CrawlJobs Logo

Cloud Cybersecurity Subject Matter Expert

barbaricum.com Logo

Barbaricum

Location Icon

Location:
United States , Washington, DC

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Barbaricum is seeking a highly qualified Cloud Cybersecurity Subject Matter Expert (SME) to support the Military Community and Family Policy (MC&FP) enterprise and Digital Enterprise Services (MODES). This senior-level role provides strategic leadership and multidisciplinary cyber expertise to ensure secure operations and risk-managed digital environments. The ideal candidate is a seasoned technologist with deep understanding of DoD cybersecurity frameworks, cloud platforms, and cyber compliance methodologies.

Job Responsibility:

  • Lead cybersecurity support for MC&FP programs operating in cloud-based environments
  • Guide and mentor technical teams on secure cloud architecture, policy implementation, and threat mitigation strategies
  • Provide direct support for compliance with NIST Risk Management Framework (RMF), FISMA, and relevant cybersecurity directives
  • Manage and oversee vulnerability assessments, system audits, and incident response planning
  • Support the integration of security controls including STIGs, SCAP, IAVA compliance, and policy documentation
  • Collaborate with leadership to ensure cybersecurity is embedded across program lifecycles and mission-critical applications

Requirements:

  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, IT, or a related discipline
  • 8+ years of experience managing cybersecurity projects of similar size and complexity within cloud environments
  • 8+ years of direct experience with NIST RMF, NIST SP 800-53, STIGs, SCAP, IAVAs, and FISMA
  • One of the following certifications: CISM, CISSO, FITSP-M, GCIA, GCSA, GCIH, GSLC, GICSP, CISSP-ISSMP, CISSP

Nice to have:

  • 8+ years of experience analyzing, assessing, and implementing corrective actions based on vulnerability management and penetration testing
  • 8+ years of experience supporting DoD defensive cyber operations including but not limited to, information system protection, defense, response (incident handling), reporting and recovery

Additional Information:

Job Posted:
December 23, 2025

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cloud Cybersecurity Subject Matter Expert

Cybersecurity Subject Matter Expert

We are seeking an experienced Cybersecurity Subject Matter Expert (SME) to join ...
Location
Location
Luxembourg , Leudelange
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Systems, or a related field
  • 5+ years of experience in Cybersecurity Architecture with focus on business continuity and large-scale enterprise environments
  • Proven experience with cloud-native security on Azure and AWS
  • Practical knowledge of Agile and SAFe methodologies and their application to architecture design
  • Familiarity with architecture frameworks such as TOGAF and SABSA
  • Strong problem-solving, analytical, and communication skills
  • Experience in public sector or similarly complex, regulated environments is highly desirable
Job Responsibility
Job Responsibility
  • Provide strategic cybersecurity guidance across infrastructure, cloud, applications, and data
  • Advise on architecture and design, embedding security into all IT and business initiatives
  • Lead risk assessments, security reviews, and mitigation strategies
  • Drive secure deployment of cloud and hybrid solutions (Azure, AWS, GCP) and data protection initiatives
  • Provide IAM expertise and promote zero-trust, least-privilege principles
  • Integrate security into DevOps processes (DevSecOps) and leverage automation (Python) for monitoring and incident response
  • Act as a trusted advisor and mentor, shaping security practices and building organizational capability
What we offer
What we offer
  • Access to Sopra Steria training and personal development academy
  • Leased company car or mobility budget
  • Company laptop and mobile phone
  • Private health insurance
  • Meal vouchers
  • Social security and pension scheme
  • Competitive salary
  • 26 days holiday
  • Fulltime
Read More
Arrow Right

Cybersecurity Risk and Controls Framework Expert

We are seeking a Cybersecurity Risk and Controls Framework Expert to analyze reg...
Location
Location
United States , Spring
Salary
Salary:
105500.00 - 243000.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert in a broad range of Information Security domains (e.g., Application Security, Cloud Security, Network Security, Data Security, Infrastructure Security)
  • Strong understanding of cybersecurity control frameworks (e.g., NIST CSF, ISO 27001)
  • Proven experience in risk assessments and analysis
  • Proven experience in defining and implementing cybersecurity policies, standards and guidelines across multiple platforms
  • Strong organizational skills and attention to detail
  • Ability to work effectively with technical and non-technical stakeholders
  • Excellent documentation, communication, and problem-solving skills
Job Responsibility
Job Responsibility
  • Support Governance, Risk and Compliance leadership in delivering various risk overview summaries
  • Contribute to the development of the Cyber risk governance framework by leveraging existing frameworks
  • Facilitate a gap analysis of current processes against the Risk management framework
  • Provide subject matter expertise on the control framework, policies, standards and guidelines
  • Analyze current controls against the control framework
  • Ensure effective communication of changes to risk governance frameworks
  • Work with regional representatives to coordinate regulatory scanning
  • Provide expert opinion on HPE’s risk and effectiveness of policies
  • Handle questions on cyber policies and standards
  • Deliver presentations and updates to key stakeholders
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Cybersecurity Risk and Controls Framework Expert

Cybersecurity Risk and Controls Framework Expert to analyse the regulatory compl...
Location
Location
United States , Spring
Salary
Salary:
105500.00 - 243000.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Security, Information Technology, Risk Management or a related field, or equivalent experience
  • CISSP, CRISC, or similar certification
  • 5-7 years of experience in Information Security, IT Governance, and/or Risk Management
  • 5+ years of experience working with various industry standards and frameworks on risks and controls (e.g. ISO 27001, NIST CSF, COBIT)
  • Expert in a broad range of Information Security domains (e.g., Application Security, Cloud Security, Network Security, Data Security, Infrastructure Security)
  • Strong understanding of cybersecurity control frameworks (e.g., NIST CSF, ISO 27001)
  • Proven experience in risk assessments and analysis
  • Proven experience in defining and implementing cybersecurity policies, standards and guidelines across multiple platforms
  • Strong organizational skills and attention to detail
  • Ability to work effectively with technical and non-technical stakeholders
Job Responsibility
Job Responsibility
  • Support Governance, Risk and Compliance (GRC) leadership in delivering various risk overview summaries
  • Contribute to the development of the Cyber risk governance framework
  • Facilitating a gap analysis of the current processes against the Risk management framework
  • Provide subject matter expertise on the control framework, policies, standards and guidelines
  • Analyse the current suite of controls against the control framework
  • Ensure that changes to risk governance frameworks are effectively communicated
  • Work with regional representatives to coordinate the scanning for regulatory changes related to cybersecurity
  • Provide expert opinion on HPE's risk and effectiveness of our policies and standards
  • Support the handling of questions pertaining to cyber policies and standards from regulators, partners and customers
  • Deliver presentations and updates to key business and technology stakeholders
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive suite of benefits supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Senior Cloud Security Engineer

Senior Cloud Security Engineer (Infrastructure and Security) – New York – Compet...
Location
Location
United States , New York City
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Several years of experience working in a similar role with a focus on Cloud Security in AWS
  • Experience provisioning infrastructure in AWS using Terraform, CloudFormation, CDK, or similar tools
  • Experience configuring VPCs, route tables, NACLs, Security Groups, iptables, Web Application Firewall, Config, GuardDuty, Inspector, KMS, IAM, etc.
  • In depth knowledge of AWS security best practices around systems hardening, monitoring, and incident response
  • Experience taking part in an on-call rotation
  • You are passionate about securing infrastructure, reducing risk, and protecting data!
  • You are a subject matter expert on cloud security in AWS
  • You have a solid understanding of network architecture and protocols
  • You can advise on cloud security policies and procedures
Job Responsibility
Job Responsibility
  • Serve as a cloud security subject matter expert, advise on and implementing best practices
  • Respond to security incidents and provide timely and appropriate solutions
  • Conduct cloud security risk assessments and audits
  • Conduct investigations into security incidents and potential threats
  • Take part in on call rotations for incident response and remediation
  • Assist with policy management, security audits, and due diligence for cloud security concerns
  • Advise on, configuring, and managing a variety of security tools
  • Keep informed about and respond to emerging security threats and vulnerabilities
  • Assist with cloud security reviews of potential vendors
What we offer
What we offer
  • Competitive Package
  • Opportunity to work with an Ambitious, Young, Growing Organisation
  • Significant growth potential
  • Not corporate culture
  • Trust employees to take on a lot of responsibility and have input into the shape of growth of the organisation
  • Fulltime
Read More
Arrow Right

Senior Cloud Security Engineer

Senior Cloud Security Engineer (Infrastructure and Security) – New York – Compet...
Location
Location
United States , New York
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Several years of experience working in a similar role with a focus on Cloud Security in AWS
  • Experience provisioning infrastructure in AWS using Terraform, CloudFormation, CDK, or similar tools
  • Experience configuring VPCs, route tables, NACLs, Security Groups, iptables, Web Application Firewall, Config, GuardDuty, Inspector, KMS, IAM, etc.
  • In depth knowledge of AWS security best practices around systems hardening, monitoring, and incident response
  • Experience taking part in an on-call rotation
  • You are passionate about securing infrastructure, reducing risk, and protecting data!
  • You are a subject matter expert on cloud security in AWS
  • You have a solid understanding of network architecture and protocols
  • You can advise on cloud security policies and procedures
Job Responsibility
Job Responsibility
  • Serve as a cloud security subject matter expert, advise on and implementing best practices
  • Respond to security incidents and provide timely and appropriate solutions
  • Conduct cloud security risk assessments and audits
  • Conduct investigations into security incidents and potential threats
  • Take part in on call rotations for incident response and remediation
  • Assist with policy management, security audits, and due diligence for cloud security concerns
  • Advise on, configuring, and managing a variety of security tools
  • Keep informed about and respond to emerging security threats and vulnerabilities
  • Assist with cloud security reviews of potential vendors
What we offer
What we offer
  • Competitive Package
  • Opportunity to work with an Ambitious, Young, Growing Organisation
  • Fulltime
Read More
Arrow Right

Cyber-Security Technical Administrator

This position is for a Cybersecurity Technical Administrator supporting the ALTE...
Location
Location
United States , Alexandria
Salary
Salary:
Not provided
e-9corporation.com Logo
E9 Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Mid to senior level Cybersecurity Technical Administrator experience in a cloud environment
  • DoD 8570.01-M IAT level II certification is required
  • Resource must possess both Baseline and Computing Environment certification as defined in DoD Instruction 8570.01-M
  • Strong verbal and written communication skills
  • Understanding of DOD Risk Management Framework Assessment & Authorization (RMF A&A), FedRAMP, the DOD cloud provisional authorization (PA) process and the processes to successfully acquire and maintain an Authorization to Operate (ATO)
  • Working knowledge of the Federal Risk and Authorization Management Process (FedRAMP), cloud security information impact levels (IL), the differences between an ATO and P-ATO, the differences between a CSO and CSP, and the processes to successfully acquire, maintain and support DOD cloud accreditation
  • Experience automating routine administrative tasks desired
  • Understanding of network, storage, server and application technologies
  • Strong understanding of common cyber threat patterns, indicators of compromise and defenses
  • Working knowledge of DoD STIGs and IA Vulnerability Management (IAVM)
Job Responsibility
Job Responsibility
  • Serve as overall subject matter expert on Cybersecurity Technical Administrator technology and market capabilities/trends
  • Conduct security scans against the organization’s cloud-deployed infrastructure, produce and interpret compliance reports
  • Validate technical security controls are in place for operating systems, applications and network appliances, and recommend enhancements
  • Review proposed configuration changes for security impact
  • Operate endpoint-protection mechanisms, including high-level reporting and day-to-day administration activities
  • Work between technical and policy teams to implement, maintain and monitor technical security configuration controls, including: STIG’s, SRG’s and other industry security hardening guidance
  • Work between technical and policy teams to successfully implement and manage requirements for maintaining cloud P-ATO, ATO and security control inheritance capabilities
  • Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements
  • Use results of vulnerability scans to determine vulnerabilities and develop operational plans to remediate or mitigate vulnerabilities as they are discovered
  • Install, operate and maintain Army Endpoint Security System
Read More
Arrow Right

Security Engineer 4 - FedRAMP Compliance Architect

PagerDuty is seeking a Security Engineer 4 - FedRAMP Compliance Architect to joi...
Location
Location
United States
Salary
Salary:
176000.00 - 281000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in cloud security architecture, compliance, or cybersecurity engineering
  • at least 3 years of experience supporting FedRAMP Moderate or High authorization
  • deep expertise in FedRAMP, NIST 800-53, FISMA, and cloud security best practices
  • strong ability to assess security risks and recommend technical and procedural mitigations
  • experience working with AWS GovCloud, Azure Government, or other federal cloud environments
  • experience with audit preparation, risk assessments, and working with third-party assessors (3PAOs)
  • exceptional written and verbal communication skills for creating and managing FedRAMP documentation
Job Responsibility
Job Responsibility
  • Design, implement, and maintain system architectures to align with FedRAMP requirements
  • serve as the subject matter expert (SME) on FedRAMP, advising internal teams on security best practices, control implementations, and risk mitigation strategies
  • collaborate with engineering, operations, product, and corporate IT teams to develop secure cloud-based architectures that meet federal compliance mandates
  • implement governance strategy on technical security controls, including access management, configuration, encryption, logging, monitoring, and vulnerability management
  • support annual assessments, security control reviews, and audits, coordinating with third-party assessors (3PAO) and government sponsors
  • technical support for external stakeholders on customer responsibilities
  • key contributor to the development and maintenance of the System Security Plan (SSP), Policies and Procedures, Configuration Management Plan, Secure System Development Life Cycle, and other FedRAMP documentation
  • partner with the GRC (Governance, Risk, and Compliance) team to efficiently track and resolve security findings
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits package from day one
  • flexible work arrangements
  • company equity
  • ESPP (Employee Stock Purchase Program)
  • retirement or pension plan
  • generous paid vacation time
  • paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right

Cyber-Security Policy Administrator

This position is for a Cybersecurity Policy Administrator supporting the ALTESS ...
Location
Location
United States
Salary
Salary:
Not provided
e-9corporation.com Logo
E9 Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • DoD 8570.01-M IAM level II certification
  • CompTIA Security+
  • Computing Environment (CE) Certification (i.e., MCSE, Server+, etc.) – can be waived for 30 days after project join date
  • Mid to senior level Cybersecurity Policy Administrator experience in a cloud environment
  • Strong verbal and written communication skills
  • Experience effectively managing multiple large-scale projects
  • Understanding of network, storage, server and application technologies
  • Working knowledge of DoD STIGs, and IA Vulnerability Management (IAVM)
  • Information Assurance Engineer – Senior: Masters +10yrs, or Bachelors +12yrs
  • Information Assurance Engineer – Intermediate: Bachelors +5yrs or Associates +7yrs
Job Responsibility
Job Responsibility
  • Serve as overall subject matter expert on Cybersecurity Policy Administration
  • Work between technical and policy teams to implement, maintain and monitor technical security configuration controls, including: STIGs, SRGs and other industry security hardening guidance
  • Work between technical and policy teams to successfully implement and manage requirements for maintaining cloud P-ATO, ATO and security control inheritance capabilities
  • Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements
  • Act as the ISSO for hosted systems, assuming the responsibilities as outlined in AR 25-2
  • Assist hosted customers in obtaining and maintaining RMF for DOD IT and other certifications as required
  • Update and/or assist the hosted system’s personnel in updating artifacts of the accreditation package and store the artifacts in organizationally defined repository
  • i.e., system diagram (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc.
  • Assist in the preparation of network infrastructure specifications or designs incorporating required information security features
  • Review and evaluate Information Systems Design Plans, Continuity of Operation Plans, Communication Plans, engineering change proposals and configuration changes for compliance with relevant security regulations, policies and best industry practice
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.