Cyber Cloud Assessment Engineer (Mid) jobs in United States
cer-icon
Apply on Employer Site
company-logo

AGE Solutions LLC · 10 hours ago

Cyber Cloud Assessment Engineer (Mid)

AGE Solutions is a premier technology and professional services company, providing consulting and advanced technology solutions throughout the U.S. government and defense sectors. They are seeking a Cyber Cloud Assessment Engineer to conduct cybersecurity assessments and validations for Cloud Service Offerings in support of the DoD Provisional Authorization process.

Cloud ComputingCyber SecurityInternet of Things
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the DoD Provisional Authorization (PA) process
Prepare 30 Cloud Security Assessment Packages per year, including validated cybersecurity controls, certifier’s recommendations, and residual risk statements
Review Cloud Service Provider (CSP) documentation packages, including architectural diagrams, System Security Plans (SSP) with Addendums, Readiness Assessment Reports (RAR), Security Assessment Plans (SAP), and Security Assessment Reports (SAR)
Evaluate supporting materials such as POA&Ms, Change Requests, Extension and Deviation Requests, Whitelist Requests, Corrective Action Plans, and applicable templates, checklists, and Continuous Monitoring (ConMon) artifacts
Attend technical kickoff meetings to evaluate and document the CSP’s security posture and readiness for assessment
Analyze and provide feedback on assessment documentation, including the RAR, SAP, SSP, and system architecture diagrams
Identify and document the operational impact of security authorizations, changes, or identified vulnerabilities within the CSP’s environment
Develop complete Cloud Security Assessment Packages in accordance with DoD standards, ensuring inclusion of SARs, POA&Ms, and Deviation Requests
Create authorization recommendation memorandums summarizing compliance with DoD cybersecurity controls, technical evaluation results, and residual risk considerations
Draft DoD PA memorandums outlining CSO boundary definitions, service offerings, authorization duration, terms and conditions, DoD usage considerations, and follow-on actions
Validate implementation of CSO controls within eMASS or a government-provided GRC platform, and log assessment completion in the Mission Security Review (MSR)
Review the Customer Responsibility Matrix (CRM) and ensure correct inheritance mapping within eMASS or the designated GRC tool
Enter all authorization conditions into eMASS as system-level POA&Ms and monitor for timely resolution
Upload and associate all CSP documentation with applicable security controls in eMASS or the appropriate system of record
Track and manage all CSO-related data using the Team Lead Resource (TLR) Assessment Database
Maintain and update the DoD Cloud Process Guide and associated templates, forms, checklists, and documentation
Contribute to the development of internal instructions, how-to guides, and reference material to support consistent assessor workflows
Ensure assessment activities are conducted in compliance with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG)
Document assessment methodologies and validation best practices to continuously improve assessment accuracy, consistency, and process efficiency
Support the ongoing development and annual updates of the DoD Cloud Assessment Process Guides in alignment with evolving policy and government directives

Qualification

DoD 8570 IAM/IA Technical certificationDoD Risk Management FrameworkNIST SP 800-53 controlsCloud security policiesEMASS proficiencySecurity documentation developmentAnalytical skillsTechnical writing skillsCommunication skills

Required

Five (5) years of overall experience in cybersecurity or network security position
Have an active DoD Top Secret clearance with SCI eligibility
DoD 8570 IAM/IA Technical (IAT) Level II certification
Working knowledge of DoD Risk Management Framework (RMF) and DoDI 8510.01
Familiarity with the DoD Cloud Computing Security Requirements Guide (SRG) and associated cloud security policies
Familiarity with security controls for Azure, AWS, and assorted cloud platforms
Experience conducting security assessments and developing security documentation (e.g., SSP, SAR, POA&M, SAP)
Proficiency with eMASS or equivalent Government Risk and Compliance (GRC) tools
Demonstrated ability to interpret and apply NIST SP 800-53 security controls in cloud environments
Strong analytical and technical writing skills with the ability to communicate complex topics clearly
Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full time

Preferred

Bachelor's degree (IT-related field preferred)

Benefits

26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
401(k) with Match: We match 3% of your contributions with immediate vesting.
Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
Parental Leave: 15 days of fully paid leave for new parents, because family matters.
Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving.
Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.

Company

AGE Solutions LLC

twittertwitter
company-logo
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Andy Gomer
Chief Executive Officer
linkedin
Company data provided by crunchbase