CrawlJobs Logo

Cloud Information Systems Security Engineer

boozallen.com Logo

Booz Allen Hamilton

Location Icon

Location:
United States , Fayetteville

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

61900.00 - 141000.00 USD / Year

Job Description:

Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to government clients. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information systems security engineer who will break down complex threats into manageable plans of action and mitigation approaches. As an Information Systems Security Engineer on our team, you’ll use your experience to work with highly skilled engineers and military leaders to discover their cyber risks, understand applicable policies, and develop a mitigation plan. You’ll review technical and architectural details from highly complex teams to assess the entire threat landscape of our client Hybrid-Cloud based Platform. Then, you’ll guide your client through a plan of action to minimize attack surfaces on applications, understand architecture, and mitigate vulnerabilities. You’ll work with your client to translate security concepts to technical implementation so they can make the best decisions to secure critical and operational hybrid-cloud based services. This is your opportunity to act as an information security subject matter expert while broadening your skills in cloud computing, DevSecOps, Infrastructure as Code, Kubernetes, CI/CD, and application development. Work with us as we protect national security mission systems for the Warfighter.

Job Responsibility:

  • Work with highly skilled engineers and military leaders to discover their cyber risks, understand applicable policies, and develop a mitigation plan
  • Review technical and architectural details from highly complex teams to assess the entire threat landscape of our client Hybrid-Cloud based Platform
  • Guide your client through a plan of action to minimize attack surfaces on applications, understand architecture, and mitigate vulnerabilities
  • Work with your client to translate security concepts to technical implementation so they can make the best decisions to secure critical and operational hybrid-cloud based services
  • Act as an information security subject matter expert while broadening your skills in cloud computing, DevSecOps, Infrastructure as Code, Kubernetes, CI/CD, and application development

Requirements:

  • 5+ years of experience with software supply chain security and secure SDLC practices such as SLSA or NIST SSDF, including build provenance, artifact integrity, dependency management, and security gates in CI/CD pipelines
  • 5+ years of experience securing CI/CD platforms, including pipeline hardening, secrets management, access control, integration of SAST, DAST, and SCA, container scanning, and enforcement of remediation policies
  • 5+ years of experience with container, image, and host vulnerability management using tools such as Trivy, Grype, Anchore, or AWS Inspector, including policy-driven vulnerability remediation
  • Experience building, securing, and operating Dockerized applications, including secure Dockerfile patterns, image lifecycle management, and runtime security hardening
  • Experience deploying and operating workloads on Kubernetes EKS, GKE, AKS, or self-managed, including Helm-based deployment and management of security tooling
  • Experience with scripting and automation, including advanced Bash, intermediate+ Python, and basic PowerShell, to automate security workflows, controls, and integrations
  • Experience with Linux system security and AWS cloud services such as EC2, EKS/ECS, IAM, S3, VPC, KMS, CloudTrail, or GuardDuty, including system hardening, logging, monitoring, and collaboration with engineering and platform teams to document controls and guide remediation
  • TS/SCI clearance
  • HS diploma or GED
  • Ability to obtain a DoD 8570 IAT or IAM Level II Certification, including Security+ Certification, within 60 days of hire date

Nice to have:

  • Experience with DevOps or platform engineering, including building and maintaining CI/CD pipelines
  • Experience implementing Zero Trust security models in CI/CD pipelines and cloud environments
  • Experience with advanced container runtime security, including containerd or Kata Containers, and container registry hardening, including ECR, GCR, or ACR
  • Knowledge of securing AI and LLM-based systems and emerging AI-specific security risks
  • Experience interpreting vulnerability scan results, tuning baselines, and prioritizing remediation using a risk-based approach
  • Experience with basic forensic triage and incident response activities on Linux systems
  • Knowledge of infrastructure-as-code tools such as Terraform or CloudFormation for automating security controls
  • Knowledge of Kubernetes security best practices for service meshes, eBPF-based security tooling, ingress or WAF, and logging or monitoring stacks
  • Knowledge of additional programming languages such as Go or JavaScript to better assess application behavior and security risk
  • AWS Security Certification such as Security Specialty, Solutions Architect Associate, or Solutions Architect Professional Certification
What we offer:
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program

Additional Information:

Job Posted:
January 04, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cloud Information Systems Security Engineer

System Security Engineer

As a system security engineer, you play a pivotal role in securing our hardware ...
Location
Location
United States , Annapolis Junction
Salary
Salary:
99000.00 - 225000.00 USD / Year
boozallen.com Logo
Booz Allen Hamilton
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of experience as a systems security engineer in programs that encompass systems security architecture development, requirements analysis, design, production, integration, test, and transition into operations
  • 4+ years of experience performing Information Systems Security Officer functions in support of USCYBERCOM or IC projects and offices
  • 4+ years of experience working with the Risk Management Framework (RMF) process
  • Experience assessing security vulnerabilities in software or systems and implementing mitigations
  • Experience working on teams using Agile technologies, including Atlassian Suite
  • Experience working with Amazon Web Services (AWS) cloud technology
  • Top Secret clearance
  • Bachelor’s degree in CS, Computer Engineering, or Information Systems
  • DoD 8570 compliant IAT Level II Certification
Job Responsibility
Job Responsibility
  • Guide your team of professionals as they maintain existing applications and keep systems working in sustainment mode
  • Use programming and scripting languages, including Python and Bash, to continuously enhance and maintain the application, troubleshoot any issues that arise operationally, and upgrade the system to meet security requirements
  • Advise our government clients on the best ways to improve and modernize the existing systems
What we offer
What we offer
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program
Read More
Arrow Right

Cloud Security Engineer

The Cloud Security Analyst performs all processes and procedures necessary to en...
Location
Location
Brazil , São Paulo
Salary
Salary:
Not provided
knowbe4.com Logo
KnowBe4
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in information security, information systems, or similar preferred
  • Relevant industry certification in information security, cloud security or similar preferred
  • Certifications in AWS, Azure and specifically AWS Security highly desirable
  • Demonstrated practical knowledge in cloud computing, cloud security, information security, IT, internet concepts
  • Some experience with infosec testing tools and scripts
  • Some experience with offensive cloud security
  • Familiar with application development concepts: servers, databases, coding, API’s, containers, logging, troubleshooting
  • Some experience working with Terraform/CloudFormation
  • Familiar with OWASP top 10 and MITRE ATT&CK Framework
  • Understanding of MITRE ATT&CK matrix
Job Responsibility
Job Responsibility
  • Responds to security alerts created across infosec alerting systems
  • Perform continuous monitoring and triage of security alerts from SIEM, CSPM, CWPP, and other cloud security tools
  • Serve as the primary responder for cloud security incidents, leading the investigation, containment, eradication, and recovery efforts
  • Creates new security alerts and dashboards related to cloud security
  • Triage cloud security findings
  • Performs threat hunting across information security log feeds
  • Monitor for, investigate, and respond to security incidents
  • Performs root cause analysis on identified vulnerabilities and identified incidents
  • Perform security reviews and penetration testing across company cloud infrastructure
  • Stay informed on the latest vulnerabilities
What we offer
What we offer
  • company-wide bonuses based on monthly sales targets
  • employee referral bonuses
  • adoption assistance
  • tuition reimbursement
  • certification reimbursement
  • certification completion bonuses
  • modern, high-tech, and fun work environment
  • Fulltime
Read More
Arrow Right

Security and Application Security Engineer

Beacon Technologies is seeking a Security and Application Security Engineer. The...
Location
Location
United States , Las Vegas
Salary
Salary:
Not provided
beacontechinc.com Logo
Beacon Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of five years of Information Security experience with at least two years of application-level security
  • Strong communication skills: ability to convey and document security guidelines, requirements, and coding best practices
  • Familiarity with Security Best Practices in common coding languages
  • Application Penetration Testing / API Security Testing
  • Software Development Life Cycle Design and Implementation
  • Static and Dynamic Application Testing Tools and Methods
  • Container and orchestration security (Kubernetes, Docker, Octopus, GitHub, etc.)
  • Familiarity with Application Security Testing Frameworks such as OWASP
  • Strong logical and analytical thinker
  • exceptional skills in security systems solutions
Job Responsibility
Job Responsibility
  • Operate as a liaison between the Security Team and the Development Teams
  • Preserve PCI and SOX Security Certification programs with a primary focus on ensuring compliance with the appropriate industry standards and security controls
  • Supporting incident response and architecture review whenever applications security expertise is needed
  • Integrating threat modeling practices into the SDLC
  • Work with other staff to perform periodic scans and evaluation of system security including areas such as patch management, penetration testing, vulnerability assessments, and other types of InfoSec-related tasks
  • Assist in identifying and communicating security exposures, information security incidents or non-compliance situations to IT management or the CISO as appropriate. Duties may also include collecting and documenting cyber security and incident response event data as necessary.
What we offer
What we offer
  • Career advancement opportunities
  • extensive training
  • excellent benefits including paying for health and dental premiums for salaried employees.
  • Fulltime
Read More
Arrow Right

Senior System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 10+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 5+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Expert Systems Engineer (Cloud Sales Engineer)

At Altera Cloud, we help healthcare organizations modernize, scale, and secure t...
Location
Location
India
Salary
Salary:
Not provided
uk.alterahealth.com Logo
Altera Digital Health Inc. UK
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of Microsoft Azure and Amazon Web Services (AWS) platforms, services, and solution patterns
  • Experience in cloud pre-sales, solution engineering, or technical account support (typically 3–6 years of total IT experience)
  • Proven ability to communicate technical concepts clearly to both technical and non-technical audiences
  • Working knowledge of security, governance, and cost optimization principles
  • Strong problem-solving skills and a consultative mindset focused on customer outcomes
  • A passion for learning, collaboration, and helping clients realize the full potential of the cloud
  • Bachelor’s degree in Computer Science, Information Technology, or Engineering, or equivalent professional experience
  • Required certifications: Azure Administrator Associate or Azure Solutions Architect Associate or AWS Solutions Architect – Associate
Job Responsibility
Job Responsibility
  • Drive Growth: Identify opportunities to enhance existing client environments with new cloud capabilities, services, or optimizations
  • Shape Solutions: Translate client goals into high-level Azure and AWS architectures that are scalable, secure, and cost-effective
  • Support Sales: Partner with account teams to create proposals, technical estimates, and statements of work for new or add-on solutions
  • Engage Clients: Lead technical discussions and present solution recommendations to technical and business stakeholders
  • Discover Needs: Conduct structured discovery sessions to understand client environments, challenges, and desired outcomes
  • Collaborate: Work closely with architects and operations teams to ensure a smooth handoff from design to delivery
  • Stay Current: Keep up with the latest Azure and AWS innovations, pricing models, and best practices to bring fresh insights to clients
What we offer
What we offer
  • Be part of a team helping healthcare organizations deliver better care through modern cloud technology
  • Work in a collaborative, learning-focused environment with mentorship from senior cloud architects and sales leaders
  • Build your career path toward senior pre-sales or solution architecture roles
  • Competitive compensation, global project exposure, and a mission-driven culture that values innovation and integrity
Read More
Arrow Right

Expert Systems Engineer (Cloud Sales Engineer)

At Altera Cloud, we help healthcare organizations modernize, scale, and secure t...
Location
Location
India
Salary
Salary:
Not provided
uk.alterahealth.com Logo
Altera Digital Health Inc. UK
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of Microsoft Azure and Amazon Web Services (AWS) platforms, services, and solution patterns
  • Experience in cloud pre-sales, solution engineering, or technical account support (typically 3–6 years of total IT experience)
  • Proven ability to communicate technical concepts clearly to both technical and non-technical audiences
  • Working knowledge of security, governance, and cost optimization principles
  • Strong problem-solving skills and a consultative mindset focused on customer outcomes
  • A passion for learning, collaboration, and helping clients realize the full potential of the cloud
  • Bachelor’s degree in Computer Science, Information Technology, or Engineering, or equivalent professional experience
  • Required (one or more): Azure Administrator Associate or Azure Solutions Architect Associate, AWS Solutions Architect – Associate
Job Responsibility
Job Responsibility
  • Drive Growth: Identify opportunities to enhance existing client environments with new cloud capabilities, services, or optimizations
  • Shape Solutions: Translate client goals into high-level Azure and AWS architectures that are scalable, secure, and cost-effective
  • Support Sales: Partner with account teams to create proposals, technical estimates, and statements of work for new or add-on solutions
  • Engage Clients: Lead technical discussions and present solution recommendations to technical and business stakeholders
  • Discover Needs: Conduct structured discovery sessions to understand client environments, challenges, and desired outcomes
  • Collaborate: Work closely with architects and operations teams to ensure a smooth handoff from design to delivery
  • Stay Current: Keep up with the latest Azure and AWS innovations, pricing models, and best practices to bring fresh insights to clients
What we offer
What we offer
  • Be part of a team helping healthcare organizations deliver better care through modern cloud technology
  • Work in a collaborative, learning-focused environment with mentorship from senior cloud architects and sales leaders
  • Build your career path toward senior pre-sales or solution architecture roles
  • Competitive compensation, global project exposure, and a mission-driven culture that values innovation and integrity
Read More
Arrow Right

Senior Information Security Engineer

Serve as a technical leader in our Security team reporting to our Information Se...
Location
Location
United States , Boston
Salary
Salary:
150000.00 - 190000.00 USD / Year
whoop.com Logo
Whoop
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, or a related technical field and/or advanced certifications (CISSP, CISM, AWS Security Specialty, SANS, etc.)
  • 8+ years of hands-on experience in Information Security, IT Security, or a related role, including at least 2 years in a senior or lead capacity
  • Proven track record implementing and managing advanced security technologies (e.g., CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG)
  • Experience securing AI/ML systems or APIs, including governance of third-party AI integrations and organizational use of AI tools
  • Strong understanding of modern cloud security architecture (AWS, Azure, GCP) and experience performing threat modeling and risk assessments on cloud-based systems
  • Hands-on experience with application security tooling (SAST, SCA, DAST) and embedding secure development practices
  • Demonstrated leadership in security incident response, investigations, and root cause analysis
  • Effective communicator with the ability to influence stakeholders and explain security concepts to technical and non-technical audiences
  • Strong project management skills and the ability to drive initiatives to completion in a fast-paced environment
  • Experience mentoring engineers and setting operational standards
Job Responsibility
Job Responsibility
  • Implement and enhance security controls by leading the deployment, integration, and tuning of solutions such as CNAPP, SIEM, CASB, EDR, DLP, and MDM to maximize effectiveness
  • Support security design decisions by providing subject matter expertise on cloud and SaaS security best practices while influencing architecture led by the Security Architect role
  • Lead incident response and investigations by guiding containment, remediation, root cause analysis, and post-incident improvements
  • Strengthen application security by overseeing secure development practices and managing SAST, SCA, and DAST tooling
  • Advance identity and access management by supporting IAM policy enforcement, SSO, MFA, SCIM, RBAC, and user lifecycle governance
  • Secure AI systems and integrations by assessing and protecting embedded APIs and organizational AI tool usage to ensure resilience, privacy, and compliance
  • Collaborate cross-functionally by working with Engineering, IT, and GRC teams to embed security into systems and workflows
  • Mentor and influence by providing technical guidance, reviewing work, and promoting security-first thinking across the organization
  • Stay ahead of threats and regulations by tracking emerging risks, technologies, and compliance requirements to inform forward-looking strategies
  • Participate in and help improve the on-call rotation by providing guidance, escalation support, and driving improvements in response processes
What we offer
What we offer
  • competitive base salaries
  • meaningful equity
  • generous equity package
  • Fulltime
Read More
Arrow Right