Cloud Security Engineer - Public Sector, IT Operations
Listed on 2026-06-18
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations
- Public Sector, IT Operations
Join to apply for the Cloud Security Engineer
- Public Sector, IT Operations role at BDO USA
- Public Sector, IT Operations
1 day ago Be among the first 25 applicants
Join to apply for the Cloud Security Engineer
- Public Sector, IT Operations role at BDO USA
JOB DESCRIPTION
The Cloud Security Engineer is responsible for planning, implementing, upgrading, and monitoring security-based measures for the protection of the organization’s cloud-based digital platforms and related data. This role may be charged with analyzing and revising existing cloud infrastructure and implementing new and enhanced security related designs and methodologies. In addition, this position is familiar with and helps institute best practices that meet or exceed FedRAMP, NIST, and Cybersecurity Maturity Model Certification (CMMC).
The Cloud Security Engineer focuses on the secure configuration and deployment of services within Microsoft GCC High and other platforms to support business operations, and ensures high performance and reliability of technology services that support the firm's mission.
Job Summary
JOB DESCRIPTION
The Cloud Security Engineer is responsible for planning, implementing, upgrading, and monitoring security-based measures for the protection of the organization’s cloud-based digital platforms and related data. This role may be charged with analyzing and revising existing cloud infrastructure and implementing new and enhanced security related designs and methodologies. In addition, this position is familiar with and helps institute best practices that meet or exceed FedRAMP, NIST, and Cybersecurity Maturity Model Certification (CMMC).
The Cloud Security Engineer focuses on the secure configuration and deployment of services within Microsoft GCC High and other platforms to support business operations, and ensures high performance and reliability of technology services that support the firm's mission.
Job Duties
- Collaborates with Public Sector and BDO National IT teams on standards, configuration recommendations, and best practices for the secure management of Microsoft 365 GCC High services, including Office, Entra , Intune, Defender, and Purview
- Institutes policies for identity, device, and access management using Zero Trust principles and security baselines
- Reviews results from configuration management/testing, profiling, and assessment tooling to address vulnerabilities, misconfigurations, and/or access risks
- Implements, maintains, and monitors backup and disaster recovery strategies for M365 environment
- Participates in the Change Control Board
- Monitors for and investigates emerging cyber threats in BDO Public Sector cloud environment, and works with staff on recommending and implementing defensive actions
- Contributes to System Security Plans (SSPs), Plan of Action & Milestones (POA&Ms), and other artifacts for audit readiness
- Performs maintenance and enhancements on existing security alerts to reduce false positives
- Leads the remediation efforts of vulnerabilities within cloud resources
- Leads the Incident Response Team which includes monitoring for and determining Indicators of Compromise
- Collaborates with security operations professionals to analyze triaged security alerts to determine the appropriate escalation and remediation paths
- Designs and implements security related technologies such as MFA, FIDO2, endpoint detection and response (EDR), and mobile device management (MDM) within a GCC High tenant
- Aligns enterprise IT planning with cybersecurity risk management strategies using NIST SP 800-171 and other applicable frameworks
- Performs and reports phishing testing and develops necessary training
- Escalates critical issues to management
- Documents and maintains policies and procedures
- Other duties as required
- Directs day-to-day activities/workload of staff, as needed
Qualifications, Knowledge, Skills, and Abilities:
- High school diploma or GED, required
- Bachelor's degree in Cloud Computing, Information Technology, Information Science, Informatics, or Information Systems, preferred
- Three (3) or more years…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).