Cloud Cybersecurity Subject Matter Expert
Apply Job ID 32362 Date posted 09/19/2025Job Family:
Cyber Consulting
Travel Required:
Clearance Required:
What You Will Do:
- Provide comprehensive IT, cybersecurity, and data operations services for DoD program in AWS GovCloud. These services include information system, application, network, storage, and cybersecurity design, implementation, optimization, and sustainment.
- Design and maintain a high-availability, scalable system architecture, and develop proactive cybersecurity measures including applying hardening measures to AWS GovCloud environments, ensuring control enforcement and alignment with the DoD’s cyber and privacy mandates.
- Provide comprehensive NIST RMF support via an instance of the DoD Enterprise Mission Assurance Support Service (eMASS) platform, including Assured Compliance Assessment Solution (ACAS) assessments and Plan of Actions and Milestones (POAM) remediation.
- Develop project artifacts and system documentation to support cloud cybersecurity initiatives across the program.
- Develop and maintain a ZTA across DoD Impact Level (IL) 2, IL4, and IL5 cloud infrastructure, ensuring continuous compliance with DoD Zero Trust mandates and guidelines.
- Design and implement advanced security architectures for predictive threat detection, response, and real-time security insights to support emerging threat identification and cloud infrastructure resilience.
- Ensure that systems, applications, and components comply with DISA’s Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
- Conduct full-scope vulnerability assessments and penetration testing of new and modified applications, servers, databases, and infrastructure components before deployment.
- Monitor and analyze program cyber resources (e.g., threat detection and response logs, Security Information and Event Management (SIEM) logs, anomaly monitoring and response, account aging and role assessments) and alert stakeholders of abnormal findings.
- Develop, recommend, and implement automated incident response workflows to enhance the speed and efficiency of handling cybersecurity incidents through incident lifecycle management.
- Establish interactive and advanced threat simulation labs and scenario planning exercises to prepare for future cyber challenges.
- Manage and provide expert-level 24/7/365 security monitoring and detection support, monitoring user activities and detecting anomalies that may indicate insider threats or compromised accounts.
What You Will Need:
- A bachelor’s degree in computer science, IT, information systems, or a related field.
- A minimum of EIGHT (8) years of experience in managing cybersecurity projects of similar size and complexity to this requirement within a cloud environment.
- A minimum of EIGHT (8) years of experience with the NIST RMF, NIST SP 800-53, STIGs, SCAP, IAVAs, and FISMA.
- Experience providing cybersecurity design, operations, and enhancement support for AWS GovCloud
- Possess one of the following certifications: CISM, Certified Information Systems Security Officer (CISSO), Federal IT Security Professional-Manager (FITSP-M), GIAC Certified Intrusion Analyst Certification (GCIA), GIAC Cloud Security Automation (GCSA), GIAC Certified Incident Handler (GCIH), GIAC Security Leadership Certification (GSLC), Global Industrial Cyber Security Professional Certification (GICSP), CISSP- Information Systems Security Management Professional (ISSMP), or CISSP
- Must have an ACTIVE and MAINTAINED DOD or Federal Top Secret Clearance
What Would Be Nice To Have:
- Experience analyzing, assessing, and implementing corrective actions based on vulnerability management and penetration testing.
- Experience supporting DoD defensive cyber operational activities, including, but not limited to, information system protection, defense, response (incident handling), reporting, and recovery.
What We Offer:
Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
Benefits include:
Medical, Rx, Dental & Vision Insurance
Personal and Family Sick Time & Company Paid Holidays
Position may be eligible for a discretionary variable incentive bonus
Parental Leave and Adoption Assistance
401(k) Retirement Plan
Basic Life & Supplemental Life
Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
Short-Term & Long-Term Disability
Student Loan PayDown
Tuition Reimbursement, Personal Development & Learning Opportunities
Skills Development & Certifications
Employee Referral Program
Corporate Sponsored Events & Community Outreach
Emergency Back-Up Childcare Program
Mobility Stipend
About Guidehouse
Guidehouse is an Equal Opportunity Employer–Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation.
Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.
If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.
All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process.
If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse’s Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant’s dealings with unauthorized third parties.
Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.