Cloud Engineer

LeidosReston, VA
Hybrid

About The Position

The Leidos Intelligence Group has an opening for senior Cloud Engineer in Reston, Virginia. The successful candidate will work as a member of a government contractor team managing and securing mission critical infrastructure. You will work in a hybrid environment, bridging the gap between unclassified and classified enclaves, while ensuring compliance with federal mandates. You will act as a key technical resource, driving automation, cloud-native modernization, and secure operations across isolated cloud boundaries. Work will be performed in a fast-paced, high-energy environment inside a government facility.

Requirements

  • TS/SCI Clearance is required to be considered
  • Must be a US Citizen
  • BS degree and 8 – 12 years of prior relevant experience or Masters with 6 – 10 years of prior relevant experience. May possess a Doctorate in technical domain.
  • A with a minimum of 3+ years of hands-on, production-level AWS cloud engineering experience.
  • Demonstrated ability designing or operating within Azure or AWS GovCloud (US) regions.
  • Experience with AWS Core services (EC2, S3, VPC, RDS, Route53, IAM, CloudWatch, KMS.)
  • Experience supporting users, servers, authentication services, and infrastructure within secure on-premises and air-gapped environments.
  • Experience with Terraform or CloudFormation.
  • Experience implementing CI/CD pipelines using tools such as GitLab.
  • Experience administering Windows Server and Active Directory Domain Services, including users, groups, Group Policy, DNS, DHCP, domain controllers, trusts, and certificate services.
  • Experience troubleshooting complex infrastructure issues and performing root-cause analysis across cloud, network, operating system, identity, and application layers.
  • Ability to create and maintain technical documentation, operating procedures, and security implementation evidence.
  • Experience in OS and Scripting with Python.
  • Understanding of DoD Cloud Computing Security Requirements Guide (SRG), RMF, and NIST frameworks.

Nice To Haves

  • AWS Certified Solutions Architect (Associate or Professional), AWS Certified DevOps Engineer, or DoD 8570/8140 compliance (e.g., CompTIA Security+).

Responsibilities

  • Architect, design, and deploy secure, scalable, and highly available solutions (AWS GovCloud, Azure, etc) tailored for unclassified and classified environments.
  • Ensure seamless hybrid connectivity and secure data replication between unclassified and classified networks/enclaves.
  • Provision and maintain Infrastructure as Code (IaC) using tools such as Terraform or AWS CloudFormation.
  • Configure and troubleshoot VPCs/VNets, subnets, routing, security groups, network ACLs, load balancers, DNS, firewalls, VPNs, AWS Transit Gateway, Direct Connect, and Azure ExpressRoute.
  • Implement secure network segmentation, private connectivity, traffic inspection, and connectivity between cloud, on-premises, and classified environments.
  • Deploy, manage, and troubleshoot containerized workloads and Kubernetes platforms such as Amazon EKS or Azure Kubernetes Service (AKS).
  • Implement strict security controls to align with DoD RMF, NIST SP 800-53, and CIS/STIG hardening guidelines across all on-premises and cloud resources.
  • Manage Identity and Access Management (IAM), multi-factor authentication (MFA), and secure key management.
  • Audit and validate air-gapped or classified cloud environments to ensure they strictly adhere to federal data-at-rest and data-in-transit encryption standards.
  • Manage network policies, container image scans, and access logs.
  • Implement encryption, private networking, logging, monitoring, and data-protection controls for Amazon workloads in regulated environments.
  • Maintain CI/CD pipelines (e.g., GitLab, GitHub Actions) for smooth, automated, and audited deployments.
  • Monitor cloud system performance, availability, and reliability, proactively resolving infrastructure defects and bottlenecks.
  • Troubleshoot complex, interconnected cloud stacks, performing root-cause analysis when operational issues occur.
  • Support Kubernetes deployments, scaling, upgrades, patching, logging, monitoring, and application troubleshooting.
  • Administer and support on-premises users, servers, virtual machines, storage, and core infrastructure operating within secure air-gapped environments.
  • Manage user accounts, permissions, authentication, group policies, and access controls across Windows and Linux systems.
  • Perform system provisioning, patching, configuration management, vulnerability remediation, backups, and recovery using approved offline processes.
  • Troubleshoot server, application, identity, storage, and connectivity issues while maintaining strict classified-environment security and change-control requirements.
  • Support secure transfer, validation, and deployment of software packages, updates, container images, and configuration artifacts into disconnected environments.

Benefits

  • Pay Range $92,300.00 - $166,850.00
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service