Cloud Security Engineer
Listed on 2026-05-10
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing
Overview
The Health and Services Sector at Leidos currently has an opening for a Cloud Security Engineer to work in the Seaside, CA area. This role supports the Defense Testing and Assessment Center (DTAC) Manpower Personnel Testing Analysis (MPTA) mission. The Cloud Security Engineer will safeguard cloud infrastructure, applications, and data by implementing cybersecurity controls aligned with DoW standards and supporting RMF activities, continuous monitoring, and system authorization processes to comply with NIST, DISA, and DoW requirements.
The ideal candidate thrives in a dynamic environment focused on innovation, Dev Sec Ops , and cloud modernization to maintain secure and resilient systems that support critical national defense missions.
Responsibilities- Design, implement, and maintain security architectures for cloud-based systems supporting DoW testing platforms, including web-based and cloud-based applications (e.g., CAT-ASVAB systems).
- Ensure compliance with DoW cybersecurity policies, including RMF (Risk Management Framework), NIST SP 800-53 controls, and DISA Cloud Security Requirements Guide (SRG).
- Support the full lifecycle of system authorization (ATO), including development of System Security Plans (SSPs), POA&Ms, security assessments, and continuous monitoring activities.
- Implement and enforce Security Technical Implementation Guides (STIGs) and secure configuration baselines across cloud environments.
- Monitor cloud environments for vulnerabilities, threats, and incidents; coordinate incident response and reporting in accordance with DoW requirements.
- Engineer and maintain secure cloud infrastructure solutions compliant with FedRAMP and DISA Impact Level (IL) requirements (IL2–IL5 as applicable).
- Implement Zero Trust, Dev Sec Ops , and continuous monitoring strategies aligned with DoW CIO modernization guidance.
- Perform security assessments, code scanning, vulnerability remediation, and risk mitigation activities for cloud-hosted applications.
- Collaborate with software engineers, system administrators, and data teams to integrate security into system design, development, and deployment processes.
- Maintain documentation, security artifacts, and compliance evidence within systems such as eMASS.
- Ensure protection of Controlled Unclassified Information (CUI) and Personally Identifiable Information (PII) in cloud environments.
- Bachelor’s degree (BS/BA) or Master’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
- Minimum 10 years of experience designing, implementing, and managing cloud security solutions and cybersecurity programs.
- Demonstrated experience with DoW RMF, ATO processes, and NIST 800-series frameworks.
- Hands-on experience securing cloud environments (e.g., AWS, Azure, or DoW-approved cloud platforms) in compliance with DISA SRG and FedRAMP requirements.
- Experience implementing STIGs, vulnerability management, and continuous monitoring programs.
- Strong knowledge of network security, encryption, identity and access management (IAM), and Zero Trust architectures.
- Experience supporting Dev Sec Ops pipelines and secure software development practices.
- Ability to obtain and maintain required DoW background investigation (Tier 3 or higher) and meet IT access requirements.
- U.S. Citizenship required.
- Active DoW security clearance.
- Relevant industry certifications such as CISSP, CCSP, AWS/Azure Security Specialty, CEH, or CASP+.
- Experience working in DoW or federal environments, particularly with DHRA, DMDC, or similar organizations.
- Familiarity with eMASS, cybersecurity compliance tools (e.g., Fortify, Sonatype), and automated security scanning tools.
- Experience implementing Zero Trust Architecture and cloud-native security controls.
- Knowledge of Dev Sec Ops frameworks and container security (e.g., Kubernetes, Docker security).
- Experience supporting large-scale enterprise cloud systems, testing platforms, or data analytics environments.
- Strong communication skills with ability to support audits, brief leadership, and coordinate with cross-functional teams.
Note: This description reflects the responsibilities and requirements of the Cloud Security Engineer role as described in the posting. All content is for illustrative purposes and to present the job information in a clean, accessible format.
EEO and SafetyAll qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos also considers qualified applicants with criminal histories consistent with applicable laws.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).