Information Assurance Cyber Cloud Admin

Concept Plus
  • Dayton, Ohio
    13 days ago

    Job Description

    About the role

    Concept Plus is seeking an IA Cyber Cloud Administrator to support Federal IT systems development and operations. This role requires knowledge and understanding of Federal IT processes and technology stack, including DevSecOps CI/CD pipelines, Oracle-based systems, and Java application stacks. Federal systems are deployed in both classified and unclassified cloud environments, requiring strict adherence to federal cybersecurity, configuration, and compliance standards.

    The IA Cyber Cloud Administrator provides critical security, cloud administration, and compliance support to modernize and enhance client systems by ensuring environments are secure, resilient, and continuously monitored. This role serves as a key interface with the customer and the Program Management Office (PMO), ensuring that security controls, system configurations, and operational practices align with program requirements, RMF standards, and mission needs.

    The IA Cyber Cloud Administrator works across capability delivery teams—including development Scrums, Cloud Engineering, and DevSecOps platform resources—to integrate security into system design, CI/CD pipelines, and cloud environments. The role supports the implementation and maintenance of security controls, vulnerability management processes, identity and access management, and continuous monitoring, ensuring systems remain compliant and operational within federal environments.


    What you'll do

    • Administer and secure cloud environments, including AWS, and hybrid infrastructures supporting client projects
    • Implement and maintain security controls across CI/CD pipelines, ensuring secure code integration, build, and deployment processes
    • Support RMF (Risk Management Framework) activities, including control implementation, assessment support, and ATO sustainment
    • Configure and maintain STIG-compliant systems, ensuring alignment with federal hardening and configuration standards
    • Integrate and manage automated security tools within DevSecOps pipelines (SAST, DAST, container scanning, dependency scanning)
    • Monitor system security posture using continuous monitoring tools, log aggregation, and alerting platforms
    • Conduct vulnerability assessments, remediation tracking, and security reporting
    • Implement security analysis tools (SAST, DAST, SCA) into CI/CD pipelines to identify vulnerabilities early.
    • Ensure cloud systems meet Risk Management Framework (RMF) standards (NIST 800-53), including ATO (Authority to Operate) support and documentation.
    • Perform automated cybersecurity testing and manage STIG compliance, conducting scan evaluations using ACAS (Assured Compliance Assessment Solution).
    • Develop and maintain automation scripts for patching, configuration management, and evidence collection to support continuous authorization. 
    • Provision, configure, and maintain fedearl cloud infrastructure using Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
    • Maintain secure configurations for cloud, virtualized, and hybrid environments, ensuring availability and resilience
    • Collaborate with development, DevSecOps, and cloud engineering teams to embed security into system design and deployment workflows
    • Maintain documentation including security plans, SSPs, POA&Ms, and configuration baselines
    • Support incident response activities, including investigation, containment, and corrective action implementation
    • Collaborating with agile software teams to remediate application risks.
    • Managing Cloud Service Provider (CSP) security tools (AWS Security Hub, Azure Defender).
    • Troubleshooting cloud-based application performance and security issues.
    • Applying security patches and managing IAVAs (Information Assurance Vulnerability Alerts).


    Required Qualifications

    • US Citizen
    • Must be able to obtain a Tier-3 Secret Clearance
    • Bachelor’s degree in IT, Engineering, Computer Science, or a related field; master’s degree preferred.
    • 5-7 years in Cloud Engineering/Admin or Cybersecurity.
    • Experience with cloud platforms (AWS Preferred)
    • Experience securing CI/CD pipelines and DevSecOps environments
    • Experience with Kubernetes/Docker containerization, CI/CD tools (Jenkins, GitLab CI), AWS/Azure Services, and IaC (Terraform).
    • Familiarity with federal cybersecurity mandates (RMF, STIGs).
    • Familiarity with container security (Docker, Kubernetes security practices)
    • Experience with vulnerability scanning and security tools (e.g., Nessus, Fortify, SonarQube, Anchore)


    Concept Plus is an Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


    Numbers & Facts

    LocationDayton, Ohio

    Skills

    • Agile Programming Methodologiesunmatched
    • Amazon Web Services (AWS)unmatched
    • Applications Securityunmatched
    • Business Operationsunmatched
    • Cloud Applicationsunmatched
    • Cloud Computingunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Corrective Actionunmatched
    • Customer Relationsunmatched
    • Customer Support/Serviceunmatched
    • Dockerunmatched
    • Documentation Planunmatched
    • Identify Issuesunmatched
    • Identity Data Managementunmatched
    • Incident Responseunmatched
    • Information Systems/Technology IS/IT Administrationunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Javaunmatched
    • Jenkinsunmatched
    • Maintain Complianceunmatched
    • Microsoft Windows Azureunmatched
    • Nessusunmatched
    • Oracleunmatched
    • Project/Program Managementunmatched
    • Regulatory Complianceunmatched
    • Risk Management Framework (RMF)unmatched
    • Scripting (Scripting Languages)unmatched
    • Scrum Project Management and Software Developmentunmatched
    • Secret Clearanceunmatched
    • Security Analysisunmatched
    • Security Monitoringunmatched
    • Security Patchesunmatched
    • Security System Designunmatched
    • Software Engineeringunmatched
    • Software Patchesunmatched
    • Support Documentationunmatched
    • System Integration (SI)unmatched
    • System Operationsunmatched
    • Systems Administration/Managementunmatched
    • Technical Supportunmatched
    • Test Automationunmatched
    • Testingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Citizenunmatched
    • Virtualizationunmatched
    • Vulnerability Scannersunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder