Cloud Security Engineer, AWS GovCloud

Apex - Los Angeles, CA

Hiring: Cloud Security Engineer, AWS GovCloud Company: Apex Location: Los Angeles, CA Job Posted Time: 2026-09-16 16:17:00 Employment Type: Full-time / Hybrid Target Skills & Keywords : AWS, Apex, Azure, CI/CD, CloudFormation, Configuration Management, Encryption, FedRAMP, GCP, GDPR, IAM, IaC, Kubernetes, Penetration Testing, PowerShell, Python, RBAC, SIEM, Terraform, Zero Trust About the job Experience: •5+ years equivalent professional experience in cloud security engineering) •9+ years in cloud security engineering, with hands-on work in AWS GovCloud, Azure, Google GCP, or multi-cloud environments. Required Skills: •We are seeking a Cloud Security Engineer, AWS GovCloud to design, implement, maintain, and optimize secure cloud environments supporting U.S. government, DoD, and intelligence community missions. •This role plays a critical part in protecting classified and sensitive data in AWS, Azure, and hybrid/multi-cloud infrastructures while ensuring full compliance with federal standards such as NIST 800-53, FedRAMP, RMF, and DoD Impact Levels (IL-4/IL-5). •The right candidate will bring hands-on experience securing cloud platforms in regulated environments. This role will help the organization meet industry standards such as SOC2, ISO 27001, PCI-DSS, GDPR/CCPA, or other relevant compliance frameworks. •Design and implement secure cloud architectures and configurations across AWS GovCloud, Azure, and/or Google Cloud, applying best practices for least privilege encryption, network segmentation, and data protection. •Implement and maintain cloud security frameworks, ensuring ongoing compliance with NIST 800-53 Rev. 5, FedRAMP, DoD IL-2/4/5, RMF, and Secure Cloud Computing Architecture (SCCA) requirements. •Configure and manage Identity and Access Management (IAM), Role-Based Access Control (RBAC), Just-In-Time (JIT) access, Key Vaults, and Zero Trust Architecture (ZTA) principles across cloud environments. •Engineer, deploy, and optimize cloud-native security tools, including Microsoft Defender for Cloud, Azure Sentinel, AWS GovCloud security services, CSPM/CWPP solutions, and SIEM (Elastic) platforms for threat detection, monitoring, and response. •Conduct vulnerability assessments, penetration testing simulations, security configuration reviews (against STIGs, CIS benchmarks, and NIST controls), and continuous monitoring of cloud resources. Qualifications: •Must be a U.S. citizen. •Strong analytical, problem-solving, communication, and collaboration skills; ability to work in fast-paced, mission-critical environments. Compensation: •$150,000 - $200,000 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!