Senior Cybersecurity/Cloud Security Engineer

Rividium
  • Washington, District of Columbia
    5 days ago

    Job Description

    Position Overview

    RiVidium Inc. seeking an experienced Senior Cybersecurity/Cloud Security Engineer to support enterprise cybersecurity, cloud security, risk management, and security engineering initiatives within a federal environment. The ideal candidate will have strong hands-on experience securing cloud environments while applying cybersecurity engineering principles, security controls, risk management frameworks, and industry best practices.

    This position will work closely with cybersecurity, cloud, infrastructure, systems engineering, and compliance teams to design, implement, assess, and continuously improve secure technology environments.

    The successful candidate will be comfortable translating cybersecurity requirements into practical technical solutions and will have experience working with cloud platforms, security controls, vulnerability management, and federal cybersecurity requirements.

    Key Responsibilities

    • Design, implement, and maintain secure cloud and enterprise technology environments.
    • Develop and implement cybersecurity controls and technical security solutions across cloud and on-premises environments.
    • Assess cloud architectures, applications, networks, systems, and infrastructure for security risks and vulnerabilities.
    • Apply security engineering principles throughout the system development and operational lifecycle.
    • Support cloud security architecture, configuration, hardening, monitoring, and compliance activities.
    • Implement security solutions aligned with organizational policies, federal requirements, and applicable cybersecurity frameworks.
    • Conduct security assessments, risk analyses, vulnerability reviews, and technical evaluations.
    • Support the implementation and assessment of security controls in accordance with NIST Risk Management Framework (RMF) requirements.
    • Assist with security authorization activities, including system security documentation, control implementation, assessment evidence, POA&M management, and continuous monitoring.
    • Identify security weaknesses and recommend practical remediation strategies.
    • Collaborate with Information System Security Officers (ISSOs), Security Control Assessors (SCAs), system owners, engineers, architects, and program leadership.
    • Support vulnerability management, configuration management, security monitoring, and remediation efforts.
    • Evaluate cloud services and emerging technologies for security risks and compliance considerations.
    • Develop technical documentation, security architecture documentation, assessment reports, procedures, and recommendations.
    • Support security automation and integration of cybersecurity tools and technologies.
    • Monitor changes to systems and cloud environments to ensure continued compliance with security requirements.
    • Participate in security reviews, audits, technical meetings, and customer briefings.
    • Provide technical guidance and mentorship to junior cybersecurity and cloud security personnel.
    • Stay current with emerging cloud security threats, technologies, vulnerabilities, and cybersecurity best practices.

    Required Qualifications

    • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, Engineering, or a related field.
    • Demonstrated experience in cybersecurity engineering, cloud security, information assurance, or a closely related discipline.
    • Strong hands-on experience with cloud security concepts and technologies.
    • Experience with cybersecurity risk management, security controls, vulnerability management, and security assessments.
    • Experience implementing or assessing cybersecurity controls within enterprise environments.
    • Knowledge of security architecture, network security, identity and access management, encryption, system hardening, and secure configuration practices.
    • Experience with NIST cybersecurity standards and the Risk Management Framework (RMF).
    • Ability to analyze technical environments, identify cybersecurity risks, and develop effective mitigation strategies.
    • Strong analytical, problem-solving, technical writing, and communication skills.
    • Ability to work independently and collaboratively with technical and program teams.

    Required Certifications

    Candidates must possess:

    • AWS Cloud certification
    • CISSP
    • Scrum certification

    Preferred Qualifications

    • Experience supporting federal civilian or Department of Defense (DoD) cybersecurity programs.
    • Experience with AWS, Microsoft Azure, Google Cloud Platform (GCP), and/or Microsoft 365 security.
    • Experience with cloud security architecture and cloud-native security services.
    • Experience with Security Information and Event Management (SIEM), vulnerability management, endpoint security, identity management, and security monitoring technologies.
    • Knowledge of NIST SP 800-53, NIST SP 800-37, FISMA, and related federal cybersecurity requirements.
    • Experience supporting ATO, continuous monitoring, security control assessments, and POA&M management.
    • Experience with Infrastructure as Code (IaC), DevSecOps, CI/CD security, or security automation.
    • Experience with container, Kubernetes, or serverless security.
    • Additional cloud certifications such as AWS Solutions Architect, AWS Security Specialty, Azure Security Engineer, or Google Cloud security certifications.
    • Experience with Microsoft 365 security and compliance.
    • Familiarity with GRC platforms such as RSA Archer or ServiceNow GRC.

    Technical Skills

    The ideal candidate will have experience with several of the following:

    • Cloud Security Engineering
    • AWS Security
    • Microsoft Azure Security
    • Google Cloud Security
    • Microsoft 365 Security
    • Cybersecurity Architecture
    • Network Security
    • Identity and Access Management (IAM)
    • Security Engineering
    • Vulnerability Management
    • Security Monitoring
    • Incident Response
    • Risk Management
    • NIST RMF
    • NIST SP 800-53
    • FISMA
    • Security Controls
    • ATO / Authorization
    • Continuous Monitoring
    • POA&M Management
    • Security Control Assessments
    • DevSecOps
    • Cloud Governance
    • Infrastructure Security
    • Security Automation
    • SIEM and Security Analytics
    • Configuration Management
    • System Hardening

     

    RiVidium Inc is seeking a “Senior Cybersecurity/Cloud Security Engineer ” to support a federal client. This position is contingent upon contract award and funding approval. As such, this job posting is intended to identify qualified candidates for a potential future opportunity and does not represent a currently available position. Compensation has not yet been determined and will be established based on contract requirements, candidate qualifications, experience, and applicable market conditions.

     

    Numbers & Facts

    LocationWashington, District of Columbia

    Skills

    • Access Authorizationunmatched
    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Architectural Analysisunmatched
    • Automationunmatched
    • Best Practicesunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Applicationsunmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Improvementunmatched
    • Continuous Integrationunmatched
    • Cryptographyunmatched
    • Documentationunmatched
    • Emerging Technologyunmatched
    • Endpoint Securityunmatched
    • FISMA - Federal Information Security Management Actunmatched
    • GCP (Good Clinical Practices)unmatched
    • Identity Data Managementunmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Maintain Complianceunmatched
    • Mentoringunmatched
    • Microsoft Product Familyunmatched
    • Microsoft Windows Azureunmatched
    • Network Securityunmatched
    • Network Systemsunmatched
    • Problem Solving Skillsunmatched
    • Protective Servicesunmatched
    • Regulatory Complianceunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Risk Management Framework (RMF)unmatched
    • Sales Presentationunmatched
    • Scrum Project Management and Software Developmentunmatched
    • Security Analysisunmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Security Auditingunmatched
    • Security Complianceunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • ServiceNowunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Software Engineeringunmatched
    • Strategic Planningunmatched
    • System Operationsunmatched
    • Systems Engineeringunmatched
    • Technical Analysisunmatched
    • Technical Leadershipunmatched
    • Technical Writingunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Department of Defense (DoD)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder