Network/Cloud Engineer
Listed on 2026-09-27
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations, Systems Engineer
Job Title:
Network/Cloud Engineer Job Category:
Information Technology Time Type:
Full time Minimum Clearance Required to Start:
None Employee Type:
Regular Percentage of
Travel Required:
Up to 10%
Type of Travel:
Local
In emergency management, technology agility can mean the difference between rapid response and delayed relief. As a Network/Cloud & Dev Sec Ops Engineer on our FEMA ITSA 3.0 program, you will evaluate the cloud architectures, automation maturity, and security controls that enable FEMA systems to deliver mission capabilities with speed, resilience, and compliance. Your assessments will identify the technical enablers—CI/CD automation, infrastructure-as-code, API gateways, service mesh architectures, and modern security patterns—that can accelerate FEMA's modernization journey while strengthening security posture.
You’ll dive into cloud hosting platforms, Dev Sec Ops pipelines, and security control implementations to assess maturity, identify gaps, and recommend practical paths forward. Your expertise will inform strategic decisions on cloud migration, automation investment, security architecture enhancement, and Dev Sec Ops transformation—ensuring FEMA can leverage modern engineering practices to deliver capabilities faster, more securely, and with greater reliability. This role offers a unique opportunity to assess and influence the engineering foundations of one of the federal government's most critical missions, where your cloud and Dev Sec Ops expertise will shape how FEMA builds, secures, and operates technology that serves communities in crisis.
ResponsibilitiesCloud Architecture & Platform Assessment
- Evaluate cloud hosting architectures across AWS, Azure, and hybrid environments including compute, storage, networking, and managed services utilization
- Assess cloud-native design patterns, serverless adoption, containerization maturity, and platform-as-a-service (PaaS) opportunities
- Review multi-region and multi-availability zone strategies for high availability and disaster recovery
- Evaluate environment design across development, test, staging, and production including environment parity and configuration drift
- Identify cloud cost optimization opportunities including rightsizing, reserved capacity, and architectural efficiency
- Assess alignment with FedRAMP requirements, cloud security best practices, and DHS cloud policies
- Review Continuous Integration/Continuous Deployment (CI/CD) pipelines including build automation, testing frameworks, and deployment orchestration
- Assess artifact management practices, container registries, and software composition analysis
- Evaluate deployment strategies including blue-green deployments, canary releases, rolling updates, and rollback procedures
- Review test automation coverage including unit testing, integration testing, security testing (SAST/DAST), and performance testing
- Assess Dev Sec Ops maturity including security integration within development workflows, shift-left security practices, and automated compliance validation
- Identify pipeline bottlenecks, manual handoffs, and opportunities to accelerate delivery velocity while maintaining security and quality
- Evaluate Infrastructure-as-Code (IaC) adoption using tools such as Terraform, Cloud Formation, ARM templates, or similar platforms
- Assess configuration management practices, version control discipline, and code review processes for infrastructure
- Review environment provisioning automation, infrastructure testing, and policy-as-code implementation
- Evaluate immutable infrastructure patterns, container orchestration (Kubernetes, ECS, AKS), and declarative configuration approaches
- Identify opportunities to reduce configuration drift, improve environment consistency, and enhance infrastructure reliability through automation
- Assess Identity and Access Management (IAM) patterns, role-based access control (RBAC), and least-privilege implementation
- Evaluate Multi-Factor Authentication (MFA) enforcement, privileged access management (PAM), and secrets management practices
- Review Security Information and Event Management (SIEM) integration, centralized logging coverage, and log retention compliance
- Assess alerting mechanisms, threat detection capabilities, and Security Orchestration, Automation and Response (SOAR) maturity
- Evaluate incident response preparedness, playbook…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).