Cloud EngineerLeidos
Description
The Leidos Intelligence Group has an opening for senior Cloud Engineer in Reston, Virginia. The successful candidate will work as a member of a government contractor team managing and securing mission critical infrastructure. You will work in a hybrid environment, bridging the gap between unclassified and classified enclaves, while ensuring compliance with federal mandates. You will act as a key technical resource, driving automation, cloud-native modernization, and secure operations across isolated cloud boundaries. Work will be performed in a fast-paced, high-energy environment inside a government facility.
Primary Responsibility
Cloud Architecture & Engineering:
- Architect, design, and deploy secure, scalable, and highly available solutions (AWS GovCloud, Azure, etc) tailored for unclassified and classified environments.
- Ensure seamless hybrid connectivity and secure data replication between unclassified and classified networks/enclaves.
- Provision and maintain Infrastructure as Code (IaC) using tools such as Terraform or AWS CloudFormation.
- Configure and troubleshoot VPCs/VNets, subnets, routing, security groups, network ACLs, load balancers, DNS, firewalls, VPNs, AWS Transit Gateway, Direct Connect, and Azure ExpressRoute.
- Implement secure network segmentation, private connectivity, traffic inspection, and connectivity between cloud, on-premises, and classified environments.
- Deploy, manage, and troubleshoot containerized workloads and Kubernetes platforms such as Amazon EKS or Azure Kubernetes Service (AKS).
Security & Compliance:
- Implement strict security controls to align with DoD RMF, NIST SP 800-53, and CIS/STIG hardening guidelines across all on-premises and cloud resources.
- Manage Identity and Access Management (IAM), multi-factor authentication (MFA), and secure key management.
- Audit and validate air-gapped or classified cloud environments to ensure they strictly adhere to federal data-at-rest and data-in-transit encryption standards.
- Manage network policies, container image scans, and access logs.
- Implement encryption, private networking, logging, monitoring, and data-protection controls for Amazon workloads in regulated environments.
Operations & Deployment:
- Maintain CI/CD pipelines (e.g., GitLab, GitHub Actions) for smooth, automated, and audited deployments.
- Monitor cloud system performance, availability, and reliability, proactively resolving infrastructure defects and bottlenecks.
- Troubleshoot complex, interconnected cloud stacks, performing root-cause analysis when operational issues occur.
- Support Kubernetes deployments, scaling, upgrades, patching, logging, monitoring, and application troubleshooting.
On-Premises & Air-Gapped Environment Support:
- Administer and support on-premises users, servers, virtual machines, storage, and core infrastructure operating within secure air-gapped environments.
- Manage user accounts, permissions, authentication, group policies, and access controls across Windows and Linux systems.
- Perform system provisioning, patching, configuration management, vulnerability remediation, backups, and recovery using approved offline processes.
- Troubleshoot server, application, identity, storage, and connectivity issues while maintaining strict classified-environment security and change-control requirements.
- Support secure transfer, validation, and deployment of software packages, updates, container images, and configuration artifacts into disconnected environments.
Qualifications
- TS/SCI Clearance is required to be considered
- Must be a US Citizen
- BS degree and 8 – 12 years of prior relevant experience or Masters with 6 – 10 years of prior relevant experience. May possess a Doctorate in technical domain. A with a minimum of 3+ years of hands-on, production-level AWS cloud engineering experience.
- Demonstrated ability designing or operating within Azure or AWS GovCloud (US) regions.
- Experience with AWS Core services (EC2, S3, VPC, RDS, Route53, IAM, CloudWatch, KMS.)
- Experience supporting users, servers, authentication services, and infrastructure within secure on-premises and air-gapped environments.
- Experience with Terraform or CloudFormation.
- Experience implementing CI/CD pipelines using tools such as GitLab.
- Experience administering Windows Server and Active Directory Domain Services, including users, groups, Group Policy, DNS, DHCP, domain controllers, trusts, and certificate services.
- Experience troubleshooting complex infrastructure issues and performing root-cause analysis across cloud, network, operating system, identity, and application layers.
- Ability to create and maintain technical documentation, operating procedures, and security implementation evidence.
- Experience in OS and Scripting with Python.
- Understanding of DoD Cloud Computing Security Requirements Guide (SRG), RMF, and NIST frameworks.
Preferred Qualifications
- AWS Certified Solutions Architect (Associate or Professional), AWS Certified DevOps Engineer, or DoD 8570/8140 compliance (e.g., CompTIA Security+).
#ASBA
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
July 31, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
