Cloud Infrastructure & Security Engineer
SOLUTIONS FOR INFORMATION DESIGN
Job Description
Job Description:\n\nDescription:\n \nThe Cloud Infrastructure & Security Engineer is a hands-on individual contributor responsible for designing, implementing, administering, securing, and continuously improving SOLID's Microsoft Azure cloud infrastructure and technology environments. The position focuses on building scalable, resilient, automated, and secure cloud solutions supporting corporate operations and federal programs.\n\nThis role manages Azure cloud computing resources, virtual networks, identity and access management, cloud storage, infrastructure automation, system monitoring, and disaster recovery capabilities. The position also supports integration with Microsoft Entra ID, Microsoft 365, and other enterprise technologies.\n\nA key responsibility of this position is supporting Department of Defense Risk Management Framework (RMF) and Authority to Operate (ATO) activities, including developing and maintaining ATO documentation, implementing and documenting security controls, managing vulnerabilities, maintaining continuous monitoring evidence, and supporting security assessments and authorization activities.\n\nWorking closely with internal departments, government customers, cybersecurity personnel, software engineering and DevOps teams, and external service providers, the Cloud Infrastructure & Security Engineer translates operational, technical, and federal cybersecurity requirements into secure, practical, and sustainable cloud solutions. \n\nCloud Infrastructure Engineering and Operations (50%)\n\n Design, implement, administer, and optimize secure, scalable, resilient, and supportable Microsoft Azure infrastructure across corporate and program-specific environments.\n Manage Azure computing resources, virtual machines, virtual networks, storage, cloud identity services, firewalls, VPN connectivity, load balancing, backup services, and monitoring solutions.\n Configure and maintain Azure subscriptions, resource groups, networking, identity integration, access controls, and platform services.\n Administer and integrate Microsoft Entra ID, Microsoft 365, endpoint management, and other enterprise services with Azure infrastructure, including identity management, authentication, access control, and secure connectivity.\n Implement and maintain Infrastructure as Code (IaC) solutions using technologies such as Terraform, Azure Bicep, or ARM templates to support consistent and repeatable infrastructure deployments.\n Perform cloud resource provisioning, configuration management, patching, upgrading, monitoring, troubleshooting, backup validation, and capacity planning.\n Develop scripts, automation, and repeatable processes using PowerShell, Python, or comparable technologies to improve infrastructure deployment, configuration, monitoring, evidence collection, and administration.\n Implement and maintain cloud backup, disaster recovery, business continuity, and Continuity of Operations capabilities, including documentation, periodic testing, and corrective actions.\n Configure and maintain Azure monitoring, logging, and alerting solutions to proactively identify performance, availability, security, and operational issues.\n Evaluate Azure resource utilization, performance, security, reliability, and costs; recommend improvements to resource sizing, architecture, availability, and operational efficiency.\n Maintain cloud architecture documentation, system inventories, network and data-flow diagrams, configuration records, operating procedures, and infrastructure deployment documentation.\n\nCloud Security Engineering and Compliance (30%)\n\n Design, implement, maintain, assess, and document cybersecurity controls across Microsoft Azure infrastructure and hosted environments in accordance with organizational and applicable federal cybersecurity requirements.\n Lead and support technical RMF activities throughout the system lifecycle, including security control implementation, assessment, authorization, and continuous monitoring.\n Develop, maintain, and coordinate ATO packages and supporting cybersecurity documentation, including System Security Plans (SSPs), control implementation statements, Azure architecture and data-flow diagrams, configuration evidence, Plans of Action and Milestones (POA&Ms), and related security artifacts.\n Work with cybersecurity personnel, system owners, government stakeholders, and assessors to prepare systems for authorization, address assessment findings, support ATO submissions, and maintain documentation throughout the authorization lifecycle.\n Implement and document security controls under NIST SP 800-53, NIST SP 800-171, DoD RMF, and other applicable federal cybersecurity frameworks.\n Implement and maintain Azure security configurations, identity and access controls, multifactor authentication, role-based access control (RBAC), least-privilege access, secure network segmentation, encryption, and secure configuration baselines.\n Configure and maintain cloud security capabilities using Microsoft Entra ID, Microsoft Defender for Cloud, Azure Policy, and comparable security technologies.\n Perform system hardening and manage vulnerability identification, prioritization, remediation, validation, and reporting across Azure infrastructure and hosted environments.\n Review security scans, alerts, logs, and configuration findings; investigate potential security issues, coordinate corrective actions, and support incident response and remediation.\n Maintain audit-ready technical documentation and continuous monitoring evidence, including security control validation, configuration records, vulnerability remediation records, and POA&M updates.\n Coordinate security assessments, penetration testing, tabletop exercises, internal audits, and customer or third-party reviews.\n Support the secure storage, processing, and transmission of Controlled Unclassified Information (CUI), Personally Identifiable Information (PII), and other sensitive data.\n Evaluate proposed Azure services, infrastructure changes, and integrations for security, compliance, operational, and architectural impacts.\n\nEngineering, Automation, and Stakeholder Collaboration (20%)\n\n Collaborate with software engineering, DevOps, and cybersecurity teams to design and maintain Azure environments supporting application development, testing, deployment, and production operations.\n Support the integration of infrastructure provisioning, configuration management, security validation, and monitoring into CI/CD pipelines and automated deployment workflows.\n Gather and analyze operational, business, cybersecurity, and technical requirements and translate them into practical Azure infrastructure and security solutions.\n Coordinate with cybersecurity personnel and program stakeholders to ensure infrastructure designs, deployments, and system changes align with applicable RMF and ATO requirements.\n Evaluate Azure technologies, platform services, and architectural approaches to improve system reliability, scalability, security, maintainability, and cost effectiveness.\n Coordinate with internal departments, government customers, vendors, and external service providers regarding cloud infrastructure requirements, system changes, technical issues, and compliance activities.\n Communicate technical risks, operational constraints, architectural recommendations, and alternative solutions clearly to technical and nontechnical stakeholders.\n Perform other related duties as organizational and program needs require.\nRequirements:\n\nKnowledge, Skill, and Abilities\n\n Strong knowledge of Microsoft Azure infrastructure, cloud computing, systems administration, cloud networking, identity and access management, vulnerability management, and cybersecurity fundamentals.\n Working knowledge of Azure compute, networking, storage, identity services, logging and monitoring, backup, virtualization, firewalls, VPN technologies, and endpoint security.\n Strong understanding of federal cybersecurity requirements, particularly DoD RMF, NIST security controls, and the ATO lifecycle.\n Ability to develop, maintain, and organize accurate, complete, and audit-ready ATO documentation and technical security evidence.\n Experience with PowerShell, Python, or comparable scripting and automation technologies; familiarity with Infrastructure as Code, configuration management, and DevSecOps practices.\n Ability to diagnose complex infrastructure and cybersecurity problems, identify root causes, implement sustainable solutions, and independently manage competing priorities.\n Excellent organizational, analytical, communication, technical writing, and documentation skills.\n Ability to communicate technical and cybersecurity requirements effectively to engineering teams, government stakeholders, and nontechnical personnel.\n\n Required Qualifications\n \n\n Bachelor's degree in computer science, information technology, cybersecurity, engineering, or a related discipline. An equivalent combination of education, certifications, training, and experience may be considered.\n Seven or more years of progressively responsible experience in cloud infrastructure, systems engineering, cloud administration, cybersecurity engineering, or a closely related field, including substantial hands-on experience deploying and administering Microsoft Azure environments.\n Demonstrated experience designing, implementing, administering, and securing production infrastructure within Microsoft Azure.\n Strong working knowledge of Azure infrastructure services, including virtual machines, virtual networking, storage, identity and access management, network security, monitoring, backup, and disaster recovery.\n Hands-on experience with Microsoft Entra ID, including identity management, authentication, access controls, and integration with Azure infrastructure.\n Experience implementing and maintaining infrastructure through automated deployment or Infrastructure as Code technologies, such as Terraform, Azure Bicep, or ARM templates.\n Experience developing scripts or automated workflows using PowerShell, Python, or comparable technologies.\n Experience implementing or assessing technical security controls under NIST SP 800-53, NIST SP 800-171, RMF, CMMC, FedRAMP, FISMA, or comparable federal cybersecurity requirements.\n Demonstrated experience directly supporting RMF and ATO activities, including developing or maintaining security documentation, technical control implementation statements, assessment evidence, POA&Ms, and other authorization-related artifacts.\n Strong troubleshooting, technical documentation, communication, and stakeholder engagement skills.\n\nAdditional Requirements\n\n United States citizenship and current CompTIA Security+ (or higher) certification at the time of hire.\n Ability to obtain and maintain a government security clearance and satisfy applicable DoD 8140 qualification requirements.\n Ability to support occasional maintenance, incident response, or system restoration activities outside normal business hours.\n\nPreferred Qualifications\n\n Experience supporting Microsoft Azure Government or other cloud environments subject to federal cybersecurity requirements.\n Experience supporting systems operating under a DoD ATO, including initial authorization, reauthorization, and continuous monitoring activities.\n Experience designing or migrating enterprise infrastructure and applications to Microsoft Azure.\n Experience with Terraform, Azure Bicep, ARM templates, Ansible, or comparable infrastructure automation technologies.\n Experience with Azure DevOps, GitHub Actions, or comparable CI/CD and infrastructure deployment technologies.\n Experience with containerization, container orchestration, and cloud-native application hosting technologies, including Azure Kubernetes Service (AKS).\n Experience with Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, cloud security posture management, SIEM, EDR, or automated compliance monitoring tools.\n Experience with hybrid cloud architectures and secure connectivity between Azure and on-premises infrastructure.\n Experience supporting CMMC assessments or implementing NIST SP 800-171 requirements.\n Experience with AWS or AWS GovCloud infrastructure and security, particularly in environments utilizing multiple cloud platforms.\n Relevant certifications such as Microsoft Azure Administrator Associate, Azure Solutions Architect Expert, Azure Security Engineer Associate, CISSP, or comparable cloud and cybersecurity certifications.\n\n \nWhy Join SOLID?\nAt SOLID, we offer more than just a job; we offer ownership. As a 100% employee-owned company through our Employee Stock Ownership Plan (ESOP), every team member has a personal stake in our success and a voice in how we grow.\n\nBenefits include:\n\n 100% employee ownership through our ESOP\n Comprehensive medical, dental, and vision coverage\n Generous PTO policy with 11 paid holidays annually\n Paid family leave\n 401(k) retirement plan\n Monthly reimbursement for high-speed internet\n Fully remote work with flexible scheduling\n Sponsored professional development and training\n A fun and inclusive culture with regular virtual team events\n\nThis position will require and is dependent on the successful completion of a criminal background check. \n\nSOLID is committed to ensuring equal employment opportunities for all employees and applicants for employment. As an Equal Opportunity Employer, we do not discriminate based on race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, disability status, or any other characteristic protected by law.\n\nIn compliance with the Equal Opportunity Clause §60-1.35, SOLID ensures that employees and applicants are not restricted from discussing or disclosing their compensation or the compensation of other employees or applicants. Our policies do not prohibit, or tend to prohibit, employees or applicants from discussing or disclosing their compensation.\n\nAll employees and applicants will have access to our nondiscrimination provision, which is included in our employee manuals and handbooks and posted in conspicuous places or electronically where they are readily available.
- ...of experience building and administering cloud environments, utilizing cloud-native... ...toolsExperience with developing and evaluating security documentation, including system security... ...development environmentKnowledge of Infrastructure code concepts such as Terraform, CloudFormation...Cloud
- ...culture. Description of Task to be Performed: The Security Infrastructure & Exposure Engineer will design, build, and scale our attack surface... ...Infrastructure-as-Code (IaC) and CI/CD deployment pipelines. Cloud Architecture Defense : Evaluate and harden complex...CloudTemporary workLocal areaImmediate start
- ...Description Job Description Description: Summary: The Infrastructure & Security Engineer is a hands-on individual contributor with... ...and program-specific technology environments, including cloud services, servers, virtual machines, identity platforms,...CloudRemote workFlexible hours
- ...Lead Cloud Security Engineer Location: Tysons Corner, VA or Rockville, MD Work arrangement: Hybrid — 3 days onsite and 2 days remote. Must have’s : ~5-8+ years’ experience being a security engineer and at least 2-3 years’ experience in a lead role. someone...CloudRemote work
$110k - $155k
OverviewAs a Cloud Security Engineer, you will work within our growing DevSecOps practice delivering features to support developing, testing... ...services, cybersecurity and DevOps practices such as infrastructure as code and confirmation management automation. ContributionsResponsibilities...Cloud$120k - $160k
Job DescriptionEverforth ECS is seeking a Cloud Security Engineer to work in our Fairfax, VA office.Everforth ECS is seeking a Microsoft Azure... ...of cybersecurity technologies, controls, and secure infrastructure capabilities across enterprise systems and security operations...CloudWork at office$86.8k - $198k
Cloud Security EngineerThe Opportunity:Cloud environments are powerful, but they only support... .... We are looking for a Cloud Security Engineer to help integrate OCI environments... ...collaborate with engineering, security, infrastructure, operations, and customer stakeholders...CloudFull timeContract workPart timeLocal areaRemote work- Software Guidance & Assistance, Inc., (SGA), is searching for a Lead Cloud Security Engineer for a contract assignment with one of our premier Regulatory clients. Must be local and willing to work hybrid in one of these offices: Tysons VA or Rockville MD. Initial...CloudContract workLocal area
$99k - $225k
Cloud Security EngineerThe Opportunity:Everyone is trying to “harness the cloud,” but not everyone... ...knows how to secure it. As a security engineer, you know how to assess and implement... ...development environmentKnowledge of Infrastructure code concepts, such as Terraform,...CloudFull timeContract workPart timeWork at officeLocal areaRemote work- ...development, scripting, and automation, coupled with deep expertise in Security Information and Event Management (SIEM) tools.... ...Architecture: Consult on the design, architecture, and implementation of cloud security monitoring systems at enterprise scale. Development...Cloud
- ...advanced cybersecurity operations, AI/ML integration, cloud modernization, data governance, and risk management.... ...Department of Defense (DoD), Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA), and the Department of Treasury...CloudFull time
- ...coupled with deep expertise in Security Information and Event... ...architecture, and implementation of cloud security monitoring systems... ...with cloud security, cloud engineering or cyber operations ~7+... ...Operating Systems, Network Infrastructure, Security Principles or System...Cloud
$159.3k - $202.4k
Amazon's Security team is looking for a Security Testing Engineer to execute security testing and assessment for a U.S. Government program building a classified... ...experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations...CloudFlexible hours$120k - $130k
...site support Connected Logistics is seeking a Senior Cloud Security Engineer to support the Cybersecurity Architecture and... ...implements security solutions that protect applications, infrastructure, data, and mission services. The Senior Cloud Security Engineer...CloudContract workWork at officeRemote work- ...Overview GuidePoint Security provides trusted cybersecurity expertise... ...our federal presales engineering team and looking for technically... ...of various on-premises, cloud-based, and hybrid resources... ...environment. ~ Knowledge of infrastructure‑as‑code concepts such as...CloudFor contractorsRemote workFlexible hours
$75 - $80 per hour
THIS JOB DESCRIPTION WAS CREATED BY AI, REVIEW BEFORE POSTINGPosition: Cloud Security Engineer - W2 onlyLocation: Tysons, Virginia or Plano TX or RemoteDuration: ContractJob ID: 179903Job OverviewWe are seeking a skilled Cloud Engineer to lead a portfolio of diverse technology...CloudFull time- ...Capital One seeks a Security Engineer 4 to design and deliver scales of security platforms across cloud and on-prem environments from McLean, VA. You will lead automated... ..., and collaboration with software and infrastructure teams. A strong background in CI/CD security...Cloud
$110.6k - $124.3k
...role MyEyeDr. is seeking a dynamic and detail-oriented Cloud Security Engineer to join our IT Cyber Security team. The Cloud Security... ...architect, deploy and operate a secure cloud application infrastructure that aligns with business needs. The position is responsible...CloudRemote workHome officeFlexible hours- ...of experience building and administering cloud environments, utilizing cloud-native... ...Experience with developing and evaluating security documentation, including system security... ...development environment ~ Knowledge of Infrastructure code concepts such as Terraform, CloudFormation...CloudFull time
- ...Chenega MIOS in Springfield, VA is seeking a Senior Software Engineer to join our team responsible for developing, maintaining, and deploying... ...-on experience with Java/Spring Boot, React or Angular, AWS or C2S cloud, and a TS/SCI clearance. #J-18808-Ljbffr Jobleads-USCloudRemote job
- ...Government in Reston, VA, seeks a Senior Engineer to build and operate a Kubernetes-based... ...on automation, observability, and security tooling. The role may require TS/SCI poly... ...contracts. You will contribute to scalable infrastructure, CI/CD pipelines, and secure deployment...Cloud
- ...Responsibilities Develop and implement cloud security architectures, tools, and processes for mission-critical Intelligence Community... ..., and Risk Management Framework. ~ Knowledge of infrastructure-as-code concepts, including Terraform, CloudFormation, or Bicep...CloudFull timePart time
- ...Responsibilities Integrate commercial cloud environments with agency enterprise services and security-monitoring architectures. Design, deploy, secure, and... ...~8+ years of experience in cloud security engineering, cybersecurity, or security architecture. ~ Experience...CloudFull timePart time
$77.6k - $176k
Cloud Security Platform Product Sales EngineerThe Opportunity:Drives organizational success by managing or performing sales activities and... ...in a customer-facing technical role such as a sales engineer, solutions engineer, or security engineerExperience supporting...CloudFull timeContract workPart timeLocal areaRemote work$129.2k - $174.8k
AWS Security is looking for a driven professional to join its high-security systems engineering team to manage the operation of our physical access... ...are delighted, produce infrastructure as code and robust operational... ...of areas including cloud, devices, retail, entertainment...CloudFlexible hours- ...Leidos in Reston, VA is seeking a Security Engineer Solution Architect to lead security across a primarily cloud-based platform for a Defense Intelligence Enterprise client. You will guide ATO processes, governance, and accreditation assurance while coordinating with...Cloud
- ...Probity is seeking a Senior Cloud Security professional to design, architect, and implement cloud security monitoring systems across enterprise-scale environments. The role focuses on automation, scripting in Python, and mentoring CSOC staff. The candidate will develop...Cloud
- ...LLC is seeking an experienced Senior Oracle Database / Cloud & Security Engineer to support a Federal Government mission-critical application... ...provide hands-on Oracle database administration, cloud infrastructure support, cybersecurity, vulnerability remediation, ATO...Cloud
- ...SAP NS2 seeks a Security Automation Engineer to provide technical leadership on automation tooling and pipelines, architecting and maintaining IaC, and securing microservice architectures across cloud platforms. You will collaborate on cloud-native security, logging,...Cloud
- Booz Allen Hamilton is seeking a Cloud Security Platform Product Sales Engineer in the United States. You will drive sales by demonstrating cybersecurity platforms, reviewing architectures, and leading workshops for technical and executive audiences. The role requires...Cloud
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cloud Infrastructure & Security Engineer. Be the first to apply!
- senior cloud security engineer Fairfax, VA
- senior principal cloud computing engineer Fairfax, VA
- aws cloud security engineer Fairfax, VA
- cloud engineer Fairfax, VA
- cloud developer Fairfax, VA
- senior cloud data engineer Fairfax, VA
- informatica cloud developer Fairfax, VA
- cloud network engineer Fairfax, VA
- aws cloud infrastructure engineer Fairfax, VA
- cloud architect Fairfax, VA




