About The Position

Leidos was awarded the U.S. Air Force Cloud One Architecture and Common Shared Services contract and currently has an opening for the AWS, Azure, Google, and Oracle clouds. This is an exciting opportunity to use your experience to modernize a leading, global-scale multi-cloud environment in support of a critical mission, supporting USAF system resiliency, security, and cost effectiveness. Location: This position will be in Huntsville, AL and may require travel to support customer or corporate meetings near Hanscom AFB (Boston, MA), or Reston, VA. Primary Responsibilities Include: The Cyber Operations Engineer will provide Incident Response (IR) and security operations support for the USAF Cloud One (C1) enterprise cloud environment supporting AWS, Azure, Oracle, and GCP at DoD Impact Levels (IL) 2–6. The position directly supports ISSO/ISSM functions, ATO sustainment, continuous monitoring, vulnerability management, and cybersecurity compliance activities in accordance with DoDI 8500.01, DoDI 8510.01 (RMF), AFI 17-101 (RMF), DoD Cloud Computing SRG, and NIST SP 800-53 This role will work closely with Government ISSOs, ISSMs, Authorizing Officials (AOs), Cybersecurity Service Providers (CSSPs), and Cloud One engineering teams to ensure continued ATO compliance, security posture improvement and monitoring, and rapid remediation of vulnerabilities within the C1 environment. Maintain audit log configuration, monitoring, and retention compliance. Support incident reporting and documentation in accordance with DFARS 252.204-7012 and 252.239-7010. Ensure compliance with SCCA and Cloud SRG requirements. Support secure configuration of AWS, Azure, Oracle, and GCP cloud environments. Support the development, updates, and maintenance of RMF authorization artifacts in accordance with DoDI 8510.01 and NIST SP 800-53. Support Continuous Authorization to Operate (cATO) within a DevSecOps or cloud-based environment, including implementation of automated control validation, continuous monitoring integration, and real-time POA&M management. Support ATO maintenance and sustainment activities for C1 and DPaaS environments. Support Authority to Use (ATU) conditions and remediation tracking as directed by the AO. Assist Government ISSO/ISSM with maintaining compliance with: DoDI 8500.01 (Cybersecurity) DoDI 8510.01 (RMF) AFI 17-101 (RMF) DoD Cloud Computing SRG DISA STIG/SRG CNSSI 1253 Support security control assessments, audit readiness, and third-party cybersecurity inspections.

Requirements

  • Bachelor’s degree with 2–4 years of relevant experience, or Master’s degree with 2 of relevant experience. Additional years of experience may be considered in lieu of a degree.
  • Active Secret clearance at a minimum required to start.
  • US citizenship required
  • CompTIA Security+ (IAT Level II) or equivalent required

Nice To Haves

  • Experience with USAF Cloud One or Platform 1
  • Experience with Zero Trust Architecture
  • Cloud certifications in AWS, Azure, Google, or Oracle clouds
  • Automation experience
  • Certifications: CISSP (IAT Level III) or equivalent
  • C1NACSS

Responsibilities

  • Provide Incident Response (IR) and security operations support for the USAF Cloud One (C1) enterprise cloud environment supporting AWS, Azure, Oracle, and GCP at DoD Impact Levels (IL) 2–6.
  • Directly supports ISSO/ISSM functions, ATO sustainment, continuous monitoring, vulnerability management, and cybersecurity compliance activities in accordance with DoDI 8500.01, DoDI 8510.01 (RMF), AFI 17-101 (RMF), DoD Cloud Computing SRG, and NIST SP 800-53
  • Work closely with Government ISSOs, ISSMs, Authorizing Officials (AOs), Cybersecurity Service Providers (CSSPs), and Cloud One engineering teams to ensure continued ATO compliance, security posture improvement and monitoring, and rapid remediation of vulnerabilities within the C1 environment.
  • Maintain audit log configuration, monitoring, and retention compliance.
  • Support incident reporting and documentation in accordance with DFARS 252.204-7012 and 252.239-7010.
  • Ensure compliance with SCCA and Cloud SRG requirements.
  • Support secure configuration of AWS, Azure, Oracle, and GCP cloud environments.
  • Support the development, updates, and maintenance of RMF authorization artifacts in accordance with DoDI 8510.01 and NIST SP 800-53.
  • Support Continuous Authorization to Operate (cATO) within a DevSecOps or cloud-based environment, including implementation of automated control validation, continuous monitoring integration, and real-time POA&M management.
  • Support ATO maintenance and sustainment activities for C1 and DPaaS environments.
  • Support Authority to Use (ATU) conditions and remediation tracking as directed by the AO.
  • Assist Government ISSO/ISSM with maintaining compliance with: DoDI 8500.01 (Cybersecurity) DoDI 8510.01 (RMF) AFI 17-101 (RMF) DoD Cloud Computing SRG DISA STIG/SRG CNSSI 1253
  • Support security control assessments, audit readiness, and third-party cybersecurity inspections.

Benefits

  • Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service