Cloud Infrastructure Engineer (Zero Trust Focus)
Arlington, TX - USA
Job Summary
Nakupuna Companies is seeking an experienced and hands-on Cloud Infrastructure Engineer to help design build and operate our customers enterprise cloud environments with a focus on Zero Trust principles. This engineer will be a key technical contributor responsible for implementing and managing cloud infrastructure strengthening security and driving automation within DoD-authorized cloud environments. This position is ideal for a proactive engineer who excels at building and securing cloud solutions can independently troubleshoot complex issues and can contribute to the strategic direction of the cloud platform.
The following reflects managements definition of essential functions for this job but does not restrict the tasks that may be assigned.
- Design implement and maintain secure and scalable cloud infrastructure using Infrastructure as Code (IaC) tools such as Terraform AWS CDK or Bicep.
- Apply Zero Trust principles by implementing robust identity and access controls network segmentation and continuous monitoring across the cloud environment.
- Implement and manage advanced cloud networking services including VPCs transit gateways private endpoints and hybrid connectivity.
- Build and operate containerized workloads using services like Amazon EKS or Azure Kubernetes Service including the implementation of container security best practices.
- Develop and maintain automation scripts (e.g. using Python or PowerShell) to improve operational efficiency security compliance and infrastructure management.
- Contribute to the cloud governance framework by implementing and monitoring security policies compliance controls and cost management guardrails.
- Serve as a technical escalation point for complex infrastructure networking and security issues providing expert-level troubleshooting and resolution.
- Integrate security and compliance controls into CI/CD pipelines supporting DevSecOps practices and enabling automated secure deployments.
- Evaluate and recommend new cloud services and technologies to improve security posture operational effectiveness and performance.
- Collaborate with architects and stakeholders to contribute to the cloud technology roadmap and translate architectural designs into functional implementations.
Skills/Qualifications:
- Strong hands-on experience deploying administering and troubleshooting solutions within a major commercial cloud platform (AWS or Microsoft Azure).
- Proficient in core cloud infrastructure concepts including compute storage networking IAM and security.
- Demonstrated experience implementing cloud security and Zero Trust principles including IAM/RBAC least-privilege access secrets management and segmentation.
- Hands-on experience with Infrastructure as Code (IaC) and scripting using technologies such as Terraform Python or PowerShell.
- Experience deploying or managing containerized applications using Kubernetes Docker or similar technologies.
- Familiarity with DevSecOps practices CI/CD pipelines and integrating security into engineering workflows.
- Proven ability to troubleshoot complex issues across cloud infrastructure networking and security layers.
- Experience with AWS GovCloud Azure Government or supporting DoD environments is highly preferred.
Education/Experience:
- Bachelors degree in a STEM field from an accredited institution or equivalent combination of education and professional experience.
- Minimum of five (5) years of relevant professional IT experience including at least four (4) years of hands-on experience supporting cloud infrastructure cloud engineering or a closely related technical discipline.
- Experience supporting DoD or other Federal IT environments is preferred.
Certification:
- Required:
- Active certification satisfying DoD Information Assurance Technical (IAT) Level II requirements such as CompTIA Security.
- Preferred:
- An associate or professional-level cloud certification from a major cloud service provider (e.g. AWS Certified Solutions Architect Microsoft Certified: Azure Administrator Associate).
Clearance Requirements: Must currently have at least a Secret level security clearance (if located in HI) or Top Secret (if located in Virginia). Must be a U.S. citizen.
Work Location:
- Position is based in Arlington VA or Honolulu HI.
- Preferred: on-site four (4) days per week. Will consider fewer days on-site for the correct candidate.
- Occasional travel (approximately 1-2 weeks per year) within the Continental U.S. or to Hawaii may be required.
- Occasional work outside normal business hours may be required to support planned maintenance deployments upgrades or incident-response activities.
Physical Requirements: The ideal candidate must at a minimum be able to meet the following physical requirements of the job with or without reasonable accommodation:
- Ability to perform repetitive motions with the hands wrists and fingers.
- Ability to engage in and follow audible communications in emergency situations.
- Ability to sit for prolonged periods at a desk and working on a computer.
The Nakupuna Companies use a market-based compensation strategy to ensure that our employees are compensated within applicable market ranges commensurate with multiple factors including but not limited to the individuals particular combination of education knowledge skills competencies and experience as well as contract-specific affordability organizational requirements and position location. The projected compensation range for this position is $130000.00 to $160000.00 (annualized USD). The salary range displayed represents the typical salary range for this position and is just one component of Nakupuna Companies total compensation package for employees.
Required Experience:
IC
About Company
The Nakupuna Companies are a Native Hawaiian Organization (NHO)–owned family of companies comprising large and 8(a) small disadvantaged businesses dedicated