Sr Cloud Security Engineer in Rockville, Maryland at General Dynamics Information Technology
NewSalary: $124093 - $149500Job Function: Information Technology
General Dynamics Information Technology
Rockville, Maryland, 20850, United States
Posted on
New job! Apply early to increase your chances of getting hired.
Explore Related Opportunities
Miscellaneous Computer Occupations jobs near me in MarylandJobs near me in MarylandMiscellaneous Computer Occupations jobs
Job Description
USA MD Rockville - 5601 Fishers Ln (MDC088)
Full time
RQ228988
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None
Public Trust/Other Required:
NACI (T1)
Job Family:
IT Infrastructure and Operations
Job Qualifications:
Skills:
Amazon Web Services (AWS) Security, AWS Network Firewall, AWS Web Application Firewall (WAF), Network Security, Security Engineering
Certifications:
None
Experience:
5 + years of related experience
US Citizenship Required:
No
Job Description:
GDIT is seeking an experienced Senior Cloud Security Engineer to design, implement, operate, and continuously improve security infrastructure across on-premises data centers and AWS environments supporting business and critical scientific workloads.
The ideal candidate is a hands-on engineer with strong expertise in AWS security, Palo Alto Networks firewalls, hybrid-cloud security architecture, Infrastructure as Code (IaC), and security automation. This role operates across both architecture and implementation - from defining security patterns and policies to configuring infrastructure, troubleshooting complex issues, and automating security operations.
This role is mostly remote, but must be within commuting distance to Rockville, MD for occasional onsite requirements.
RESPONSIBILITIES:
Cloud & Network Security
• Design and implement security controls for AWS multi-account and hybrid-cloud environments.
• Deploy and manage AWS security capabilities, including Network Firewall, WAF, Shield, Security Groups/NACLs, GuardDuty, Security Hub, CloudTrail, Config, IAM/Identity Center, KMS, VPC, and Transit Gateway controls.
• Design secure connectivity, segmentation, and security boundaries between AWS and on-premises environments.
• Design, deploy, manage, and optimize Palo Alto Networks next-generation firewalls, including security policies, NAT, routing, VPN, application controls, threat prevention, and URL filtering.
• Manage firewall high availability, upgrades, lifecycle, capacity, and policy optimization.
Security Architecture & Automation
• Develop secure, resilient architectures spanning AWS and on-premises infrastructure using defense-in-depth and Zero Trust principles.
• Modernize environment to leverage Infrastructure as Code using technologies such as Terraform.
• Automate security operations, compliance reporting, configuration management, and policy enforcement using APIs, scripting, DevSecOps tooling, and AI-assisted engineering tools.
• Support security controls and evidence mapping aligned with frameworks such as NIST 800-53/800-171, FedRAMP, and FISMA.
• Evaluate existing security architectures and identify improvements in security, resiliency, scalability, performance, and operational efficiency.
Operations & Incident Response
• Troubleshoot complex cloud, network, firewall, and application-connectivity issues.
• Support security incidents, production outages, and root-cause analysis.
• Develop monitoring, logging, alerting, dashboards, runbooks, and engineering standards.
• Perform performance tuning, capacity planning, and security infrastructure lifecycle management.
• Participate in on-call or escalation support as required.
QUALIFICATIONS:
Required:
• Bachelor's degree and 5+ years of hands-on cloud security engineering experience (or, 8+ years of of experience in cloud security engineering in lieu of degree)
• Demonstrated experience designing, deploying, managing, and troubleshooting AWS security services and Palo Alto Networks firewalls.
• Experience securing hybrid on-premises/AWS environments.
• Experience with Infrastructure as Code, scripting and security automation.
• Strong understanding of networking and security fundamentals, including TCP/IP, DNS, HTTP/HTTPS, network segmentation, VPNs, TLS/PKI, encryption, IAM, Zero Trust, and threat detection/prevention.
• Experience troubleshooting complex security and network issues.
• Must be able to obtain and maintain a Public Trust.
Preferred:
• Experience with Palo Alto Panorama, Prisma Cloud, and/or related Palo Alto technologies.
• Experience implementing centralized AWS security architectures in multi-account environments.
• Experience with Terraform, Ansible, Python, Bash, APIs, or other infrastructure/security automation technologies.
• Experience integrating security controls with SIEM/SOAR platforms.
• Experience with CI/CD pipelines and DevSecOps security practices.
• Experience with container/Kubernetes security and vulnerability management.
• Experience implementing security and compliance controls aligned with NIST, FISMA, FedRAMP, or similar frameworks.
• Experience using LLMs, AI agents, or generative AI tools to automate engineering, security, or compliance workflows.
• Palo Alto Networks (e.g., PCNSE) and/or AWS security/architecture certifications, or equivalent practical experience.
• Ability to independently own and resolve complex technical problems.
#GDITFedHealthJobs
The likely salary range for this position is $124,093 - $149,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
Telecommuting Options:
Hybrid
Work Location:
USA MD Rockville
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
About Us
Join our 30,000 everyday heroes. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. For more information about GDIT's Privacy Policy, click here:
Full time
RQ228988
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None
Public Trust/Other Required:
NACI (T1)
Job Family:
IT Infrastructure and Operations
Job Qualifications:
Skills:
Amazon Web Services (AWS) Security, AWS Network Firewall, AWS Web Application Firewall (WAF), Network Security, Security Engineering
Certifications:
None
Experience:
5 + years of related experience
US Citizenship Required:
No
Job Description:
GDIT is seeking an experienced Senior Cloud Security Engineer to design, implement, operate, and continuously improve security infrastructure across on-premises data centers and AWS environments supporting business and critical scientific workloads.
The ideal candidate is a hands-on engineer with strong expertise in AWS security, Palo Alto Networks firewalls, hybrid-cloud security architecture, Infrastructure as Code (IaC), and security automation. This role operates across both architecture and implementation - from defining security patterns and policies to configuring infrastructure, troubleshooting complex issues, and automating security operations.
This role is mostly remote, but must be within commuting distance to Rockville, MD for occasional onsite requirements.
RESPONSIBILITIES:
Cloud & Network Security
• Design and implement security controls for AWS multi-account and hybrid-cloud environments.
• Deploy and manage AWS security capabilities, including Network Firewall, WAF, Shield, Security Groups/NACLs, GuardDuty, Security Hub, CloudTrail, Config, IAM/Identity Center, KMS, VPC, and Transit Gateway controls.
• Design secure connectivity, segmentation, and security boundaries between AWS and on-premises environments.
• Design, deploy, manage, and optimize Palo Alto Networks next-generation firewalls, including security policies, NAT, routing, VPN, application controls, threat prevention, and URL filtering.
• Manage firewall high availability, upgrades, lifecycle, capacity, and policy optimization.
Security Architecture & Automation
• Develop secure, resilient architectures spanning AWS and on-premises infrastructure using defense-in-depth and Zero Trust principles.
• Modernize environment to leverage Infrastructure as Code using technologies such as Terraform.
• Automate security operations, compliance reporting, configuration management, and policy enforcement using APIs, scripting, DevSecOps tooling, and AI-assisted engineering tools.
• Support security controls and evidence mapping aligned with frameworks such as NIST 800-53/800-171, FedRAMP, and FISMA.
• Evaluate existing security architectures and identify improvements in security, resiliency, scalability, performance, and operational efficiency.
Operations & Incident Response
• Troubleshoot complex cloud, network, firewall, and application-connectivity issues.
• Support security incidents, production outages, and root-cause analysis.
• Develop monitoring, logging, alerting, dashboards, runbooks, and engineering standards.
• Perform performance tuning, capacity planning, and security infrastructure lifecycle management.
• Participate in on-call or escalation support as required.
QUALIFICATIONS:
Required:
• Bachelor's degree and 5+ years of hands-on cloud security engineering experience (or, 8+ years of of experience in cloud security engineering in lieu of degree)
• Demonstrated experience designing, deploying, managing, and troubleshooting AWS security services and Palo Alto Networks firewalls.
• Experience securing hybrid on-premises/AWS environments.
• Experience with Infrastructure as Code, scripting and security automation.
• Strong understanding of networking and security fundamentals, including TCP/IP, DNS, HTTP/HTTPS, network segmentation, VPNs, TLS/PKI, encryption, IAM, Zero Trust, and threat detection/prevention.
• Experience troubleshooting complex security and network issues.
• Must be able to obtain and maintain a Public Trust.
Preferred:
• Experience with Palo Alto Panorama, Prisma Cloud, and/or related Palo Alto technologies.
• Experience implementing centralized AWS security architectures in multi-account environments.
• Experience with Terraform, Ansible, Python, Bash, APIs, or other infrastructure/security automation technologies.
• Experience integrating security controls with SIEM/SOAR platforms.
• Experience with CI/CD pipelines and DevSecOps security practices.
• Experience with container/Kubernetes security and vulnerability management.
• Experience implementing security and compliance controls aligned with NIST, FISMA, FedRAMP, or similar frameworks.
• Experience using LLMs, AI agents, or generative AI tools to automate engineering, security, or compliance workflows.
• Palo Alto Networks (e.g., PCNSE) and/or AWS security/architecture certifications, or equivalent practical experience.
• Ability to independently own and resolve complex technical problems.
#GDITFedHealthJobs
The likely salary range for this position is $124,093 - $149,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
Telecommuting Options:
Hybrid
Work Location:
USA MD Rockville
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
Our Identity Verification Process:
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.
About Our Work:
We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
About Us
Join our 30,000 everyday heroes. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. For more information about GDIT's Privacy Policy, click here:
Scan to Apply
Just scan this QR code to apply from your phone.
Job Location
Rockville, Maryland, 20850, United States
Frequently asked questions about this position
Similar Jobs In Rockville, Maryland
Urgently Hiring
Technology Architect Hardware
In-Q-Tel
McLean, Virginia
Hot Job
SharePoint Engineer - Cleared
RightDirection Technology Solutions
Washington, District of Columbia
New
Network Engineer
GRVTY
Arcola, Virginia
New
EE /Computer Engineer internship
Mission Systems
Manassas, Virginia
New
Information Systems Security Engineer (ISSE)
General Dynamics Information Technology
Fort Belvoir, Virginia
Continue to apply
Enter your email to continue. You’ll be redirected to the employer’s application.By clicking Continue, you understand and agree to JobTarget's Terms of Use and Privacy Policy.