CACI International - Liberty, NC

posted 3 months ago

Full-time - Entry Level
Liberty, NC
Professional, Scientific, and Technical Services

About the position

The Information Security Engineer (Cloud) position at CACI is a full-time role based in Fort Liberty, NC, requiring a minimum TS/SCI clearance. This role is pivotal in ensuring the security and integrity of cloud environments, particularly focusing on automation technologies such as Infrastructure as a Service (IaaS) built with Terraform. The engineer will work with various cloud services and tools, including AWS, Kubernetes, and security monitoring solutions, to enhance the security posture of cloud deployments. The position demands a strong understanding of cloud concepts, particularly how DevSecOps integrates into pipeline workflows for application deployment. The engineer will be responsible for integrating logs into a Security Information and Event Management (SIEM) system, addressing control enhancements based on cloud deployment, and utilizing various security tools to monitor and secure cloud environments. This includes experience with AWS Cloud Trail, CloudWatch, and other logging mechanisms, as well as the ability to implement security controls in accordance with NIST standards and DoD Information Assurance requirements. The role also involves assessing the effectiveness of security controls and ensuring compliance with established security protocols. Candidates should possess a minimum IAM Level 1 Certificate and have at least one year of experience in Information Assurance as a Cybersecurity Analyst within cloud environments. The ideal candidate will also have experience with eMASS or XACTA and a solid understanding of security compliance solutions. CACI emphasizes a culture of integrity, trust, and continuous growth, providing employees with the flexibility to balance work and personal life while contributing to national security missions.

Responsibilities

  • Utilize AWS Cloud Trail, CloudWatch, VPC Flow Logs, S3 Access logs, and Syslogs for monitoring and security purposes.
  • Integrate logs into a SIEM system such as Splunk or ElasticSearch for monitoring and compliance.
  • Address control enhancements based on cloud deployment via the POA&M process.
  • Utilize monitoring, vulnerability, or security tools like GuardDuty, Trusted Advisor, Security Hub, Sentinel, Qualys, and Tanium.
  • Secure and harden operating systems, applications, and containers using cloud-native services or third-party applications/services.
  • Understand and implement DevSecOps practices within pipeline workflows for application deployment.

Requirements

  • Minimum IAM Level 1 Certificate for view-access of cloud environment.
  • 1+ years of experience with Information Assurance as a Subject Matter Expert (SME).
  • 1+ years as an Information Assurance SME as a Cybersecurity Analyst within cloud environments.
  • 1+ years of experience with eMASS and/or XACTA.
  • Experience implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels.
  • Experience developing security-compliant solutions in accordance with DoD IA standards.
  • Experience in assessing the effectiveness of security controls and response.

Nice-to-haves

  • Preferred IAM Level 2 Certificate for control actions within cloud environment.
  • ACAS or ESS certification.
  • CSP foundation or security-based certification.

Benefits

  • Comprehensive healthcare benefits.
  • Wellness programs.
  • Financial and retirement support.
  • Family support benefits.
  • Continuing education opportunities.
  • Flexible time off benefits.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service