Tyto Athene logo
Tyto Athene

Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly supports Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide. At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?

Security Engineer, AWS & GCP

Location

United States

Posted

22 hours ago

Salary

$115K - $130K / year

Seniority

Mid Level

Job Description

Role Description

Tyto Athene is hiring a Security Engineer, AWS & GCP to join our team of cloud, security, and compliance experts. This role is primarily focused on day‑to‑day security engineering, including system hardening, vulnerability remediation, cloud operations, and security tool management across AWS & GCP environments.

In addition to regular business‑hours responsibilities, engineers participate in a structured after‑hours 24×7 on‑call rotation (primary or backup) to support response to incidents, alerts, and escalations for customers operating under FedRAMP, FISMA, and NIST 800‑53 frameworks.

Responsibilities:

  • Perform systems administration and maintenance including patching, vulnerability scanning, compliance scanning and remediation, backups, and recovery for cloud workloads.
  • Support AWS & GCP environments, including Windows and Linux virtual machines, container workloads, and cloud services such as EC2, EBS, S3, RDS, WorkSpaces (AWS), Compute Engine, Cloud Storage, Cloud SQL (GCP), and Active Directory or equivalent identity services.
  • Configure, update, and maintain security tools for endpoint protection, log collection, vulnerability scanning, and compliance monitoring.
  • Troubleshoot issues across network, compute, application, and identity layers by reviewing logs, collecting data, and analyzing system behavior.
  • Implement hardening and compliance controls using CIS Benchmarks, DISA STIGs, and FedRAMP requirements.
  • Remediate vulnerabilities identified by tools such as Tenable, Trivy, OpenSCAP, Anchore, Twistlock, and others.
  • Provide quality assurance feedback during system deployments to ensure architecture meets compliance and operational requirements.
  • Collaborate with Security Analysts to ensure uninterrupted delivery of security services to customers.
  • Create and maintain documentation including network diagrams, dataflow diagrams, SOPs, and security tool configuration guides.
  • Support client communications, deliverables, and issue resolution with strong verbal and written communication skills.
  • Support and mentor junior engineers as and when required.

After‑Hours 24×7 On‑Call Rotation:

  • Serve as primary or backup on‑call engineer during assigned rotation.
  • Respond to after‑hours security alerts, infrastructure incidents, outages, and ConMon events.
  • Perform initial triage, containment, and stabilization using established runbooks.
  • Investigate and respond to alerts generated.
  • Escalate complex issues to senior engineers, architects, or compliance teams.
  • Document incidents, actions taken, and recommended improvements.
  • Contribute to automation improvements and runbook enhancements.

Qualifications

  • Six (6) or more years of IT engineering and/or cybersecurity experience, with at least three (3) years working in a dedicated cloud security engineering or similar position.
  • Hands‑on experience with both AWS and Google Cloud Platform (GCP).
  • Ability to diagnose and resolve issues across Linux and Windows systems, network infrastructure, and cloud services.
  • General systems administration and vulnerability management experience, including system patching and hardening, identity and access management (IAM), and related tasks.
  • Experience working in a DevSecOps environment, integrating security practices into cloud and infrastructure workflows.
  • Familiarity with ITSM ticketing systems such as Gitlab (preferred), Jira, ServiceNow, etc.
  • Ability to work independently during both business hours and on‑call periods.
  • Strong written and verbal communication skills for customer interaction and incident documentation.
  • Hands‑on experience with one or more of the following tools:
    • Splunk Enterprise
    • Tenable Security Center/Nessus
    • Invicti/Acunetix
    • Appgate
    • Okta
    • GitLab
    • Palo Alto Networks Firewalls
    • TrendMicro Deep Security
    • Trivy
    • Anchore
    • Terraform
    • CloudFormation
    • Ansible

Requirements

  • Bachelor's Degree in Computer Science or other relevant field.
  • Experience supporting federal/government-facing customers or consulting engagements, ensuring compliance and operational requirements.
  • Experience with FedRAMP, FISMA, or NIST 800‑53 compliance frameworks.
  • Prior on‑call, SRE, SOC, or incident response experience.
  • Relevant AWS or Google Cloud Platform certifications.
  • Security+ or other relevant industry security certification.
  • Experience with infrastructure‑as‑code or automation tooling.
  • Experience with Kubernetes is highly desirable.

Location

Remote (US)

Clearance

Must be a US Citizen with the ability to obtain a security clearance.

Compensation

Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $115,000-$130,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits

  • Health/Dental/Vision
  • 401(k) match
  • Paid Time Off
  • STD/LTD/Life Insurance
  • Referral Bonuses
  • Professional development reimbursement
  • Parental leave

Job Requirements

  • Six (6) or more years of IT engineering and/or cybersecurity experience, with at least three (3) years working in a dedicated cloud security engineering or similar position.
  • Hands‑on experience with both AWS and Google Cloud Platform (GCP).
  • Ability to diagnose and resolve issues across Linux and Windows systems, network infrastructure, and cloud services.
  • General systems administration and vulnerability management experience, including system patching and hardening, identity and access management (IAM), and related tasks.
  • Experience working in a DevSecOps environment, integrating security practices into cloud and infrastructure workflows.
  • Familiarity with ITSM ticketing systems such as Gitlab (preferred), Jira, ServiceNow, etc.
  • Ability to work independently during both business hours and on‑call periods.
  • Strong written and verbal communication skills for customer interaction and incident documentation.
  • Hands‑on experience with one or more of the following tools:
  • Splunk Enterprise
  • Tenable Security Center/Nessus
  • Invicti/Acunetix
  • Appgate
  • Okta
  • GitLab
  • Palo Alto Networks Firewalls
  • TrendMicro Deep Security
  • Trivy
  • Anchore
  • Terraform
  • CloudFormation
  • Ansible
  • Bachelor's Degree in Computer Science or other relevant field.
  • Experience supporting federal/government-facing customers or consulting engagements, ensuring compliance and operational requirements.
  • Experience with FedRAMP, FISMA, or NIST 800‑53 compliance frameworks.
  • Prior on‑call, SRE, SOC, or incident response experience.
  • Relevant AWS or Google Cloud Platform certifications.
  • Security+ or other relevant industry security certification.
  • Experience with infrastructure‑as‑code or automation tooling.
  • Experience with Kubernetes is highly desirable.
  • Location
  • Remote (US)
  • Clearance
  • Must be a US Citizen with the ability to obtain a security clearance.
  • Compensation
  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $115,000-$130,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits

  • Health/Dental/Vision
  • 401(k) match
  • Paid Time Off
  • STD/LTD/Life Insurance
  • Referral Bonuses
  • Professional development reimbursement
  • Parental leave

Related Categories

Related Job Pages

More Security Engineer Jobs

Zoom logo

Senior AI Security Assurance Engineer

Zoom

Zoomies help people stay connected so they can get more done together. We set out to build the best collaboration platform for the enterprise, and today help people communicate better with products like Zoom Contact Center, Zoom Phone, Zoom Events, Zoom Apps, Zoom Rooms, and Zoom Webinars. We’re problem-solvers, working at a fast pace to design solutions with our customers and users in mind. Find room to grow with opportunities to stretch your skills and advance your career in a collaborative, growth-focused environment.

Full TimeRemoteTeam 11,053Since 2013

The role involves leading adversarial verification of AI systems by designing and executing deep assessments of models and pipelines to uncover security, safety, or privacy control failures across the full AI lifecycle. Responsibilities also include developing AI-powered systems to automate security discovery, scaling offensive operations, and shaping continuous adversarial testing methodologies.

United States
$124K - $271K / year
Full TimeRemoteTeam 1,001-5,000

The role involves architecting and managing robust access control strategies using AWS IAM, implementing encryption via AWS KMS, and deploying native AWS security services for continuous threat detection and compliance monitoring. Responsibilities also include leading the technical validation of NIST and DoD controls to achieve ATO and serving as a technical SME for RMF documentation.

United States
$90.3K - $155K / year
Istari Digital logo

Cybersecurity Engineer

Istari Digital

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Full TimeRemoteTeam 51-200

We are hiring a Cybersecurity Engineer to support customer deployments in classified environments, ensuring Istari’s platform operates securely, compliantly, and reliably in real-world mission systems. This role sits within Customer Success and focuses on hands-on system and in...

United States
$116K - $174K / year
Full TimeRemoteTeam 10,001+Since 2007H1B Sponsor

The Application Security Engineer will drive the identification, assessment, and mitigation of security risks across applications from design through deployment, collaborating with developers to integrate robust security practices.

United States
$154K - $185K / year