02 Nov
Cloud Application Security Administrator - Active TS/SCI required
Type of Requisition: RegularClearance Level Must Currently Possess: Top Secret/SCIClearance Level Must Be Able to Obtain: Top Secret/SCISuitability: Agency Specific Public Trust/Other Required: NoneJob Family: CloudJob Description: Support a high profile Federal Government program, responsible for supporting application and cloud system security administration and sustainment and performing application and cloud system administration.As an Application Security Administrator you will maintain our customer's cloud applications across multiple cloud providers. This includes application sustainment, capacity, resiliency, and recovery activities.• Operate, sustain, and monitor the cloud application encryption solution, including:
- Account access
- Certificate expiration
- Encryption solution connections
- Data encryption methodology
- Encryption key rotation and lifecycle
- Encryption backups
- Deallocation of encryption material
- Interfacing with cloud service providers (CSPs) on system changes and incidents, such as client-specific configurations and customization, and bug fixes, that prevent clients from using a cloud service.
- Troubleshooting deployment processes and remediating hosting, performance, and maintenance tasks and issues
- Providing second and third tier support, to include after normal business hour planned and unplanned outages as well as problem resolution (off-hours initial response time must be no greater than one hour from contact)
- Tracking, reviewing, assessing, and coordinating SaaS/PaaS/IaaS software, firmware, and hardware updates, upgrades, and patches o Capturing, analyzing, and reporting on SaaS/PaaS/IaaS services performance metrics including, but not limited to, compute, storage, and license utilization
- Coordinating and communicating with impacted parties
- Ensure logs can be processed automatically by Government security tools o Develop secure solutions to threats to EOP clouds, vet solutions through the Government and implement them in a timely manner to protect government systems and data against newly identified or emerging threats
- Enable auditing and reporting to the enterprise SIEM tool
- Assist with auditing access and propose solutions to system components that are not ingestible by the SIEM, require manual monitoring, or are associated with ongoing investigations
- Manage cloud administration to ensure compliance with FedRAMP certification guidance and report changes to the customer. In performing these support services, you will:
- Work directly with the Government, vendors, and cloud providers to assist with FedRAMP certification
- Coordinate with information assurance / application security to ensure cloud applications / services obtain and maintain authority to operate (ATO) status
- BA/BS Degree in Information Technology, Cybersecurity, or a related field (6 years additional experience may be substituted for a degree)
- 4 to 7 years of related experience
- Experience performing cloud application administration • Experience administering cloud application authentication systems
- Excellent verbal and written communication skills
- DoD 8570 IAT III Certification or equivalent (e.g., CASP+ CE, CCNP-Security, CISA, CISSP (or associate), GCED, GCIH) and CSSP Analyst compliant (CISSP or CASP, and CEH) https://public.cyber.mil/cw/cwmp/dod-approved-8570-baseline-certifications
- Active TS/SCI clearance