AWS Cloud Administrator
BAE Systems, Inc. · Mount Laurel, NJ · Yesterday
On-siteInformation Technology$79k–$135k/yrFull-time
About the role
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the government, federal law enforcement officials, and troops deployed around the world.
Responsibilities
- Serve as cloud administrator for the Advanced Technology team's AWS environment supporting active SaaS application development
- Manage AWS accounts, IAM, networking (VPC), storage, and compute resources in a classified/GovCloud context, in coordination with security and compliance requirements
- Work directly with software and services vendors, and with internal program management operations, to track license statuses, renewals, and costs, and to plan and execute new software installs and updates
- Cook up with the on-site cybersecurity team on requirements, current activities, and upcoming changes relevant to Advanced Technology's systems and development plans
- Proactively surface upcoming cybersecurity policy, tooling, or compliance changes to the Advanced Technology team so development plans can adapt ahead of time
- Maintain hands-on fluency in the cybersecurity team's environment and tooling — monitoring, detecting, analyzing, and responding to cyber threats — to communicate effectively on technical requirements and constraints
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field and minimum 5 years of experience in cybersecurity, IT security, or related field, or equivalent military experience (Associate's degree with 7 years of experience also considered)
- Current SECRET clearance
- Hands-on experience administering AWS environments (EC2, S3, IAM, VPC, CloudTrail) supporting application development teams; AWS GovCloud experience strongly preferred given classified network context
- Current CompTIA Security+ CE certification
- Cybersecurity certification demonstrating intermediate-to-advanced analysis skills (CySA+, GCIH, GCFA, or equivalent)
- Working knowledge of Windows Server 2016/2019/2022 domain environments and Active Directory administration
- Experience with SIEM platforms (Splunk preferred), log analysis, and event correlation
- Experience with vulnerability scanning tools (Tenable Nessus or similar) and endpoint security/malware detection tools (Trellix ENS/ESS or similar)
- Experience with incident response principles and digital forensics concepts in Windows environments
- Knowledge of STIG compliance requirements and DoD security baselines
- Excellent written and verbal communication skills; demonstrated ability to translate technical requirements between distinct teams/stakeholders
- Ability to work independently, manage competing priorities, and operate in high-pressure environments
- Flexibility to work rotating shifts (including evenings, weekends, holidays) during the initial cybersecurity onboarding period as operational needs require
Skills
- AWS certification (Solutions Architect – Associate, SysOps Administrator, or Security Specialty)
- Familiarity with administering environments with Bedrock, Lambda, Step Functions, and Redshift services
- Familiarity with software asset/license management platforms and vendor management workflows
- Demonstrated success operating as a liaison or embedded resource between two functional teams
- Military experience in cybersecurity, signals intelligence, or communications fields (25B, 35N, 17C, 35S)
- Advanced DoD 8570.01-M IAT Level II/III certification (GCIH, GCFA, CISSP)
- Advanced platform-specific certification (Splunk Power User/Admin), Cisco security certifications (CCNA Security, CyberOps), or Palo Alto certifications (PCNSA, PCCSA)
- Experience with Palo Alto Networks firewall administration or similar next-generation firewall platforms
- Basic scripting experience (PowerShell, Python, Bash) for security or cloud automation tasks
- Understanding of DoD PKI implementation, CNSS policies, and NSS classification handling procedures
- Prior experience supporting classified networks or SIPRNET connectivity requirements
- Experience with DISA STIG implementation and compliance validation tools
Benefits
- Health, dental, and vision insurance
- Health savings account
- 401(k) savings plan
- Disability coverage
- Life and accident insurance
- Employee Assistance Program
- Legal plan
- Discounts on home, auto, and pet insurance
- Paid time off, paid holidays, and other types of leave
- Recognition program
- Other incentives based on position level and/or job specifics