cisco Identity Services Engine (ISE) in enterprise environments.
- Strong knowledge of Network Access Control (NAC) concepts and implementations for wired, wireless, and device administration use cases.
- Experience configuring authentication and authorization policies within Cisco ISE.
- Experience implementing and supporting TACACS+ for device administration and role-based access control.
- Ability to act as a technical subject matter expert for ISE and NAC, providing guidance to engineering teams and stakeholders.
Professional Skills
- Strong analytical and troubleshooting skills, with the ability to resolve complex technical issues.
- Clear and effective communication skills, both written and verbal.
- Ability to work independently while also collaborating across teams and disciplines.
- Attention to detail and a focus on operational stability and security.
- Interest in continuous improvement through automation and process optimization.
Work Location and Arrangement - This role can be based out of the following locations:
- Midtown: This role will be based out of the CarMax Midtown Office (Richmond, VA) and associates will work onsite 5 days per week
- Plano: This role will be based out of the Dallas Tech Hub (Plano, TX) and associates will work onsite 2 days per week.
Work Authorization: Applicants must be currently authorized to work in the United States on a full-time basis. Sponsorship will not be considered for this specific role.
About CarMax
CarMax disrupted the auto industry by delivering the honest, transparent and high-integrity experience customers want and deserve. This innovative thinking around the way cars are bought and sold has helped us become the nation’s largest retailer of used cars, with over 250 locations nationwide.
Our amazing team of more than 25,000 associates work together to deliver iconic customer experiences. Along the way, we help every associate grow their career and achieve their best, at work and in their community. We are recognized for our commitment to training and diversity and are one of the FORTUNE 100 Best Companies to Work For®.
Job Title: IAM Architect – SailPoint Identity Security & Cloud Security
Location: Miami, FL, Onsite
Duration: Contract
Role Summary
We are seeking an experienced IAM Architect to lead the design and implementation of enterprise identity governance and cloud security solutions. The role will focus on architecting and deploying SailPoint Identity Security Cloud and other solutions from SailPoint Technologies to strengthen identity lifecycle management, access governance, and cloud security across enterprise environments.
Key Responsibilities
- Architect and implement enterprise Identity and Access Management and identity governance solutions.
- Lead the design and deployment of SailPoint Identity Security Cloud (ISC) and SailPoint IdentityIQ.
- Define architecture for identity lifecycle management, access certifications, role-based access control (RBAC), and policy enforcement.
- Design integrations between SailPoint and enterprise systems, directories, and SaaS applications.
- Architect IAM controls across cloud environments such as Amazon Web Services, Microsoft Azure, and Google Cloud.
- Establish identity governance frameworks to support least privilege, compliance, and security policies.
- Provide architectural guidance to engineering teams and stakeholders on IAM and cloud security best practices.
Required Skills
- 10+ years experience in IAM and identity governance architecture.
- Strong hands-on expertise with SailPoint Identity Security Cloud and/or SailPoint IdentityIQ.
- Experience designing scalable IAM architectures for enterprise and cloud environments.
- Strong understanding of identity lifecycle management, access reviews, RBAC, and compliance frameworks.
- Experience with API integrations, identity connectors, and enterprise directory services.
We are seeking an experienced Cloud Information Systems Security Engineer to design, implement, and manage security solutions for cloud environments. The selected candidate will lead security engineering efforts, identify risks, and develop mitigation plans to ensure compliance with DoD and federal cybersecurity standards. This role will primarily support CLIN 5 and is ideal for professionals with hands-on experience in cloud security, InfoSec engineering, and risk management within federal programs.
Security Clearance: Secret Clearance Required
Work Authorization: U.S. Citizens ONLY due to legal or government contract requirements
Key Responsibilities:
- Develop, implement, and manage information security engineering designs and solutions for cloud environments.
- Identify system security threats, vulnerabilities, and risks; develop and implement mitigation plans.
- Architect, design, and evaluate security-focused tools, services, and processes.
- Oversee assessment and mitigation of system security risks throughout the program life cycle.
- Validate system security requirements and perform security analyses to ensure compliance.
- Implement security designs across hardware, software, data, and operational procedures.
- Support continuous monitoring and improvement of cloud security posture.
- Collaborate with engineering, DevOps, and operations teams to enhance security automation and resilience.
- Maintain technical documentation, runbooks, and compliance records for audit and review purposes.
- Stay current on emerging threats, cybersecurity standards, and federal security mandates.
Required Qualifications:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field.
- Minimum of 4 years of experience in information security engineering or cloud security roles.
- Strong knowledge of cloud platforms (AWS, Azure, or Google Cloud) and security best practices.
- Experience with system security designs, threat modeling, risk assessment, and mitigation strategies.
- Understanding of hardware, software, and network security principles in cloud environments.
- Experience working in federal or DoD programs is preferred.
- Strong analytical, problem-solving, and communication skills.
- Ability to work effectively in a team-oriented, security-focused environment.
Preferred Qualifications:
- Hands-on experience with DevSecOps practices and security automation.
- Familiarity with Infrastructure-as-Code security controls and compliance tools.
- Knowledge of virtualization platforms (VMware, Hyper-V) and secure cloud configurations.
Certifications:
- IAT Level II certification required.
- Must obtain one or more Cloud Certifications within 6 months of hire (AWS, Azure, or Google Cloud preferred).
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
We are looking for a Cloud Computing Specialist (CCS) to join our team in support of a DoD customer in Alexandria, VA. The CCS will serve as an Information Assurance and Cloud Computing SME with regards to Certification and Accreditation (C&A) and a broad coverage of the application of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) standards and guidance as outlined in the NIST Special Publication(s) (SP) 800-53 and 800-37 (current versions).
Responsibilities Include:
- Provide full lifecycle Information Assurance (IA) support for systems maintaining current Authority to Operate (ATO) under RMF via eMASS.
- Update, maintain, and validate RMF artifacts, IA documentation, scorecards, and accreditation packages.
- Develop, manage, and execute POA&M, MOUs/MOAs, risk acceptance documentation, and other compliance artifacts.
- Ensure continuous compliance with DoD/DLA RMF requirements supporting ATO and Authority to Connect (ATC).
- Support RMF Assessment & Authorization (A&A) processes and validate eMASS inputs.
- Conduct annual risk assessments and IA control validations.
- Review engineering projects and change requests to ensure implementation of required IA controls and policies.
- Support connection approval processes and manage required documentation.
- Identify security risks and enhancements; develop and track mitigation strategies.
- Evaluate and recommend security components and configurations (e.g., firewalls, IDS/IPS).
- Provide IA input to Technical Review Boards (TRB) and Change Control Boards (CCB).
- Support DLA CERT, network engineering, and NTS teams on IA compliance and security event response.
- Maintain situational awareness of USCYBERCOM alerts/advisories and assess operational impact.
- Analyze proposed IT acquisitions for IA, interoperability, architecture, and standards compliance; identify required security configuration guidance.
- Support DISN sub-network accreditation to achieve/maintain full ATO and ATC.
- Plan and execute IA requirements for technology migrations affecting accredited systems.
- Implement and maintain information protection guidance for controlled unclassified and classified information in accordance with DoD/DLA policy.
Required Skills, Qualifications and Experience:
- Minimum Requirement:
- Five (5) years of relevant C&A experience; Risk Management Framework (RMF) and NIST C&A experience
- DOD IA experience.
- Certification Requirements:
- Cloud Computing Security Certification
- Certification meeting DOD 8570.01 IAM III (CISSP, CISM, etc.)
- Skills and Experience:
- Experience in assessing IA Controls and conducting C&A reviews for large, complex Information systems.
- Ability to work independently with substantial cloud computing security knowledge.
- Must have the essential skillsets to identify, manage and resolve cloud computing security risk and implement "best practices" as applied within a cloud environment (across all of the different deployment and service models, and derivatives).
- Must be well versed in FedRAMP assessment methodology of security and privacy controls deployed in cloud information systems to include six (6) domain areas. The six domains include: Architectural Concepts & Design Requirements, Cloud Data Security, Cloud Platform & Infrastructure Security, Cloud Application Security, Operations, Legal & Compliance.
- Clearance Requirement:
- This position requires a SECRET with a Tier 3 investigation.
Compensation: $100,000+
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is looking for a Cyber Cloud Assessment Engineer to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. In this role, you will be part of a team responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.
Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.
Essential Duties and Responsibilities
- Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the DoD Provisional Authorization (PA) process
- Prepare 30 Cloud Security Assessment Packages per year, including validated cybersecurity controls, certifier's recommendations, and residual risk statements
- Review Cloud Service Provider (CSP) documentation packages, including architectural diagrams, System Security Plans (SSP) with Addendums, Readiness Assessment Reports (RAR), Security Assessment Plans (SAP), and Security Assessment Reports (SAR)
- Evaluate supporting materials such as POA&Ms, Change Requests, Extension and Deviation Requests, Whitelist Requests, Corrective Action Plans, and applicable templates, checklists, and Continuous Monitoring (ConMon) artifacts
- Attend technical kickoff meetings to evaluate and document the CSP's security posture and readiness for assessment
- Analyze and provide feedback on assessment documentation, including the RAR, SAP, SSP, and system architecture diagrams
- Identify and document the operational impact of security authorizations, changes, or identified vulnerabilities within the CSP's environment
- Develop complete Cloud Security Assessment Packages in accordance with DoD standards, ensuring inclusion of SARs, POA&Ms, and Deviation Requests
- Create authorization recommendation memorandums summarizing compliance with DoD cybersecurity controls, technical evaluation results, and residual risk considerations
- Draft DoD PA memorandums outlining CSO boundary definitions, service offerings, authorization duration, terms and conditions, DoD usage considerations, and follow-on actions
- Validate implementation of CSO controls within eMASS or a government-provided GRC platform, and log assessment completion in the Mission Security Review (MSR)
- Review the Customer Responsibility Matrix (CRM) and ensure correct inheritance mapping within eMASS or the designated GRC tool
- Enter all authorization conditions into eMASS as system-level POA&Ms and monitor for timely resolution
- Upload and associate all CSP documentation with applicable security controls in eMASS or the appropriate system of record
- Track and manage all CSO-related data using the Team Lead Resource (TLR) Assessment Database
- Maintain and update the DoD Cloud Process Guide and associated templates, forms, checklists, and documentation
- Contribute to the development of internal instructions, how-to guides, and reference material to support consistent assessor workflows
- Ensure assessment activities are conducted in compliance with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG)
- Document assessment methodologies and validation best practices to continuously improve assessment accuracy, consistency, and process efficiency
- Support the ongoing development and annual updates of the DoD Cloud Assessment Process Guides in alignment with evolving policy and government directives
Requirements:
- Bachelor's degree (IT-related field preferred)
- Five (5) years of overall experience in cybersecurity or network security position
- Have an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IAM/IA Technical (IAT) Level II certification
- Working knowledge of DoD Risk Management Framework (RMF) and DoDI 8510.01
- Familiarity with the DoD Cloud Computing Security Requirements Guide (SRG) and associated cloud security policies
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Experience conducting security assessments and developing security documentation (e.g., SSP, SAR, POA&M, SAP)
- Proficiency with eMASS or equivalent Government Risk and Compliance (GRC) tools
- Demonstrated ability to interpret and apply NIST SP 800-53 security controls in cloud environments
- Strong analytical and technical writing skills with the ability to communicate complex topics clearly
- Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full-time.
Work Environment:
- Must be able to sit for long periods
Compensation: $85,000+
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.