DoW Information Systems Security Officer/Engineer - Cloud

Tetrad Digital Integrity LLCArlington, VA
$125,000 - $150,000Onsite

About The Position

Tetrad Digital Integrity (TDI) is seeking a hands-on, technically sharp DoW Information Systems Security Officer / RMF & Cloud Engineer who can support ATO efforts and translate RMF, NIST 800-53, and Cloud SRG guidance into clear, defensible deliverables. This role involves supporting mission systems, including cloud-native and containerized workloads, with opportunities to develop expertise in Kubernetes/GKE and AI risk. The position requires full-time onsite support in the Northern Virginia area and an active Secret or Top-secret security clearance.

Requirements

  • Active Secret or Top-secret security clearance.
  • Bachelor’s degree in Cybersecurity, Computer Science, or Information Technology, and 5+ years of cybersecurity experience, including demonstrated experience supporting Risk Management Framework (RMF) activities for Department of War (DoW) systems.
  • Security certifications such as CompTIA Security+, Certified Information System Security Professional (CISSP) or Certified Information System Manager (CISM).
  • Practical knowledge and application of concepts with cloud platforms. Azure or Google Cloud Platform (GCP), including IAM, VPC, Kubernetes Engine (GKE), and security-related services are preferable.
  • Strong knowledge of containerized environments (e.g., Docker, Kubernetes) and container security best practices.
  • Familiarity with Generative AI technologies, including LLMs and AI/ML security considerations.
  • Deep understanding of NIST SP 800-53, DoD RMF, FedRAMP, and other relevant cybersecurity frameworks.
  • Experience writing and maintaining RMF artifacts such as SSPs, POA&Ms, and SARs.
  • Strong communication skills and ability to collaborate effectively with technical and non-technical stakeholders.
  • Experience with security risk assessments in DoW environments

Nice To Haves

  • Advanced cloud security certifications, such as Google Professional Cloud Security Engineer, Cloud Certified Security Professional or Azure equivalent.
  • Experience integrating DevSecOps pipelines with RMF compliance processes.
  • Familiarity with automation tools for RMF documentation and control testing (e.g., Xacta, eMASS, OpenRMF).

Responsibilities

  • Lead and support RMF activities throughout all phases (categorization, control selection, implementation, assessment, authorization, and continuous monitoring).
  • Provide expert guidance on DoW cloud security policies, NIST SP 800-53 controls, CNSS policies, and DoD-specific frameworks such as Cloud Computing SRG and AI-specific guidance.
  • Conduct security architecture reviews and security engineering analysis for cloud-native and containerized workloads hosted in Azure.
  • Evaluate security controls associated with Kubernetes, Docker, and container orchestration platforms within Azure.
  • Assess security risks related to generative AI components, including large language models (LLMs) and AI/ML workloads, ensuring responsible and compliant use.
  • Develop and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and related RMF documentation.
  • Perform threat modeling, vulnerability assessments, and risk analysis tailored to cloud environments and AI technologies.
  • Interface with system architects, developers, and DevSecOps teams to integrate security throughout the Software Development Lifecycle (SDLC).
  • Support security control assessments (SCAs) and coordinate with third-party assessors.
  • Monitor, track, and report on security compliance posture through Continuous Monitoring (ConMon) processes.

Benefits

  • The anticipated salary range for this position is $125,000 - $150,000.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service