
Cloud Engineer
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in United States.
• Provide support for a WordPress site hosted on AWS utilizing a Kubernetes CI/CD pipeline.
• Implement, maintain, and support all environments for web assets, including lower environments.
• Meet enterprise uptime, monitoring, and business continuity objectives.
• Manage a high-traffic WordPress production environment on AWS, capable of handling traffic spikes.
• Establish monitoring and operational procedures to ensure ongoing business continuity.
• Maintain, support, and troubleshoot developer, testing, and pre-production environments using Kubernetes/EKS and other AWS utilities.
• Collaborate with the AWS Architect, Product Owner, Scrum Master, engineers, and security engineers to define and create service offerings and future-release roadmaps.
• Participate in the coordination and implementation of AWS Cloud solutions.
• Develop proofs of concept and pilot projects.
• Create operational plans and documentation for AWS solutions.
• Build and implement cloud infrastructure as the primary point of contact for production support requests.
• Engineer and design solutions on AWS and other cloud platforms.
• Maintain risk logs and work with the ISSO and System Owner to manage risks effectively.
• Respond to Common Vulnerability Reports.
• Document system boundaries and implement technology-relevant controls with supporting evidence.
• Suggest strategies for security regulations, controls, and policy compliance.
• Install, configure, and test cloud services, third-party services, and software.
• Determine how to leverage cloud-provider services while addressing gaps with other tools, software, or third-party services.
• Evaluate system security controls, confirm implementation, and identify vulnerabilities.
• Conduct continuous monitoring utilizing security solutions and tools.
• Perform security impact assessments for proposed environmental modifications.
• Discover innovative methods to automate security management, monitoring, and related processes to reduce risks and costs.
• Must have the ability to obtain a Public Trust clearance.
• Experience with Kubernetes and understanding traffic patterns for a high-traffic website running a Content Management System is preferred.
• Familiarity with Amazon web infrastructure and services including Route53, CloudFormation, OpenSearch, Kinesis Firehose, Config, EKS, WAF, CloudFront, EC2 & EBS, RDS, ALB, Certificate Manager, S3, Secrets Manager, Virtual Private Cloud, Lambda, Inspector, Key Management Service, ElasticCache, SES, CloudShell, ECR, CloudWatch, SNS, GuardDuty, and CloudTrail.
• Proven experience managing and deploying pipeline solutions and containerized applications using tools such as Argo Workflows, ArgoCD, GitHub Actions, GitLab CI, Azure DevOps, Jenkins, and Bitbucket Pipelines.
• Experience in building and supporting Infrastructure as Code using tools like AWS CDK, ACK, CloudFormation, Terraform, Pulumi, Ansible, Salt, and Chef.
• Strong knowledge of PowerShell and the ability to create and comprehend logical scripts.
• In-depth understanding of IaaS, PaaS, and serverless services and how to integrate them into complex solutions.
• Ability to research, analyze, design, propose, and support solutions in alignment with business and technology strategies.
• Capability to design data, system, and component architectures and communicate them clearly to executive leadership.
• Experience with Agile methodologies, particularly TDD and Scrum; familiarity with Kanban is a plus.
• Knowledge of LEMP and LAMP stacks, WordPress installation and configuration, MySQL performance and scaling, ElasticPress, Elasticsearch, ELK stack, Git, and Bitbucket.
• Understanding of the DevOps lifecycle and process improvement strategies.
• Familiarity with Change and Configuration Management best practices.
• Bachelor's degree in computer science, information systems, cybersecurity, or a related IT or security field.
• Minimum of 5 years of professional experience in IT/network engineering, cloud, security engineering, system administration, or security operations.
• At least 7 years of experience in a security-related role with FISMA, FedRAMP, and NIST SP 800-53.
• Ability to articulate contributions related to application controls, technical leads, security findings, Common Vulnerability Reports, Security Impact Assessments, and Authorization-To-Operate support.
• Strong analytical capabilities along with excellent verbal and written communication skills.
• Experience with Okta and/or Keycloak application integrations.
• Knowledge of networking for web applications on AWS, Route53, and Certificate Manager.
• Experience in managing OpenSearch or Elasticsearch, including instance provisioning, dashboard design for public-traffic WAF data via Kinesis Firehose, and WordPress web search functionality.
• AWS, CISSP, CISM, CISA, CEH, CCSK, CCSP, or related security certifications are advantageous.
• Familiarity with vulnerability management, incident detection, event/audit collection and analysis, and network and web application firewalls.
• Relevant bachelor's degree or equivalent experience.
• Experience with Section 508 compliance and user experience.
• Familiarity with federal government system Certification and Accreditation for FISMA compliance with NIST 800-37.
• Experience with Security Test and Evaluation of federal government systems.
• FITSP Certification or equivalent is desirable.
• Knowledge of FISMA, OMB Circular A-130, and NIST regulations.
• Must be capable of working remotely and providing occasional infrequent production troubleshooting outside of standard hours.
• Medical, dental, and vision insurance.
• 401(k) retirement plan.
• Paid time off.
• Paid parental leave.
• Life and disability insurance.
• Flexible spending accounts.
• Commuter benefits.
• Tuition reimbursement.
• Remote work options.
LouisianaNOW.Jobs
Nuvei
Salve.Inno
Get handpicked remote jobs straight to your inbox weekly.