
Senior Cloud Security Engineer, AWS GovCloud
Apex Technology, Inc.5 hours ago
Base Salary
$150k - $200k/yr
Responsibilities
- Design and implement secure cloud architectures across AWS GovCloud, Azure, Google Cloud, and hybrid environments.
- Maintain compliance with NIST 800-53, FedRAMP, RMF, DoD Impact Levels, and Secure Cloud Computing Architecture requirements.
- Configure IAM, RBAC, JIT access, key vaults, and Zero Trust security principles.
- Deploy and optimize cloud security, CSPM/CWPP, SIEM, threat detection, monitoring, and response tools.
- Conduct vulnerability assessments, penetration testing simulations, configuration reviews, audits, and continuous monitoring.
- Develop and maintain SSPs, SARs, POA&Ms, risk reports, policies, standards, and security procedures.
- Investigate indicators of compromise, threat intelligence, alerts, and cloud security incidents; perform root-cause analysis and coordinate response activities.
- Integrate security controls into CI/CD pipelines and infrastructure-as-code practices using automation.
- Review cloud architectures, recommend security improvements, and provide subject-matter expertise, guidance, and training to engineering teams.
- Coordinate with configuration management teams on secure hardware and software changes and cyber-terrain documentation.
Requirements
- U.S. citizenship is required.
- Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or five or more years of equivalent professional experience in cloud security engineering.
- Five to nine or more years of cloud security engineering experience in AWS GovCloud, Azure, Google Cloud, or multi-cloud environments.
- Hands-on knowledge of cloud security, IAM/RBAC, encryption, network security, logging, monitoring, container security, and Kubernetes security.
- Experience with SIEM platforms, vulnerability scanners, threat intelligence, security automation, infrastructure-as-code, Python or PowerShell scripting, and cloud-native security services.
- Experience with NIST, FedRAMP, RMF, Azure Sentinel, NESSUS, Burp Suite, Microsoft Defender, or equivalent tools.
- Relevant certifications such as CISSP, AWS Certified Security Specialty, AWS Certified Solutions Architect, Microsoft Certified: Security, Compliance & Identity, Security+, CEH, CySA+, GCIH, or related CSSP certification are listed as additional qualifications.
- Strong analytical, problem-solving, communication, and collaboration skills are required.
- Ability to work onsite five days per week at the Playa Vista, California office.
Benefits
- Equity participation in Apex.
- Company-paid medical, dental, and vision insurance for employees and dependents, plus $100,000 of life insurance at no cost.
- Paid time off starting at 15 vacation days and growing to more than 20 days annually, plus 10 paid holidays.
- 401(k) plan with a stated company match of 100% on the first 3% and 50% on the next 2%.
- Eight weeks of paid parental leave and childcare reimbursement up to $350 per day for work-related travel.
- Daily catered lunch, unlimited snacks, office socials, recreational activities, family gatherings, and an in-person Playa Vista office.
- Dream desk setup and required productivity tools.
- Full-time, onsite work five days per week in Playa Vista, California.