Role Overview We are seeking a Cloud Cybersecurity Manager to lead cybersecurity, compliance, and risk management for a federal agency’s AWS GovCloud environment. This role ensures continuous adherence to DoD and federal security mandates, including implementation of Zero Trust Architecture (ZTA) , and oversees Authorization to Operate (ATO) compliance for mission‑critical cloud systems.
Key Responsibilities
Lead cybersecurity strategy and ensure compliance with DoD, DISA, U.S. Cyber Command, and federal directives.
Implement NIST Risk Management Framework (RMF) and ensure ongoing adherence to cybersecurity policies and controls.
Conduct vulnerability assessments and implement corrective actions based on findings.
Implement advanced security architectures for predictive threat detection and response.
Maintain continuous monitoring and reporting of security posture.
Ensure compliance with Zero Trust Architecture (ZTA).
Maintain ATO status for DoD Cloud Computing SRG Impact Levels 2, 4, and 5 systems.
Manage a cybersecurity team of up to 30 professionals.
Support 24/7 operational readiness for cloud and mission-critical systems.
Requirements
Required Qualifications
Active Top Secret Clearance / Favorably adjudicated Tier 5 investigation
Must be able to support on-site work in the National Capital Region
Bachelor’s degree in Computer Science, IT, Information Systems, Cybersecurity, or related field
8+ years managing cybersecurity programs in cloud environments, including budgets >$100M
8+ years experience with NIST RMF, NIST SP 800-53, STIGs, SCAP, IAVAs, FISMA compliance
8+ years analyzing vulnerabilities and implementing corrective actions
8+ years supporting DoD defensive cyber operations (incident response, reporting, recovery)
Deep expertise in cloud security compliance (AWS GovCloud, ZTA, NIST RMF)
Expert knowledge of DoD Cloud Computing SRG Impact Levels 2, 4, 5
Experience managing large Agile development or operational teams
Possess one or more relevant certifications (CISSP, CISSP-ISSMP, CISM, CISSO, FITSP‑M, GCIA, GCSA, GCIH, GSLC, GICSP)
Preferred Qualifications
Prior experience maintaining 24/7 cloud enterprise security operations
Demonstrated success in implementing and managing Zero Trust Architecture in a federal cloud environment