Job Description
Job Description
Enterprise Solutions and Management (ESM) is a rapidly growing government contractor that provides strategic IT services that meet mission needs for Defense and Federal customers. We are hiring a CLOUD COMPUTING SPECIALIST (CCS)-SUBJECT MATTER EXPERT (SME) for an exciting opportunity located in Northern VA and Washington DC area.
Note : This is a Remote position that requires occasional on-site support to Ft. Belvoir and Washington DC.
Job Description and Responsibilities
Subject matter expert with regards to Certification and Accreditation (C&A) and a broad coverage of the application of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) standards and guidance as outlined in the NIST Special Publication(s) (SP) 800-53 and 800-37 (Current versions).
Required Knowledge, Skills and Abilities (KSA)
- Identifies, manages, and resolves cloud computing security risk and implements "best practices" as applied within a cloud environment (across all the different deployment and service models, and derivatives).
- Provides cloud computing expertise to analyze and design cloud hosting requirements in multiple cloud platforms, including Azure, Google, OCI and AWS.
- Collaborates with DLA technicians and vendors on hosting activities and troubleshoot deployment related issues.
- Provides subject matter expertise on cloud computing, native services, DISA enterprise cloud offerings (e.g., boundary cloud access point CAP), Secure Cloud Computing Architecture (SCCA)) and security architecture that must meet DoD / DISA policies, directives, and guidelines.
- Possess Cloud Security Requirements Guide knowledge to employ cloud security controls including but not limited to network security, tenant isolation, encryptions, key management, vulnerability assessments, application firewalls, and Zero Trust (ZT) considerations.
- Recommends cloud hosting solutions and innovations to streamline business processes.
- Develops deployment specifications / guides to include configurations, test plans, results and relevant cloud hosting documentation to support EH's operations.
Minimum Training, Education, and Certifications
Five (5) years of relevant C&A experience in cloud computing, with a proven track record of designing and managing complex cloud environments is required. Must have experience in deployment and migration of various workloads to cloud environments.Risk Management Framework (RMF) and NIST C&A, Zero Trust, SCCA FRD and SRG experienceExperience in assessing DoD Cybersecurity Controls and conducting C&A reviews for large, complex Information systems.Experience with modern and dynamic computing (e.g., hybrid computing, edge computing, cloud native microservices) and networking protocols or standard Internet of Things (IoT) protocols.Experience and well versed in FedRAMP assessment methodology of security and privacy controls deployed in cloud information systems to include six (6) domain areas which include : Architectural Concepts & Design Requirements, Cloud Data Security, Cloud Platform & Infrastructure Security, Cloud Application Security, Operations, Legal & Compliance.Expert in cloud technologies, native services and automation with emphasis in Azure, Google, OCI, and AWS.DoD Approved 8570 Baseline Certification at time of submission : Category IAT Level II (eg : CompTIA Security+, GIAC Security Essentials (GSEC), Systems Security Certified Practitioner (SSCP), Cisco Certified Network Associate Security (CCNA Security)Computing Environment : Requires at least one industry Cloud certification(s) :AWS Solutions Architect,
Azure Solutions Architect ExpertOracle Cloud Infrastructure Architect FoundationsOracle Cloud Infrastructure Security ProfessionalGoogle Cloud Platform Cloud ArchitectMinimum Clearance
Secret clearancePhysical Requirements
Ability to sit, stand, walk for extended periods of timeAbility to use a computerAdditional Requirements
Other duties as assignedESM provides equal employment opportunity to all individuals regardless of race, color, creed, religion, gender, age, sexual orientation, national origin or ancestry, disability, genetic information, veteran status, gender identification or any other characteristic protected by state, federal or local law.