
Infrastructure & Security Engineer
Posted 7 hours ago

Posted 7 hours ago
This is a fully remote position, open to applicants in United States.
• Design, implement, manage, and enhance a secure, scalable, resilient, and supportable infrastructure across corporate and program environments.
• Oversee cloud services, servers, virtual machines, networks, firewalls, identity platforms, endpoints, VPN services, backups, collaboration platforms, and monitoring tools.
• Conduct provisioning, configuration, patching, upgrading, monitoring, troubleshooting, backup validation, capacity planning, and systems administration.
• Create scripts, automation, and repeatable processes for deployment, configuration, monitoring, evidence collection, and administration tasks.
• Keep system documentation, inventories, diagrams, configuration records, operating procedures, and IT service management processes up to date.
• Assist in disaster recovery, business continuity, and Continuity of Operations planning, documentation, testing, and corrective actions.
• Assess technologies and collaborate with vendors and service providers to enhance performance, security, reliability, service quality, and cost efficiency.
• Implement, maintain, evaluate, and document cybersecurity controls.
• Support RMF activities, including control implementation, assessment, authorization, and ongoing monitoring.
• Develop and maintain ATO packages, security plans, control implementation statements, diagrams, configuration evidence, POA&Ms, and related artifacts.
• Execute system hardening and oversee vulnerability identification, prioritization, remediation, validation, and reporting.
• Review scans, alerts, logs, and configuration findings; coordinate corrective actions and assist in incident investigation, containment, remediation, and lessons learned.
• Organize security assessments, penetration testing, tabletop exercises, internal audits, and customer or third-party reviews.
• Ensure secure handling of CUI, PII, and other sensitive information, including implementing Zero Trust, least privilege, MFA, IAM, endpoint security, and permission reviews.
• Evaluate technologies, system changes, and integrations for their security and compliance implications.
• Collect and analyze requirements and convert them into practical infrastructure and security solutions.
• Collaborate with software engineers and DevOps teams to integrate security into development, deployment, integration, and CI/CD processes.
• Communicate technical risks, constraints, recommendations, and alternatives to both technical and non-technical stakeholders.
• Perform other related tasks as required by organizational and program needs.
• Bachelor's degree in computer science, information technology, cybersecurity, engineering, or a related field.
• Equivalent combinations of education, certifications, training, and experience may also be considered.
• A minimum of seven years of progressively responsible experience in IT infrastructure, systems engineering, cloud administration, cybersecurity, or a closely related domain.
• Proven experience in designing, implementing, administering, and securing enterprise infrastructure.
• Hands-on experience with Microsoft Azure or Azure Government, Microsoft 365 and Entra ID, AWS or AWS GovCloud, virtualization, networking, endpoint management, backup, and monitoring technologies.
• Familiarity with implementing or assessing controls under NIST SP 800-53, NIST SP 800-171, RMF, CMMC, FedRAMP, FISMA, or similar federal cybersecurity standards.
• Experience in developing or maintaining ATO documentation, security control evidence, POA&Ms, and audit-ready technical documentation.
• Strong skills in troubleshooting, scripting or automation, communication, and stakeholder engagement.
• Comprehensive knowledge of enterprise infrastructure, cloud computing, systems administration, networking, IAM, endpoint management, vulnerability management, and cybersecurity fundamentals.
• Working knowledge of IaaS and PaaS services, logging and monitoring, storage, backup, virtualization, firewalls, switching, routing, VPN technologies, and endpoint security.
• Ability to produce clear, accurate, and audit-ready technical and cybersecurity documentation.
• Proficiency in PowerShell, Python, or similar scripting and automation technologies.
• Familiarity with infrastructure as code, configuration management, and DevSecOps methodologies.
• Capability to diagnose complex technical issues, identify root causes, implement sustainable solutions, and manage competing priorities independently.
• Excellent organizational, analytical, communication, technical writing, and documentation capabilities.
• United States citizenship is required.
• Current CompTIA Security+ (or higher) certification is required at the time of hire.
• Ability to obtain and maintain a government security clearance.
• Must satisfy applicable DoD 8140 qualification requirements.
• Willingness to support occasional maintenance, incident response, or system restoration activities outside of normal business hours.
• Preferred: experience with DoD ATO, Azure Government, AWS GovCloud, NIPRNet, Terraform, Bicep, CloudFormation, Ansible, security scanning, EDR, SIEM, cloud security posture management, automated compliance tools, CMMC assessments, NIST SP 800-171, CISSP, or Microsoft Certified Azure certifications.
• Competitive salary and performance-based bonuses.
• Comprehensive health, dental, and vision insurance.
• Retirement savings plan with company match.
• Generous paid time off and holiday schedule.
• Opportunities for professional development and training.
• Flexible work arrangements and remote work options.
OCHIN, Inc.
Dynanet Corporation
Fuze Health
LG Energy Solution Vertech, Inc.
Get handpicked remote jobs straight to your inbox weekly.