Cloud Infrastructure and Security Engineer
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Systems Engineer
Location: Altus
Overview
CAE Vision:
Our vision is to be the worldwide partner of choice in defense and security, and civil aviation by revolutionizing our customers’ training and critical operations with digitally immersive solutions to elevate safety, efficiency and readiness.
CAE Defense & Security Mission: CAE's Defense and Security business unit focuses on helping prepare military customers to develop and maintain the highest levels of mission readiness.
CAE Values:
Empowerment, Innovation, Excellence, Integrity and OneCAE make us who we are and we strive to make a difference in the world while helping each other succeed.
- Comprehensive and competitive benefits package and flexibility that promotes work-life balance
- A work environment where all employees are valued, respected and safe
- Freedom to succeed by enabling team members to deliver, take initiatives and make decisions
- Recognition, professional development, advancement and having fun
The Cloud Infrastructure and Security Engineer is responsible for designing, implementing, and maintaining secure cloud and on-premises IT environments. This role ensures the stability, security, and scalability of cloud services, network systems, and cybersecurity defenses while adhering to industry best practices and compliance requirements. This position works with others in IT to ensure systems are operational and provides end user support when needed.
Responsibilities- Design, deploy, and manage secure cloud environments (Air Force SharePoint, Cloud One, AWS) while ensuring compliance with security frameworks (NIST, ISO 27001, FedRAMP).
- Administer systems connected to NIPR network and ensure secure standards are enforced
- Configure and maintain Identity and Access Management (IAM), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) policies for cloud and on-prem systems
- Implement and monitor security controls, including intrusion detection/prevention systems (IDS/IPS), Security Information and Event Management (SIEM), and endpoint protection solutions
- Perform vulnerability assessments and penetration testing to identify and mitigate security risks
- Manage networking infrastructure, including firewalls, VPNs, and load balancers, ensuring secure connectivity between cloud and on-prem environments
- Conduct regular security audits, risk assessments, and disaster recovery planning for IT systems
- Develop and maintain security incident response plans, ensuring rapid detection and mitigation of cyber threats
- Stay up to date with emerging cloud security threats, vulnerabilities, and best practices
- Provide technical guidance and training on cloud security best practices to internal teams
- Monitors usage of system
- Ensure Scheduled Backups, Non-Scheduled Backups, and Types of Backup media (Initialization Procedures, Label Documentation, Storage Locations onsite/offsite) are in place and functional
- Conduct information security vulnerability scanning using the DoD’s ACAS/Tenable/Nessus platforms and develop Plans of Action and Milestones (POA&Ms)
- Install, test, configure, maintain and upgrade computing and networking environments to comply with cybersecurity requirements (STIG/SRG/NIST)
- Implement and monitor established technical security controls for CE/NE in accordance with information security plans
- Develop compensating controls for information security deficiencies
- Assist with developing or updating Information Security plans, procedures, and documentation (e.g., network topology, hardware/software lists)
- Other duties as assigned
- Bachelor’s Degree in Management Information Systems, Computer Science, Information Technology or related field and 5+ years of experience
- Information Assurance Technician (IAT) Level III certified or able to obtain within six months of probationary period
- Cloud Expertise:
Experience with AWS, Azure, or Google Cloud security and infrastructure management - Networking & Security:
Knowledge of firewalls, VPNs, IDS/IPS, SIEM, and endpoint security solutions - Compliance & Frameworks:
Understanding of NIST, CIS, ISO 27001, FedRAMP - Incident Response & Monitoring:
Familiarity with Splunk, Sentinel, or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).