Cloud Security Tech Support
Columbia, IN - USA
Job Summary
Job Description
The Federal Aviation Administration (FAA) is seeking a highly skilled Technology Specialist to serve as a Cloud Security Tech Support. The candidate will support FAA development tenants with the integration deployment monitoring and maintenance of cloud environments ensuring operational efficiency system reliability and compliance with FAA standards.
This role will focus on securing and supporting FAA cloud environments while also ensuring proper network security firewall configuration and perimeter defense. The specialist will work closely with engineering operations and cybersecurity teams to maintain secure compliant and highly available IT systems.
Job Duties & Responsibilities - Essential Job Functions may include but are not limited to the following
- Develop deploy and maintain secure cloud-native applications and infrastructure within FAA-approved cloud environments (AWS Azure and hybrid cloud environments).
- Implement and maintain security hardening baselines for cloud resources including EC2 instances container platforms storage services virtual networks databases and serverless services in accordance with FAA security standards NIST 800-53 CIS Benchmarks DISA STIGs (where applicable) and FedRAMP requirements.
- Configure monitor and optimize AWS Security Hub AWS GuardDuty AWS Inspector AWS Config AWS CloudTrail AWS IAM Access Analyzer and similar native cloud security services to continuously identify and remediate security findings.
- Develop automated remediation workflows for cloud security findings using AWS Lambda Systems Manager Automation EventBridge PowerShell Python or similar automation technologies.
- Implement Infrastructure as Code (IaC) using Terraform AWS CloudFormation or Azure Bicep while incorporating secure-by-default configurations.
- Integrate security scanning and compliance validation into CI/CD pipelines using DevSecOps principles.
- Perform cloud infrastructure vulnerability assessments and coordinate remediation of operating system middleware application and cloud configuration vulnerabilities.
- Implement and maintain Identity and Access Management (IAM) policies role-based access control (RBAC) least privilege access multi-factor authentication (MFA) and privileged access controls.
- Configure encryption for data at rest and in transit using AWS KMS Azure Key Vault TLS certificates and enterprise key management solutions.
- Support implementation of Zero Trust security principles within cloud environments.
- Monitor cloud environments for security events misconfigurations unauthorized access attempts and compliance violations.
- Analyze AWS Security Hub findings and develop corrective actions to improve overall cloud security posture.
- Support Authority to Operate (ATO) Continuous Monitoring (ConMon) and security assessment activities.
- Develop scripts and automation using Python PowerShell or Bash to improve security operations and cloud administration.
- Participate in incident response activities involving cloud infrastructure and applications.
- Document security architectures standard operating procedures technical implementation guides and security configuration standards.
- Collaborate with Cloud Engineers ISSOs Security Engineers Developers and Enterprise Architects to implement secure cloud solutions.
Qualifications:
- Three (3) or more years of experience supporting cloud engineering cloud security DevSecOps or cybersecurity engineering.
- Experience securing AWS or Azure cloud environments.
- Experience with cloud security hardening and implementation of CIS Benchmarks STIGs or NIST security controls.
- Experience configuring and administering AWS Security Hub GuardDuty Inspector CloudTrail Config IAM Security Groups Network ACLs and KMS.
- Experience implementing Infrastructure as Code using Terraform or CloudFormation.
- Experience integrating security testing into CI/CD pipelines.
- Knowledge of vulnerability management and remediation processes.
- Experience with Linux and Windows server hardening.
- Familiarity with endpoint security vulnerability scanning and configuration management.
- Working knowledge of container security (Docker Kubernetes OpenShift or ECS/EKS).
- Understanding of networking concepts including VPCs subnets firewalls VPNs routing DNS and load balancers.
- Knowledge of secure application development practices and the OWASP Top 10.
- Strong scripting experience using Python PowerShell or Bash.
- Excellent analytical troubleshooting and communication skills.
- Bachelors degree in Computer Science Cybersecurity Information Systems Software Engineering or related field or equivalent experience.
Work Requirements:
- Work location: Remote
- Work Hours: 40
- Travel: 20%
- Extended Computer Use: Regular and prolonged periods of working at a computer terminal.
Lifting and Carrying: Occasional lifting of equipment and materials weighing up to 50 pounds may be required during installations or
maintenance.
- Dexterity: Manual dexterity and visual acuity to operate computer equipment troubleshoot issues and perform tasks requiring precision.
Sitting/Standing: Both prolonged sitting and occasional standing may be required for troubleshooting and attending to system issues.
Background check: Must have ability to obtain and maintain a Public Trust.
About LS Technologies
At LS Technologies a Tetra Tech Company were enhancing our nations critical infrastructure by providing engineering technical and professional services to Federal Government agencies. The quality of our work deep technical expertise and genuine passion for public service sets us apart. As a growing organization we are expanding our benefits and communication with our employees offering add-ons that speak to our growing employees needs. Join us in delivering high-quality solutions and shaping the future of safety and innovation for our government 2024 we joined Tetra Tech enabling us to combine our expertise with the reach and resources of a prestigious global organization.
EEO Commitment
LS Technologies a Tetra Tech Company is proud to be an Equal Opportunity Employer. All qualified candidates will be considered without regard to race color religion national origin age disability sex marital or familial status status as a protected veteran or any other characteristic protected by law. Tetra Tech is a VEVRAA federal contractor and we request priority referral of veterans.
We invite applications from all interested parties.
Requesting an Accommodation
LS Technologies is committed to providing equal employment opportunities for persons with disabilities or religious observances including reasonable accommodation when needed. If you are hired by LS Technologies and require accommodation to perform the essential functions of your role you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.
If you would like to be considered for employment opportunities with LS Technologies and have accommodation needs for a disability or religious observance please send us an email or speak with your recruiter.
Compensation (Pay Bands)
Salary at LST is determined by a wide array of factors such as (but not limited to) education certifications knowledge skills competencies and experience location and clearance level as well as contract-specific affordability and organizational requirements and applicable employment laws. Please note that the salary information is a general guideline only.
The projected compensation range for this position is provided within the posting and is based on full-time 40 hour/week status. Part-time staff receive compensation at an hourly rate. The estimated minimum and maximum displayed represents the broadest range for this position (inclusive of high geographic and high clearance requirements) and is just one component of LSTs total compensation package for employees. ** In compliance with local laws LS Technologies presents this reasonable compensation range as a guideline for roles in California Colorado New York or Washington D.C.
Benefits offered to all employees who work 30 hours per week: Medical Dental Vision Life Insurance Short-Term Disability Long-Term Disability 401(k) match Flexible Spending Accounts EAP Education Assistance Parental Leave Annual Leave and Holidays.
Life at Tetra Tech:
- The perks of working at Tetra Tech include:
- Comprehensive and market-competitive benefits.
- Merit-based financial rewards.
- Flexibility and company-wide commitment to work/life balance.
- Collaborative team atmosphere that values the contributions of all employees.
- Learning and development opportunities for ongoing professional growth.
About Tetra Tech:
Tetra Tech is the leader in water environment and sustainable infrastructure providing high-end consulting and engineering services for projects worldwide. With 30000 employees working together Tetra Tech provides clear solutions to complex problems by Leading with Science to address the entire water cycle protect and restore the environment design sustainable and resilient infrastructure and support the clean energy transition.
Explore our open positions at Follow us on social media to learn more about our people culture and opportunities:
LinkedIn: TetraTechCareers; X (Twitter): @TetraTechJobs
About Company
Tetra Tech is a leading provider of consulting and engineering services worldwide. We are a diverse company, including individuals with expertise in science, research, engineering, construction, and information technology