Description
Contingent Upon Contract Award
Remote with occasional on-site support
Connected Logistics is seeking a Mid-Level Cloud Security Engineer to support the Cybersecurity Architecture and Engineering Services supporting the Department of Veterans Affairs (VA) Office of Information Security (OIS) Cybersecurity Operations Systems Engineering (COSE) program.
The Mid-Level Cloud Security Engineer serves as a Cybersecurity Information Security Analyst responsible for protecting sensitive information and supporting incident response activities across enterprise and cloud environments. The role focuses on the identification, containment, eradication, and recovery of cybersecurity incidents involving Personally Identifiable Information (PII) and PII-related data breaches. The Cloud Security Engineer applies Data Loss Prevention (DLP) capabilities to identify improperly stored or transmitted PII, supports the quarantine and remediation of exposed information, and recommends appropriate actions to reduce the risk of unauthorized access. The engineer works closely with technical stakeholders and mission partners to coordinate incident response activities, validate corrective actions, and maintain compliance information security and privacy requirements.
Key Responsibilities
- Perform cybersecurity incident response activities involving PII incidents and PII-related data breaches, including identification, containment, eradication, recovery, and validation of corrective actions.
- Utilize Data Loss Prevention (DLP) tools and security technologies to identify PII that is improperly stored, handled, or transmitted.
- Identify and investigate potential exposure of PII data at rest and data in transit.
- Perform or coordinate the quarantine of improperly stored PII to prevent unauthorized access, disclosure, or further distribution.
- Analyze security incidents and recommend appropriate technical and procedural actions to mitigate risks associated with unauthorized access to sensitive information.
- Support the implementation and validation of appropriate security controls designed to safeguard PII and other sensitive information.
- Engage with system owners, cybersecurity teams, privacy personnel, technical stakeholders, and mission partners to facilitate the containment, eradication, remediation, and recovery of PII-related incidents.
- Track remediation efforts and validate that corrective actions effectively address identified security and privacy risks.
- Ensure incident response and remediation activities comply with applicable iformation security and privacy policies.
- Support the assessment of security events and potential data breaches to determine scope, affected information, and required remediation activities.
- Document incident findings, remediation activities, security recommendations, and validation results to support compliance and operational reporting.
- Collaborate with cloud, infrastructure, application, and cybersecurity teams to integrate appropriate data protection and information security controls into supported environments.
Requirements
- Public Trust: T4 or T5 (TS)
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Information Systems, or a related technical discipline or an Associate's degree in the above discipline with an additional 2 years of experience.
- Minimum of 5 years of relevant professional experience in cybersecurity, security engineering, security architecture, information technology, or a closely related field.
- Demonstrated experience analyzing and defining security requirements for complex IT systems or applications.
- Experience evaluating security technologies and incorporating security capabilities into technical solutions.
- Experience designing, engineering, or implementing cybersecurity solutions.
- Experience performing cybersecurity risk analysis and risk assessments.
- Ability to analyze technical, mission, and security requirements and translate those requirements into implementable security solutions.
- Ability to communicate complex cybersecurity concepts and technical recommendations to engineering teams, technical leadership, and other stakeholders.
- Experience providing technical direction, oversight, or supervision to technical personnel.
Preferred Qualifications:
- Experience designing and securing cloud-based, hybrid-cloud, or enterprise IT environments.
- Knowledge of cloud security architecture, security engineering principles, and security control implementation.
- Experience integrating cybersecurity capabilities into cloud platforms, applications, infrastructure, and DevSecOps environments.
- Experience supporting complex security architectures, including multilevel security (MLS) environments or systems with multiple security classifications or access requirements.
- Familiarity with identity and access management, data protection, encryption, network security, application security, logging, monitoring, vulnerability management, and security automation.
- Experience assessing security architectures and recommending technical controls or mitigation strategies to reduce identified risks.
- Experience working across cybersecurity, cloud engineering, application development, infrastructure, DevSecOps, and enterprise architecture teams.
- Experience producing cybersecurity architecture documentation, security engineering artifacts, risk assessments, technical analyses, and implementation recommendations.
- Strong technical leadership, mentoring, problem-solving, and written and verbal communication skills.
Total Rewards Statement
We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $120,000.00-$130,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.
Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!
Connected Logistics respects the need for confidentiality for all applicants.
Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.
Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.
EOE/Disability/Veterans