Yakshna Solutions, Inc. is a woman-owned small business providing professional IT solutions and services. They are seeking an SME Cloud/Security Engineer (CSE) responsible for delivering advanced security engineering and assessment support across cloud environments, focusing on Zero Trust architecture and risk reduction.
Responsibilities:
- Delivers advanced security engineering and assessment support across cloud and enterprise environments, with a focus on continuous authorization, Zero Trust architecture, and risk reduction
- Executes Security Control Assessments in accordance with NIST 800-37 and 800-53A, leveraging automated and AI-assisted tools to support evidence collection, risk scoring, prioritization, and authorization decision briefings
- Provides hands-on engineering support to the Cybersecurity Architecture and Engineering Branch, leading the design and implementation of resilient cybersecurity architectures and integrating AI-based capabilities into daily security operations
- Conducts Security Impact Assessments, develops and maintains security frameworks and interconnection agreements, and continuously optimizes cybersecurity IT processes to align with federal and agency requirements
- Leads vulnerability management activities by analyzing scan results, prioritizing and escalating critical issues, addressing CISA directives, and supporting CDM, FISMA, and Ongoing Authorization requirements
Requirements:
- Master's degree in related field
- 10 years of experience in IT or Cybersecurity field
- Extensive hands-on experience as a Cloud Security Engineer, Security Engineer, or DevSecOps Engineer supporting federal or highly regulated environments
- Strong background in designing, securing, and operating cloud platforms (AWS, Azure, and/or GCP), including hybrid and multi-cloud architectures
- Experience implementing and validating NIST 800-53 security controls within cloud and enterprise systems, including support for ATO and Ongoing Authorization activities
- Practical experience with Zero Trust architecture, identity-centric security models, network segmentation, and continuous monitoring
- Use of security engineering and vulnerability management tools such as cloud-native security services, SIEM, SOAR, EDR, and automated scanning platforms
- US Citizenship
- W-2 Only
- Foundational certifications such as CISSP, CAP, or GLSC
- Cloud certifications such as CCSP, AWS Certified Security, AWS Solutions Architect