CYBERSECURITY CLOUD SUBJECT MATTER EXPERT (SME)
Toomey Technologies LLC
Cybersecurity Cloud Subject Matter Expert (SME)
Serves as the primary cloud security architect responsible for ensuring that cloud-hosted IT systems, particularly the Electronic Contract Writing Module (ECWM) and related customer contracting systems, are architected, designed, and implemented with robust security controls that meet or exceed agency requirements. The SME provides comprehensive security oversight throughout the system lifecycle, from initial design through deployment and ongoing operations, with particular emphasis on cloud environments including Oracle Cloud Infrastructure (OCI), Amazon Web Services (AWS), and Microsoft Azure. The position requires deep expertise in DoD cybersecurity frameworks, FedRAMP compliance, Risk Management Framework (RMF), and the unique security challenges inherent in cloud-based Government systems handling sensitive contracting and procurement data.
Active Security Clearance
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related technical field
Advanced cloud security certifications (CCSP, CISSP, SABSA, or equivalent) CISSP, CISM, or other advanced cybersecurity certification
Experience with DoD Enterprise DevSecOps Reference Design
Knowledge of containerization security (Docker, Kubernetes) and micro services security architecture
Two (2) years of hands-on experience achieving Authorization to Operate (ATO) in cloud environments (OCI, AWS, Azure, or equivalent platforms) with demonstrated success in navigating complex compliance requirements
Five (5) years of experience achieving ATOs for compartmented DoD IT systems with deep understanding of DoD-specific security requirements, assessment processes, and stakeholder coordination
Current cloud security certification from major cloud providers (Oracle Cloud Infrastructure, AWS, Azure, or equivalent) demonstrating technical proficiency and up-to date knowledge of cloud security capabilities.
DoD Approved 8140/8570 Baseline Certification:
Extensive knowledge of FedRAMP assessment methodology including practical experience with FedRAMP security control requirements, assessment procedures, and authorization processes
Demonstrated experience working with Oracle Cloud Infrastructure (OCI) including security architecture, implementation, and compliance activities
Proven experience working with enterprise DoD IT systems, understanding of DoD architecture standards, and familiarity with DoD cybersecurity requirements and processes
Advanced expertise in cloud security architecture principles across multiple platforms (OCI, AWS, Azure, Google Cloud) with deep understanding of shared responsibility models, cloud-native security services, and hybrid cloud security considerations
Comprehensive knowledge of cloud security engineering best practices including identity and access management (IAM), network security, data encryption, key management, and secure application deployment patterns
Proficiency in Infrastructure as Code (IaC) security, container security, serverless security, and cloud workload protection platforms with ability to implement security-by-design principles
Expert-level understanding of cloud security threats, attack vectors, and mitigation strategies including advanced persistent threats (APTs), insider threats, and cloud-specific vulnerabilities
Extensive experience with DoD Risk Management Framework (RMF) processes including system categorization, security control selection and implementation, assessment procedures, authorization decisions, and continuous monitoring
Deep knowledge of NIST cybersecurity frameworks (SP 800-53, SP 800-37, SP 800-171), DISA Security Technical Implementation Guides (STIGs), and DoD cybersecurity policies and instructions
Comprehensive understanding of FedRAMP assessment methodology, including security control inheritance, shared controls, and the FedRAMP authorization process for cloud service providers
Expertise in Authorization to Operate (ATO) processes for both cloud environments and compartmented DoD IT systems, including security documentation development, evidence collection, and stakeholder coordination
Advanced capabilities in conducting comprehensive cybersecurity vulnerability assessments with specific focus on cloud hosting environments and the unique risks associated with multi-tenant cloud infrastructure • Proficiency in security testing methodologies including penetration testing, vulnerability scanning, configuration assessments, and security control validation
Experience with security assessment tools and platforms including Assured Compliance Assessment Solution (ACAS), commercial vulnerability scanners, and cloud security posture management (CSPM) tools
Knowledge of threat modeling, security architecture review processes, and the ability to identify and mitigate security gaps in complex, distributed systems
Proven ability to review existing cloud security policies and provide actionable recommendations for improvement to enhance overall security posture and meet evolving threat landscapes
Experience in developing security standards, procedures, and guidelines that balance security requirements with operational efficiency and mission effectiveness
Knowledge of emerging cloud security technologies and methodologies with ability to assess their applicability to DoD environments and recommend adoption strategies
Comprehensive understanding of enterprise DoD IT architecture, including network topologies, system interconnections, data flows, and the security implications of complex system integrations
Experience with DoD enterprise services, shared services, and the security considerations involved in connecting cloud-hosted applications to existing DoD infrastructure
Knowledge of DoD cloud strategy and implementation approach
Hands-on experience with cloud security tools and services including cloud access security brokers (CASB), cloud workload protection platforms (CWPP), and security information and event management (SIEM) solutions
Proficiency in security automation, orchestration, and response (SOAR) capabilities with understanding of how to leverage cloud-native security services for incident response and threat hunting
Knowledge of DevSecOps practices and the integration of security controls into continuous integration/continuous deployment (CI/CD) pipelines
Understanding of backup and disaster recovery security considerations, business continuity planning, and the security implications of cloud-based recovery solutions
Experience with Government cloud initiatives (milCloud, AWS GovCloud, Azure Government)
Familiarity with AI/ML security considerations in cloud environments
Only qualified candidates will be contacted. Be sure to keep an eye on your spam or junk folders in case our emails end up in there! Please, no phone calls directly to our business, CEO, hiring managers, or recruiters. Due to the high volume of applicants, we typically receive for our career openings, we are not able to do phone interviews until later stages of the hiring process.
Toomey Technologies is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, religion, gender, disability, age, or veteran status.
$56k - $62k
...Sleep Expert Spanish speaking a plus Helping people sleep well so they live well is... ...the core of what we do. The right mattress matters, and so does the right career. Our... ...knowledge information to customers and serve as subject matter expert. Drive individual sales...Suggested$65 - $75 per hour
...Cybersecurity Engineer The Cybersecurity Engineer will support system... ...containerized environments, and emerging cloud-like architectures. This role... ...of employment. Benefits are subject to change and may be subject... ...access to specialized experts who drive scale, innovation...CloudContract workTemporary work- ...that need. Requirements Expertise in researching new Cybersecurity capabilities, performing trade studies, and providing expertise... ...ability to understand packet captures. Knowledge in PKI Cloud experience such as Kubernetes and containers, PO&M. Experience...CloudInterim role
- ...production grade data pipelines in modern cloud environments, enabling analytics, AI, ML,... ...business stakeholders. Serve as a Databricks SME—championing best practices, code standards... ...Pandas and PySpark Dataframes Expert level of SQL skills including Stored Procedure...CloudFull time
$50 per hour
...technologies such as Artificial Intelligence, Blockchain, AR/VR, Cloud Native and Quantum Physics to solve our customers' missions... ...integrated performance management, schedule management, or subject matter expert focus. Essentially, you'll lead a team in contract/program...CloudContract workFor subcontractorFlexible hours- ...Cloud Security Analyst Marathon TS is currently looking for a Cloud Security Analyst who will: • Analyze cloud services, APIs... ...application work products. • Provide technical support for cybersecurity on related cloud technologies and other assignments. • Provide...Cloud2 days per week
- ...scalability, and security of systems, while driving innovation through cloud migration, emerging technologies, and process optimization.... ..., and cloud platforms. Proficiency in ITIL frameworks, cybersecurity protocols, and system integration. Familiarity with...CloudFor contractorsRemote work
$112.92k - $125.28k
...for the US Navy that provides automated functional testing and cybersecurity analysis of software payloads. This is a relatively small team... ...~2+ years experience working with Azure or similar cloud platforms ~2+ years experience working with Kubernetes or similar...CloudImmediate startWork from homeFlexible hours2 days per week$110k - $150k
...We are seeking a Software Systems Engineer – RMF to join our cybersecurity engineering team supporting U.S. Navy programs. In this role,... ...Proficiency with eMASS and VRAM. Experience supporting DoD cloud authorization efforts including IL4–IL6 or FedRAMP environments...CloudFull timeWork experience placementRelocation packageFlexible hours$142.7k - $158.3k
...for the US Navy that provides automated functional testing and cybersecurity analysis of software payloads. We encourage you to apply if... ...: ~5+ years experience as a Developer ~ Full Stack, Cloud Infrastructure, DevOps would be preferential ~3+ years...CloudFlexible hours- ...installation, operation, and management of the Division's networking, cloud, and domain infrastructures, as well as mission critical... ...in identifying, developing, prioritizing, and implementing cybersecurity initiatives. Creates, implements, and manages the Division'...CloudTemporary workFor contractorsWork at officeLocal area
- ...experienced IT Manager to lead our IT operations with a strong focus on Microsoft 365 cloud ecosystem, endpoint management, security operations, and compliance with CMMC (Cybersecurity Maturity Model Certification) and NIST SP 800-171 requirements. This is a hybrid...CloudFor contractorsWork at officeLocal areaShift work
- ...Senior Cloud Security Specialist Marathon TS is looking for a Senior Cloud Security Specialist to support one of our clients in the financial technology industry. Reporting to the Global Security department, this role contributes to the company internal digital transformation...CloudWork experience placement
- ...Marathon TS AWS Cloud Engineer Marathon TS is looking for a Cloud Engineer to support a long term contract in the financial technology industry. Consultants will work within the Cloud Center of Enablement team to design, implement, and manage the cloud computing framework...CloudLong term contractWork at office
- ...Technology Manager For Cloud Infrastructure Manage a team that maintains cloud infrastructure for global data center operations! AWS... ..., and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate...Cloud
- ...Cloud Security Operations Engineer Reporting to the Global Security department, this role contributes to the company internal digital transformation in its evolving adoption of Hybrid Hosting Strategy and enhancing its Cloud Security practices. The ideal candidate will...CloudWork experience placement
- ...DESIRABLE). Experience in DevOps supporting CI/CD tool chain with a minimum of 3 years and an ideal of 5 years. Experience with AWS/cloud, infrastructure-as-code, Terraform (A PLUS). Experience with Cloudbees SDA (Software Delivery Automation), CI, CDRO (DESIRABLE)....Cloud
- ...Kubernetes / Cloud Architect SEACORP is seeking a well-qualified Kubernetes / Cloud Architect. Primary Duties and Responsibilities: Job Summary: SEACORP is seeking a Kubernetes / Cloud Architect to lead the design, standardization, and evolution of an enterprise...CloudTemporary workWork at office
$93.9k - $156.8k
...eligibility or have an active Top Secret with SCI eligibility. Will be subject to a federal background investigation. Minimum of 5 years of... ...solutions, and backup/recovery operations. Familiarity with cloud platforms (AWS, Azure, or GCP) and hybrid cloud environments....CloudImmediate start$135k - $190k
...Top Secret with SCI eligibility. ~ Will be subject to a federal background investigation. ~10+ years of experience in cloud architecture, with a focus on designing and implementing... ..., GICSP, GSEC, Security+ CE, CND, SSCP) ~ Expert understanding of cloud platforms (AWS, Azure,...CloudImmediate start- Job Title RL5 Cloud Security expertise for Client/ASM Skills: Cloud Security services 5 Years Senior (6-9) Infrastructure as Code 3 Years Professional (4-5) Security vulnerability and configuration scan tools 3 Years Professional (4-5)Cloud
- ...etc.). When you join Verizon You'll be doing work that matters alongside other talented people, transforming the way people, businesses... ...'s fastest and most reliable network, we're leading the way in cloud and security solutions, Internet of Things and video...CloudPermanent employmentFull timeTemporary workApprenticeshipWork experience placementWork at officeLocal areaNight shift
$123.07k - $129.8k
...able to obtain a Top Secret clearance. Applicants selected will be subject to a U.S. Government security investigation and must meet... ...technologies such as Artificial Intelligence, Blockchain, AR/VR, Cloud Native and Quantum Physics to solve our customers' missions in cyber...CloudWork at officeImmediate startFlexible hours- ...operating highly efficient, cost-effective wholesale, colocation, and cloud data centers. Each of our national facilities meets or exceeds... ...business needs. Job duties, roles, and responsibilities are subject to change over time. MUST-HAVE QUALIFICATIONS: High...CloudWork experience placementWork at officeLocal areaFlexible hoursShift workNight shift
- ...implement microservices-based solutions Support Kubernetes cloud architecture design and deployment Engineer and optimize Container... ...Evaluate network performance, scalability, and cybersecurity posture Collaborate with cross-functional teams during system...CloudLocal area
- ...strong background in continuous integration and continuous deployment (CI/CD) using Jenkins, infrastructure as code (IaC), Kubernetes, cloud, and container technologies. Additionally, programming skills in Python or Java, and deployment automation experience are crucial...CloudRemote work
- ...global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers,... ..., and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate...Cloud
$95.35k - $105.81k
...It's an amazing challenge. And it's waiting for you now. We apply advanced technologies such as Artificial Intelligence, AR/VR, and Cloud Native to solve our customers' missions in cyber, RF, undersea, interstellar space and everything in between. Key Responsibilities...CloudFlexible hours- ...access at scale across various products and platforms in a hybrid, cloud and on-premises environment. Your skills will support the... ...implementing Zero Trust at scale across hybrid environments. Expert knowledge of SASE, CASB, ZTNA, SWG technologies. Strong security...CloudWork experience placementWork at officeRemote work
- ...Software Engineer / Cloud Architect Location: Manassas, VA Position: 1 Type: 1–2 Year Contract Start Date: Approximately 2 weeks Work Authorization: ITAR Compliant (U.S. Citizenship Required) Security Clearance: Interim Accepted (Active Secret Preferred...CloudContract workInterim roleImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CYBERSECURITY CLOUD SUBJECT MATTER EXPERT (SME). Be the first to apply!

