Support the DOMEX Technology Platform as a Cloud Security Engineer 3 responsible for securing, hardening, and maintaining compliance of cloud-based platforms across multiple secure networks in support of OSINT-focused mission systems.
**Essential Duties and Responsibilities**
* Provide technical security expertise for cloud and cloud-native environments.
* Perform security assessments, vulnerability management, and risk analysis for cloud-based systems across secure enclaves.
* Implement and manage security controls for Kubernetes clusters and containerized applications.
* Integrate security measures into CI/CD pipelines and DevSecOps processes.
* Develop and maintain ATO packages and support compliance with standards including NIST SP 800-37, NIST SP 800-53, CNSSI 1253, and ICD 503.
* Collaborate with compliance personnel, engineers, architects, and Government counterparts to ensure regulatory compliance.
**Required Qualifications**
* Active TS/SCI with ability to obtain a CI Polygraph.
* Bachelor's degree or equivalent with a minimum of six years of experience in the category field. Three additional years of experience may be substituted for a bachelor's degree.
* At least one DoD 8570.01-M IAT Level II or higher certification.
* 2+ years working in the cloud, securely configuring and deploying AWS services.
* Demonstrated experience securing Kubernetes platforms and integrating security into CI/CD pipelines and containers; must understand microservices architecture and service mesh.
* Experience with RMF, vulnerability management, and cloud compliance/security best practices.
**Preferred Qualifications**
* Multiple IAT/IAM II or III advanced certifications such as CISSP-ISSAP/ISSEP, CISM, CCSP, or SecurityX/CASP+ CE.
* AWS Solutions Architect or AWS Security Specialty certifications.
* Kubernetes certifications such as KCNA, CKA, or CKS.
* Linux administration experience and certifications such as Linux+ or Red Hat certifications including RHCSA or RHCE.
* Experience with security tools such as Splunk, Nessus, SonarQube, Prisma Cloud, DAST, and SAST tools.
* Experience applying Zero Trust framework to secure systems.
* Prior network engineering experience.
* Experience applying security controls to Generative AI implementations.
**Required Education and Experience Equivalency**
**Education** **Years of Experience** High School Diploma/GED9Associates Degree9Bachelors' Degree6Masters' Degree6PhD6**Required Certifications**
* At least one DoD 8570.01-M IAT Level II or higher certification.
**Required Security Clearance**
* Active TS/SCI with ability to obtain a CI Polygraph.
**Pay & Benefit Highlights**
**Compensation**
* Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
* Employee referral bonuses up to $10,000 per hired referral.
* Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).
**Health**
* 100% company-paid medical premiums for employees and eligible dependents.
* Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
* 100% company-paid dental premiums for employees and eligible dependents.
* 100% company-paid vision premiums for employees and eligible dependents.
**Income Protection**
* 100% company-paid premiums for short-term disability.
* 100% company-paid premiums for long-term disability.
* 100% company-paid premiums for accidental death & dismemberment (AD&D).
* 100% company-paid premiums for life insurance up to $200,000.
**Retirement**
* 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
* 401(k) pre-tax and Roth options.
**Leave**
* Up to 20 days of flexible paid time off (PTO).
* 11 paid floating holidays.
**Work-Life Balance**
* Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).