Cloud Engineer

$130,000 - $165,000/Yr

Cdd Spa - Colorado Springs, CO

posted 6 months ago

Full-time - Mid Level
Colorado Springs, CO
Food Services and Drinking Places

About the position

As a Cloud Engineer at SPA, you will be assigned to support the Space Systems Command Program Office in developing software solutions that perform cyber operations to defend the US Space Force's mission systems. This role requires a deep understanding of cloud engineering principles and practices, particularly in the context of secure software development and deployment. You will utilize the Scaled Agile Framework (SAFe) to implement a DevSecOps approach, enabling the rapid development and shipment of software solutions designed to protect, defend, and respond to both ground- and space-based cyber adversarial threats. Your responsibilities will include understanding and applying best practices and standards for secure software development as set forth by the Defense Information Systems Agency (DISA), Security Technical Implementation Guides (STIGs), and the Open Worldwide Application Security Project (OWASP) Top 10 policies and procedures. In this position, you will be expected to design, develop, test, integrate, and deploy software in accordance with the concepts and techniques defined by the 12 Factor App development practices, cloud-native principles, and the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF). You will serve as the primary cloud service administrator, managing all cloud services and environments while implementing Infrastructure-as-Code (IaC) practices to enable the cloud's API-driven model. Your role will also involve performing artifact ingestion for storage, retrieval, analysis, and display, as well as supporting capabilities development and fielding within a Gov-cloud AWS-hosted environment. Additionally, you will be responsible for patch management for existing Amazon Machine Instances (AMI), advising on the expansion of the organization's use of cloud services, and developing the organization's cloud strategy and plans. You will research and analyze various Cloud Service Provider (CSP) capabilities to provide recommendations for a uniform, scalable, and consistent solution that meets defined cloud strategy objectives. Your work will contribute to managing enterprise cloud business solutions to achieve lower total cost of ownership and drive more cost-effective and efficient operations. You will also develop and maintain best practices, frameworks, and cloud-related documentation, providing recommendations on policy changes to accommodate cloud-native tools and features in support of Zero Trust Architecture enhancements.

Responsibilities

  • Prepare and participate in Agile and/or DevSecOps ceremonies.
  • Serve as the primary cloud service administrator, managing all cloud services and environments and encompassing best practices.
  • Implement Infrastructure-as-Code (IaC) practices and techniques to enable the cloud's API-driven model.
  • Perform artifact ingestion for storage, retrieval, analysis, and display.
  • Support capabilities development and fielding within Gov-cloud AWS-hosted environment and cloud support services.
  • Perform patch management for existing Amazon Machine Instances (AMI) and provide quarterly updates to AMI templates, including the latest patches and STIGs for Windows and Linux instances.
  • Advise and expand the organization's use of cloud services including new features, functions, baselines, and new cloud environments (e.g., MS Azure, AWS).
  • Develop and provide services within the Virtual Private Cloud (VPC) to extend on-premises services.
  • Develop the organization's cloud strategy and plans.
  • Research and analyze various Cloud Service Provider (CSP) capabilities to provide recommendations for a uniform, scalable, and consistent solution that meets defined cloud strategy objectives.
  • Manage enterprise cloud business solutions to achieve lower total cost of ownership and drive more cost-effective and efficient operations.
  • Provide cross-environment automation, orchestration, monitoring, and operations management capabilities.
  • Develop and maintain best practices, frameworks, and cloud-related documentation.
  • Provide recommendations on policy changes to accommodate cloud-native tools and features in support of Zero Trust Architecture enhancements.
  • Perform analysis, recommendations, and development activities in support of cloud migrations.
  • Support the activities with the integration and configuration teams to ensure the automatic build and deployment process works effectively across all environments.

Requirements

  • Minimum 7 years of professional experience performing cloud engineering.
  • Bachelor's degree in computer science or relevant STEM from an accredited institution.
  • Certified IAT Level II.
  • At least one or more of the following certifications: CCNA, CCDE, AWS Practitioner, AWS Solutions Architect, AWS Security, AWS SysOps Admin, AWS DevOps Engineer, AWS Advanced Networking, or equivalent.
  • US Citizen with a current Top Secret Clearance.
  • Experience administering, configuring, and maintaining cloud operations and services in AWS, Azure, or GPC.
  • Experience implementing Infrastructure as Code.
  • Proficiency with scripting languages to introduce automation that enhances cloud infrastructure provisioning and management.
  • Experience configuring monitoring and logging solutions.
  • Deep understanding of how to implement cloud security controls and best practices.
  • Experience designing and implementing scalable and highly available cloud architectures.
  • Experience optimizing cloud resources.
  • Proficiency with tools/technologies such as Python, Terraform, AWS CloudFormation, Azure Resource Manager, Prometheus, Grafana, Bicep, Kafka, Keycloak, Active Directory.

Benefits

  • Health insurance
  • Flexible spending accounts
  • Health savings accounts
  • Retirement savings plans
  • Life and disability insurance programs
  • Paid and unpaid time away from work
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service