Cybersecurity and Cloud Automation Engineer
Job Description
At Leidos, the Cybersecurity and Cloud Automation Engineer role sits at the intersection of cloud security and rapid automation. This remote position concentrates on securing and modernizing large-scale multi-cloud environments to support USAF missions, with a focus on AWS while coordinating across Azure, Google Cloud, and Oracle Cloud. You will help design secure cloud solutions and build automated pipelines that provision, configure, and monitor critical workloads in a DevSecOps setting.
Overview
Location: Remote. Compensation: USD 107,900 to 195,050 per year. Experience: 8 years of applicable work required, with additional years of cloud and cybersecurity engineering eligible in lieu of a degree. Education: Bachelor’s degree in a technical field, with equivalent experience considered.
Responsibilities
- Performs a dual focus on securing and automating AWS environments using infrastructure as code, configuration as code, and Security-as-Code techniques.
- Collaborates within DevSecOps teams to design secure cloud architectures and to automate provisioning, configuration, and monitoring pipelines.
- Implements and maintains security controls for AWS services aligned with NIST, FISMA, and DISA STIG requirements.
- Configures secure logging, monitoring, and telemetry across cloud workloads, including CloudTrail, CloudWatch, and SIEM integrations.
- Conducts vulnerability scanning and assessments, coordinating remediation across cloud hosts, containers, and services.
- Contributes to security architecture reviews and change/configuration boards to ensure secure designs and deployments.
- Develops, maintains, and version-controls IaC modules (for example Terraform, CloudFormation) covering networking, compute, storage, IAM, and security resources.
- Utilizes configuration as code tools (such as Ansible or Puppet) to automate OS, middleware, and application hardening and configuration.
- Builds and sustains CI/CD pipelines that integrate IaC, CaC, and security checks for automated build, test, and deployment processes.
- Creates and maintains hardened, STIG/CIS-aligned golden images and reusable templates for repeatable secure deployments.
- Encodes security baselines, IAM policies, network segmentation, and encryption standards into IaC, CaC, and pipeline code (Security-as-Code).
- Incorporates automated security and compliance testing (SAST/DAST, dependency scanning, policy-as-code) into pipelines to enforce controls before release.
- Supports continuous monitoring and ATO/continuous authorization by maintaining evidence, automated checks, and audit-ready documentation.
- Assists with day-to-day operations of multi-environment AWS landscapes (dev/test/stage/prod/DR), including health and performance monitoring.
- Troubleshoots issues across networking, access, and application deployment; contributes to incident and problem management and root-cause analysis.
- Implements identity- and context-aware access controls, MFA, and policy-based access in line with Zero Trust principles.
- Collaborates with developers, cloud engineers, security analysts, and operations staff to design secure, automated solutions.
- Contributes to technical documentation, including architecture diagrams, IaC/CaC module references, SOPs, and runbooks.
- Shares best practices in secure cloud engineering and automation with teammates, providing informal knowledge transfer and peer support.
Requirements
- Bachelor’s degree in a technical field with 8 years of applicable experience; additional years of cloud and cybersecurity engineering experience may substitute for the degree.
- Hands-on experience with AWS cloud services and DevSecOps practices in production environments.
- Practical experience with IaC/CaC tools (eg, Terraform, CloudFormation) and Ansible or Puppet, plus CI/CD pipelines.
- Experience applying NIST, FISMA, and STIG/CIS controls in cloud environments and supporting ATO or accreditation activities.
- Strong written and verbal communication skills and ability to work effectively in cross-functional teams.
Technologies
- AWS, Terraform, CloudFormation, Ansible, Puppet, CloudTrail, CloudWatch
Benefits
- Health and Wellness programs
- Income Protection
- Paid Leave
- Retirement