Cloud Security Tech Support

Tetra TechColumbia, WA
Remote

About The Position

The Federal Aviation Administration (FAA) is seeking a highly skilled Technology Specialist to serve as a Cloud Security Tech Support. The candidate will support FAA development tenants with the integration, deployment, monitoring, and maintenance of cloud environments, ensuring operational efficiency, system reliability, and compliance with FAA standards. This role will focus on securing and supporting FAA cloud environments while also ensuring proper network security, firewall configuration, and perimeter defense. The specialist will work closely with engineering, operations, and cybersecurity teams to maintain secure, compliant, and highly available IT systems.

Requirements

  • Three (3) or more years of experience supporting cloud engineering, cloud security, DevSecOps, or cybersecurity engineering.
  • Experience securing AWS or Azure cloud environments.
  • Experience with cloud security hardening and implementation of CIS Benchmarks, STIGs, or NIST security controls.
  • Experience configuring and administering AWS Security Hub, GuardDuty, Inspector, CloudTrail, Config, IAM, Security Groups, Network ACLs, and KMS.
  • Experience implementing Infrastructure as Code using Terraform or CloudFormation.
  • Experience integrating security testing into CI/CD pipelines.
  • Knowledge of vulnerability management and remediation processes.
  • Experience with Linux and Windows server hardening.
  • Familiarity with endpoint security, vulnerability scanning, and configuration management.
  • Working knowledge of container security (Docker, Kubernetes, OpenShift, or ECS/EKS).
  • Understanding of networking concepts including VPCs, subnets, firewalls, VPNs, routing, DNS, and load balancers.
  • Knowledge of secure application development practices and the OWASP Top 10.
  • Strong scripting experience using Python, PowerShell, or Bash.
  • Excellent analytical, troubleshooting, and communication skills.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Software Engineering, or related field, or equivalent experience.
  • Must have ability to obtain and maintain a Public Trust.

Responsibilities

  • Develop, deploy, and maintain secure cloud-native applications and infrastructure within FAA-approved cloud environments (AWS, Azure, and hybrid cloud environments).
  • Implement and maintain security hardening baselines for cloud resources, including EC2 instances, container platforms, storage services, virtual networks, databases, and serverless services in accordance with FAA security standards, NIST 800-53, CIS Benchmarks, DISA STIGs (where applicable), and FedRAMP requirements.
  • Configure, monitor, and optimize AWS Security Hub, AWS GuardDuty, AWS Inspector, AWS Config, AWS CloudTrail, AWS IAM Access Analyzer, and similar native cloud security services to continuously identify and remediate security findings.
  • Develop automated remediation workflows for cloud security findings using AWS Lambda, Systems Manager Automation, EventBridge, PowerShell, Python, or similar automation technologies.
  • Implement Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, or Azure Bicep while incorporating secure-by-default configurations.
  • Integrate security scanning and compliance validation into CI/CD pipelines using DevSecOps principles.
  • Perform cloud infrastructure vulnerability assessments and coordinate remediation of operating system, middleware, application, and cloud configuration vulnerabilities.
  • Implement and maintain Identity and Access Management (IAM) policies, role-based access control (RBAC), least privilege access, multi-factor authentication (MFA), and privileged access controls.
  • Configure encryption for data at rest and in transit using AWS KMS, Azure Key Vault, TLS certificates, and enterprise key management solutions.
  • Support implementation of Zero Trust security principles within cloud environments.
  • Monitor cloud environments for security events, misconfigurations, unauthorized access attempts, and compliance violations.
  • Analyze AWS Security Hub findings and develop corrective actions to improve overall cloud security posture.
  • Support Authority to Operate (ATO), Continuous Monitoring (ConMon), and security assessment activities.
  • Develop scripts and automation using Python, PowerShell, or Bash to improve security operations and cloud administration.
  • Participate in incident response activities involving cloud infrastructure and applications.
  • Document security architectures, standard operating procedures, technical implementation guides, and security configuration standards.
  • Collaborate with Cloud Engineers, ISSOs, Security Engineers, Developers, and Enterprise Architects to implement secure cloud solutions.

Benefits

  • Medical
  • Dental
  • Vision
  • Life Insurance
  • Short-Term Disability
  • Long-Term Disability
  • 401(k) match
  • Flexible Spending Accounts
  • EAP
  • Education Assistance
  • Parental Leave
  • Annual Leave
  • Holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service