Leidos

Cloud Security SME

Bethesda, MD Full time

Are you ready to join Leidos all-star team? Through training, teamwork, and exposure to challenging technical work, let Leidos show how to accelerate your career path.

Leidos has an exciting opening for you, our next Cloud Security SME/Cyber Security Engineer, to play a critical role in the accreditation of a state-of-the-art technology stack under the DOMEX Technology Platform (DTP) where we support our client’s mission to centralize and standardize Tasking, Collection, Processing, Exploitation and Dissemination (TCPED) of Open Source Intelligence (OSINT) across the Defense and Intelligence Community enterprises. We leverage cloud-based computing, artificial intelligence (Al), machine learning (ML), and cross-domain transfer systems to provide cutting edge data exploitation, enrichment, triage, and analytics capabilities to the Defense Intelligence Enterprise.

As a Cloud Security SME & Cyber Security Engineer, you will be responsible for providing technical security expertise in securing, hardening, and maintaining compliance of cloud-based platforms across multiple secure networks. You will lean on your experience with security technologies, industry best practices, vulnerability management, and risk management frameworks (RMF) to employ effective security solutions. In this role, you will collaborate closely with compliance personnel (ISSO, ISSM), software engineers and developers, system engineers and architects, and Government counterparts to perform the full spectrum of systems and cyber security engineering tasks to ensure our systems securely meet mandated regulatory compliance frameworks. 

Key Responsibilities include:

  • Develop and maintain security policies, procedures, and best practices for cloud and cloud-native environments
  • Perform security assessments, vulnerability management, and risk analysis for cloud-based systems across secure enclaves
  • Implement and manage security controls for Kubernetes clusters and containerized applications
  • Ensure integration of security measures into CI/CD pipelines and DevSecOps processes
  • Conduct security reviews of cloud architectures, service configurations, and system design changes
  • Develop and maintain ATO packages and ensure compliance with relevant standards (NIST SP 800-37, SP 800-53, CNSSI 1253, ICD 503)
  • Implement and manage continuous monitoring solutions for cloud environments
  • Collaborate with development teams to ensure secure coding practices and perform code reviews
  • Stay current with emerging cloud security threats, technologies, and best practices

To be successful in this role you need these skills (required):

  • Active or current Top Secret with SCI eligibility and ability to obtain Polygraph
  • Bachelor’s degree in a related field and 8+ years of industry experience with 5+ years in cybersecurity or additional years of experience in lieu of degree (ISSO experience must be supplemented with demonstrated technical expertise)
  • At least one DoD 8570.01-M IAT Level II or higher certification e.g., CCNA Security, CySA+, Security+ CE, CISSP (or Associate)
  • 5+ years working in the cloud, securely configuring and deploying AWS services
  • Demonstrated experience securing Kubernetes platforms (secrets management, RBAC, etc.) and integrating security into CI/CD pipelines and containers; must understand microservices architecture and service mesh.
  • 5+ years of experience hardening Linux hosts and applying appropriate DISA STIG
  • Demonstrated experience developing A&A packages to obtain and maintain ATO in secure environments. Grounded knowledge in compliance frameworks such as NIST SP 800-37, SP 800-53, and CNSSI 1253
  • Experience with tools such as Xacta or eMass, performing vulnerability compliance with ACAS, & STIG automation
  • Experience with scripting languages such as Bash and Python for automation
  • Understanding of secure software development practices and code reviews
  • Experience with encryption and transport, especially in the cloud

You will WOW us even more if you have some of these skills:

  • Multiple IAT/IAM II or III advanced certifications (e.g. CISSP-ISSAP/ISSEP, CISM, CCSP, Security X/CASP+)
  • Cloud certifications such as AWS Solutions Architect (Associate or Professional), AWS Security Specialty
  • Kubernetes certifications such as KCNA, CKA, CKS
  • Prior Linux administration experience and certifications such as Linux+, Red Hat certifications (e.g. RHCSA, RHCE)
  • Experience with ICD 503 and related compliance directives, policies, procedures
  • Experience with security tool such as Splunk, Nessus, SonarQube, as well as DAST & SAST tools such as Prisma Cloud and SonarQube
  • Experience applying Zero Trust framework to secure systems
  • Prior network engineering experience
  • Experience applying security controls to Generative AI implementations

  • #NMECDTP-ALL

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

March 17, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.