Responsibilities
- Architect, implement, and sustain secure cloud platforms in AWS and Azure, adhering to Department of Defense cloud security requirements and industry best practices
- Set up identity and access management systems, apply role-based access controls, and administer cloud security groups and firewall policies
- Enhance cloud network setups, including VPC peering, virtual private networks, and cross-domain connections, to support secure and high-performing operations
- Assist in building Infrastructure-as-Code solutions using Terraform, CloudFormation, or ARM templates to automate compliant and secure cloud provisioning
- Support the creation of the Cloud Security & Performance Optimization Report, documenting configurations, resource efficiency, and compliance status
- Monitor and report Kubernetes and workload-specific resource consumption by Work Order using government cloud-native observability tools such as Azure Monitor, AWS CloudWatch, and Cost Explorer
- Collaborate with other Work Order teams (e.g., WO-003) to align prepaid or reserved capacity usage with actual consumption and deliver monthly reports on compute, storage, tagging compliance, and cost forecasts
- Provide guidance on optimal placement and performance tuning of workloads across IL2, IL4, and IL5 environments to balance cost, security, and operational efficiency
- Deploy and manage IL2, IL4, and IL5 GovCloud infrastructure using native AWS and Azure capabilities whenever possible
- Integrate cloud-native monitoring, cost management, and compliance automation tools to support scalability, security, and accurate chargeback reporting
- Coordinate infrastructure provisioning efforts with other Work Orders to ensure alignment and interoperability
- Establish and oversee shared container platforms and storage systems for dependent Work Orders, ensuring secure and efficient resource sharing
Requirements
- Proven background in designing, deploying, and managing secure cloud environments in AWS and Azure
- Understanding of Department of Defense cloud security guidelines and recommended practices
- Hands-on experience with identity and access management, role-based access controls, cloud firewalls, and security groups
- Track record optimizing cloud networking, including VPC peering, VPN configurations, and cross-domain connectivity
- Proficiency in Infrastructure-as-Code tools such as Terraform, CloudFormation, or ARM templates
- Capability to assist in cloud security and performance reporting
- Experience with government cloud observability platforms like Azure Monitor, AWS CloudWatch, and Cost Explorer
- Skill in tracking and reporting cloud resource usage per Work Order for specific workloads
- Demonstrated ability to coordinate with multiple Work Order contractor teams
- Experience setting up and maintaining IL2, IL4, and IL5 GovCloud environments
- Knowledge of cloud-native tools for monitoring, cost analysis, and compliance automation
- Ability to deploy and manage shared containerized environments and storage for interdependent Work Orders
Responsibilities
- Design, deploy, and maintain secure cloud environments in AWS and Azure, ensuring compliance with DoD cloud security frameworks and best practices
- Configure identity and access management (IAM) solutions, enforce role-based access controls (RBAC), and manage cloud security groups and firewalls
- Optimize cloud networking configurations, including VPC peering, VPNs, and cross-domain connectivity to ensure secure and efficient cloud operations
- Support the development of Infrastructure-as-Code (IaC) solutions using Terraform, CloudFormation, or ARM templates to automate secure cloud deployments
- Contribute to the Cloud Security & Performance Optimization Report, detailing cloud security configurations, resource utilization efficiencies, and compliance measures
- Track and report Kubernetes and other workload-specific cloud resource usage by Work Order, using GovCloud-native observability tools (e.g., Azure Monitor, AWS CloudWatch, Cost Explorer)
- Coordinate with other Work Order contractors (e.g., WO-003) to reconcile prepay or reservation usage against actual consumption and provide monthly reports on compute and storage allocation, tagging compliance, and projected costs
- Advise the Government on workload placement and optimization strategies across IL2, IL4, and IL5 environments to reduce cost while maintaining performance and security compliance
- Provision and maintain IL2, IL4, and IL5 GovCloud infrastructure using native Azure and/or AWS tools where feasible
- Implement cloud-native services for monitoring (e.g., CloudWatch, Azure Monitor), cost tracking, and compliance automation to support scalability, security, and chargeback alignment
- Provision infrastructure in coordination with other Work Orders
- Provision and manage shared container environments and storage for dependent Work Orders, ensuring secure, efficient resource allocation and cross-Work Order operability
Required
- Experience designing, deploying, and maintaining secure cloud environments in AWS and Azure
- Knowledge of DoD cloud security frameworks and best practices
- Experience with identity and access management (IAM), role-based access controls (RBAC), cloud security groups, and firewalls
- Experience optimizing cloud networking configurations including VPC peering, VPNs, and cross-domain connectivity
- Proficiency with Infrastructure-as-Code (IaC) tools such as Terraform, CloudFormation, or ARM templates
- Ability to contribute to cloud security and performance optimization reporting
- Experience using GovCloud-native observability tools such as Azure Monitor, AWS CloudWatch, and Cost Explorer
- Ability to track and report workload-specific cloud resource usage by Work Order
- Coordination experience with multiple Work Order contractors
- Experience provisioning and maintaining IL2, IL4, and IL5 GovCloud infrastructure
- Familiarity with cloud-native monitoring, cost tracking, and compliance automation tools
- Ability to provision and manage shared container environments and storage for dependent Work Orders
Other
- Must comply with DoD cloud security frameworks and best practices
- Requires experience with IL2, IL4, and IL5 environments
- Must coordinate with other Work Order contractors
- Must provision and manage shared container environments and storage for dependent Work Orders