user avatar

Cloud Security Engineer

CACI

Today
Top Secret/SCI
Unspecified
Polygraph
IT - Hardware
Sterling, VA (On-Site/Office)

Cloud Security Engineer

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI with Polygraph

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Local

Anticipated Posting End: 9/12/2025

The Opportunity:

CACI/BITS is seeking a Cyber Security Engineer to support our Makalu contract. If you are interested and passionate about working as part of a modern, fast-paced agile software development team, then this opportunity is for you! On team Makalu, cloud security engineers are an integral part of the development team. Cyber security engineers are expected to be flexible and adaptive to supporting the needs of the program. Responsibilities include serving as information security specialist, reviewing all software, hardware, and infrastructure changes on the contracts, following the risk management framework process to support system accreditation, continuous monitoring, security mitigation; maintain security documentation, and other tasks as necessary. Additionally, candidate will be integral to development of new cyber monitoring, cyber hardening, and cyber response plan for large program with multiple applications. As an engineer on the program, candidate will be responsible for researching, designing, testing, and implementing cyber security features that meet new and demanding environments.

Duties include but are not limited to:
  • Using forensic tools for attack reconstructions, determine how to correct vulnerabilities.
  • Working with development teams to create, maintain, and monitor data connections, NPE security certificates, firewall connection requests.
  • Identify and design DevSecOps pipeline improvements to improve resiliency as our tools expand in an open internet environment.
  • Navigate Linux command line environment and AWS Command line interface to harden cloud environment.
  • Architect security infrastructure as needed to protect against cyber attacks. Providing enhanced security architectures, development tools, and information systems to facilitate secure missions.
  • Utilize scripting languages such as Python and BASH to build out and design additional automations into the security monitoring environment.
  • Capability based security analysis of system security architectures, identifies vulnerabilities, and implement mitigation alternatives.
  • Integrate into development teams to ensure that new development efforts are done with adequate security built into new processes such as authentication, authorization, and hardening of APIs.
  • Security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations.
  • Evaluates scan results and works with system developers and system administrators to eliminate or mitigate findings.
  • Generates certification and accreditation (C&A) documentation and artifacts (ie. System Security Plans, Network Interface Planning Documents, etc.) for import / upload to the SNOW tool.
  • Create Corrective Action Plans to guide developers on how to address any security vulnerabilities.


Required Qualifications:
  • An active TS/SCI clearance with CI Poly
  • Bachelor's degree in information systems, systems engineering, electrical engineering, information technology, or related field
  • 5+ years of relevant experience (or 7+ years without related degree)
  • Understanding of engineering in development and operational environment
  • Understanding of IA principle and organizational requirements
  • Experience with DOD/IC System Security control requirements
  • Understanding of information security systems engineering principles and IT security technologies (e.g. firewalls, encryption, proxies)
  • Deep understanding of cloud security technologies and standard network security tools including firewalls, encryption, PKIs, security groups, peering, API security.
  • Experience with security control testing and demonstration.
  • Certification and/or experience with Amazon Web Services
  • Familiarity with implementing configuration management tools (e.g., Ansible, Puppet, Chef) to enforce security policies.
  • Ability to integrate security requirements into the design and development of systems.
  • Experience working with system administrators, developers, and systems engineers to continually monitor and ensure system compliance.
  • Strong Communication skills
  • Familiarity with developing and maintaining system security documentation
  • Enthusiastic & energetic performer able to work in a dynamic, fast-paced, & high visibility environment
  • Self-motivated and capable of performing tasks with minimal oversight
  • Team player incorporating a team based success philosophy
  • Current Security+, CISSP, or equivalent DOD 85 I70AT 2/3 certification
  • Proficient with troubleshooting and implementation in a command-line Linux environment.

Desired Qualifications:

  • Hands-on experience with security technologies such as firewalls, intrusion detection/prevention systems (IDS/IPS), encryption technolo gies, cross domain solutions, and vulnerability management tools.
  • Experience with microservice architectures (Rancher, Kubernetes, etc.) and knowledgeable with setup, maintenance, and ongoing support for such environments
  • Strong understanding of IAM concepts and technologies, including role-based access control (RBAC), single sign-on (SSO), and multi-factor authentication (MFA).
  • Experience with configuration of IAM solutions such as Active Directory, LDAP, and cloud-based IAM services.
  • Experience with configuration of security information and event management (SIEM) systems, such as Splunk, ArcSight, or ELK stack.
  • Proficiency in network protocols and secure network design in AWS or similar cloud environments.
  • Familiarity with SNOW tool
  • Proficient in implementing/using security tools for penetration testing, vulnerability assessments, and security audits.
  • Knowledge or desire to learn Container Security, orchestration, continuous monitoring, auditing, etc.
  • Penetration testing and or Red/Blue assessment experience


-
________________________________________________________________________________________

What You Can Expect:

A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.

Your potential is limitless. So is ours.

Learn more about CACI here.

________________________________________________________________________________________

Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here .

Since this position can be worked in more than one location, the range shown is the national average for the position.

The proposed salary range for this position is:
$82,100-$172,400

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
group id: caci

CACI Careers – Make an Impact

job ad image
Find CACI on Social Media
Network Employers
user avatar
About Us
For more than 56 years, we have delivered innovation, expertise, and excellence in support of our customers’ vital national missions to defeat global terrorism, secure the homeland, and improve government services. Through our long-standing customer relationships across the federal marketplace, we have become a trusted provider of high-value solutions and services for our nation’s highest priorities. CACI’s employees – some 65 percent of whom hold security clearances – stand ready to provide the exceptional service, dedication, and innovation our customers require. Our leading-edge solutions and services counter national security threats; keep America’s armed forces equipped and mission-ready; secure vital data and IT infrastructures; support and protect space operations; and help customers modernize and transform how the government does business.
job ad2 image

CACI Jobs


Job Category
IT - Hardware
Clearance Level
Top Secret/SCI
Employer
CACI