See all roles

Information System Security Engineer (ISSE) AWS Cloud Security - Clearance Required

Work from home Full-time role Hiring

About the position LMI is seeking a skilled Information System Security Engineer (ISSE) with hands-on experience in AWS cloud security to provide advanced cybersecurity engineering and Risk Management Framework (RMF) support for Department of Defense (DoD) cloud-based systems. This position focuses on designing, implementing, and maintaining secure AWS environments aligned with DoD Cloud Computing Security Requirements Guide (CC SRG), NIST SP 800-53, and DISA STIGs/SRGs to support Authorization to Operate (ATO) efforts. LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed. Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors—helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value. This position can be remote but requires quarterly travel for planning increments. This position requires an active SECRET clearance; TS/SCI preferred.

Responsibilities

  • Architect and manage robust access control strategies using AWS Identity and Access Management (IAM), enforcing the principle of Least Privilege across all roles and users.
  • Implement encryption and key management solutions using AWS Key Management Service (KMS) and related tools to protect data at rest and in transit, aligning with DoD data classification standards.
  • Deploy and configure native AWS security services (e.g. GuardDuty, Security Hub, Inspector, and Config) to provide continuous threat detection, compliance monitoring, and automated remediation.
  • Collaborate with network teams to secure VPCs using AWS Network Firewall, WAF, and hybrid connectivity solutions (Direct Connect, VPN) within a GovCloud environment.
  • Lead technical implementation and validation of NIST SP 800-53 and DoD CC SRG controls to achieve and maintain ATO.
  • Serve as a technical SME for RMF documentation and artifact generation within eMASSor other DoD compliance systems.
  • Design, test, and implement DISA STIG/SRG-based configuration hardening across AWS services, operating systems, and containerized workloads.
  • Conduct continuous vulnerability scanning and monitoring using DoD-approved tools (ACAS/Nessus), coordinating remediation and risk mitigation activities.
  • Integrate security into CI/CD pipelines using Infrastructure-as-Code (IaC) tools such as Terraform or CloudFormation to automate compliance and security controls.
  • Build and maintain centralized, compliant logging architectures using Splunk, Elastic, or equivalent SIEM platformsto ensure event visibility and retention per DoD policy.
  • Participate in incident response activities for cloud-based threats, performing forensic analysis and recommending corrective actions.
  • Collaborate with DoD stakeholders, system owners, and developers to embed security throughout the system lifecycle and support RMF accreditation efforts.

Requirements

  • Active SECRET clearance required; TS/SCI preferred
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • 3–5+ years of experience in information security, with at least 3 years focused on AWS cloud security engineering
  • Deep experience with DoD RMF, NIST SP 800-53, DoD CC SRG, and DISA STIG/SRG compliance frameworks
  • Strong hands-on expertise with AWS security services (IAM, KMS, GuardDuty, Security Hub, Config)
  • Experience with Docker, Kubernetes, and system hardening for Linux/Windows environments
  • Proficiency in IaC tools (Terraform, CloudFormation) for managing and enforcing security policies
  • Familiarity with ACAS/Nessus, continuous monitoring, and vulnerability management processes
  • Experience integrating security within DevSecOps and CI/CD workflows
  • DoD 8570/8140-M compliant (e.g., CISSP, CASP+, CISM) – required

Nice-to-haves

  • AWS Certified Security – Specialty – highly preferred
  • Kubernetes certification (CKS/CKA) – a plus

Apply tot his job Apply To this Job

You might like

Sr. Cloud Solutions Architect | DevOps (Remote

Work from home Full-time role

College Counselor, Partnerships (Remote)

Work from home Full-time role

Incident Manager, NOC - Comcast Business Global

Work from home Full-time role

Virtual - Retention Sales Comcast Business

Work from home Full-time role

[Remote] Startup Community Manager – Systems & Experiences

Work from home Full-time role

Social Media Manager, Organic Engagement

Work from home Full-time role

Senior Communications Manager - SF

Work from home Full-time role

Integrated Communications Manager

Work from home Full-time role

Senior Communications Manager, Tech & Product

Work from home Full-time role

Brand and Communications Manager

Work from home Full-time role

Research Scientist/Engineer L5/L6, AI for Member Systems

Work from home Full-time role

SY 25-26 Teaching Assistant

Work from home Full-time role

Product Analyst

Work from home Full-time role

DevOps Intern

Work from home Full-time role

P&C Adjuster Level II - Liability and Bodily Injury Claims

Work from home Full-time role

Product Manager- System Applications

Work from home Full-time role

Business Administration/HR Intern (Fully Remote) - Paid Internship

Work from home Full-time role

Work From Home Customer Service Representative – Airline Passenger Support Specialist

Work from home Full-time role

Experienced Remote Temporary Data Entry Specialist – Home-Based Opportunity for Detail-Oriented Professionals with 20-40 Hours/Week Flexibility

Work from home Full-time role

Principal Architect, NICE CXone

Work from home Full-time role