Job Closed
This listing is no longer active.
TOMORROW HIRE is revolutionizing the staffing industry by integrating advanced AI technology with deep human expertise.
Cloud Network Security Architect SME (TIC 3.0) - Public Trust/Secret Clearance
Location
District Of Columbia
Posted
87 days ago
Salary
$160K - $190K / year
Seniority
Mid Level
Job Description
Cloud Network Security Architect SME (TIC 3.0) - Public Trust/Secret Clearance
TOMORROW HIRE
Cloud Network Security Architect SME (TIC 3.0) Location: Fully Remote (East Coast) Clearance: Public Trust, Secret Clearance preferred Employment Type: Full-time Salary: $160,000-$190,000 Role Overview The TIC 3.0 Developer SME will focus on architecting, implementing, and maintaining secure, compliant network environments in AWS with an emphasis on Trusted Internet Connections (TIC) 3.0 principles. This role involves hands-on deployment and management of Palo Alto VM-Series firewalls, infrastructure as code (IaC), hybrid connectivity, and Zero Trust/TIC-aligned security controls, often functioning independently to support federal client requirements. Responsibilities - Architect and manage complex AWS network environments to meet TIC 3.0 and federal security standards. - Deploy and manage Palo Alto VM-Series firewalls in AWS, including configuration of GlobalProtect, Panorama, and security policy orchestration. - Use Terraform or CloudFormation to deploy major networking components via Infrastructure as Code (IaC), ensuring repeatable, documented, and auditable environments. - Configure, troubleshoot, and maintain hybrid connectivity solutions, including AWS Direct Connect, Site-to-Site VPNs, and SD-WAN integrations. - Design and implement Transit Gateway architecture and VPC Peering in multi-account AWS environments. - Apply Zero Trust principles and TIC 3.0 requirements within AWS and Palo Alto ecosystems to enhance application and network security. - Serve as the primary (or sole) Network Architect/Engineer responsible for discovery, documentation, design, and execution of network security solutions with minimal supervision. - Collaborate with stakeholders to ensure secure, compliant network designs that support mission-critical federal applications.
Job Requirements
- Minimum Qualifications
- 5+ years of experience architecting and managing complex AWS network environments
- 3+ years of experience deploying and managing Palo Alto VM-Series firewalls within a public cloud environment (AWS), including with Global Protect, Panorama, and security policy orchestration
- 2+ years of experience with Terraform or CloudFormation, including using IaC to deploy major networking components to ensure repeatable, documented environments
- Experience with Hybrid Connectivity and WAN, including configuring and troubleshooting AWS Direct Connect, Site-to-Site VPNs, and SD-WAN integrations to maintain hybrid-cloud connectivity
- Knowledge of Transit Gateway architecture and VPC Peering in multi-account environments
- Knowledge of implementing Zero Trust or TIC 3 principles within an AWS or Palo Alto ecosystem
- Ability to function as the sole Network Architect or Engineer to be responsible for discovery, documentation, and execution with minimal supervision
- Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
- HS diploma or GED
- Preferred Qualifications
- AWS Certified Advanced Networking – Specialty Certification
- Palo Alto Networks Certified Network Security Engineer (PCNSE) Certification
- Bachelors degree
- Active Secret clearance
Benefits
- Salary: $160,000-$190,000
- Benefits include Health, Vision, and Dental Insurance, and PTO.
Related Guides
Related Categories
Related Job Pages
More Cloud Engineer Jobs
Python Backend Engineer, Cloud Engineer
Wolkenmeister GmbHWolkenmeister steht für moderne Cloud-Beratung mit Fokus auf AWS, AI und echte Mitgestaltung. Keine starren Prozesse – sondern smarte Lösungen mit Raum für Ideen.
• Development and enhancement of Python backends for complex cloud projects • Building infrastructure with Terraform (IaC) and utilizing modern AWS services • Testing, documentation, and working in an agile environment with Jira & user stories • Active collaboration with clients — you act as a consultant on an equal footing • Contributing to ongoing projects, including for a well-known OEM and an innovative AI startup • Optional: Mentoring working students or junior developers
Senior Site Reliability Engineer - Cloud
DFIN - Donnelley Financial SolutionsA leading provider of risk and compliance solutions, DFIN - Donnelley Financial Solutions offers data insights, industry expertise, and insightful technology to
Summary: We are looking for technical team members at all levels who want to push themselves to deliver best in market SaaS solutions. We offer a challenging environment where you will have to grow, adapt and use your skills consistently. Our customers rely on us in the moments that matter. Engineering delivers on that promise. The Senior Site Reliability Engineer is responsible for ensuring our SaaS products are fast, stable and optimized for our customers. SRE's at DFIN take on availability, performance, managing change, monitoring, response and are guardians of non-functional requirements. You either have an SaaS infrastructure background with a programmatic, automated mindset or are someone that comes with a software engineering background with SaaS infrastructure experience. The SRE goal is to build automated systems that reduce or eliminate manual work to keep our products up and running and performing optimally. We are looking for someone who thrives on collaboration within the team and across other groups and can operate independently to deliver solutions. Responsibilities: • Champion and implement a culture of SRE to maintain a high-quality platform infrastructure in DFIN SaaS products • Leverage AI tools to enhance system reliability, including intelligent observability, incident prediction and automated remediation across cloud infrastructure • Evaluate and implement emerging AI powered operations and observability solutions to proactively improve system performance, reliability and scalability • Champion and implement application and infrastructure monitoring and alerting to prevent client impacting issues by ensuring system availability, performance and scalability to maintain SLOs and SLAs • Optimize application performance at scale • Automate everything including system operational runbooks • Define and support continuous integration and deployment pipelines (CI/CD) aligned to branching and quality assurance strategies • Dive deep into technology and stay on the forefront of the latest tools, technologies, and strategies; help evaluate, prototype, and integrate them into work processes • Perform with broad independence and deliver on project milestones and tasks on schedule while communicating progress regularly • Build strong relationships with SRE team members and software engineering teams to hold each other accountable for quality expectations • Learn continuously and apply lessons learned • Evangelize best practices, eliminate bottlenecks, and improve process • Participate in on-call duties 365/24/7 and lead the triage and RCA of production incidents Qualifications: • 5+ years experience designing, building, securing, monitoring and maintaining cloud infrastructure in Azure or AWS • Experience applying AI capabilities within CloudOps operations • Relevant certifications or training in AI, Cloud AI services or AIOps platforms are a plus • 5+ years experience writing software in any modern software language such as C# .NET, Java • 5+ years experience creating automated deployments with tools such as Harness, Azure DevOps, Ansible or Jenkins to manage Infrastructure as Code and software build and deployment in a continuous integration (CI) / continuous delivery (CD) environment • 5+ years experience implementing production performance, availability, and scalability monitoring and alerting using a tool such as New Relic, Dynatrace, DataDog or AppDynamics • 5+ years experience writing scripts in PowerShell or Python/Bash to automate system operations as runbooks for Windows or Linux environments. • 5+ years experience supporting public client facing revenue generating systems • Strong DevOps focus and experience building and deploying Infrastructure as Code with Terraform or similar technology • Experiencing monitoring and preventing issues with databases and database queries (SQL, Cosmos) using tools like Solarwinds Database Performance Analyzer, Idera SQL Diagnostic Manager, or Redgate SQL Monitor • Experience planning, coordinating, developing and executing all stages of post deployment verification test scripts • Experience securing Windows or Linux systems in 24x7 production environment • Experience with containerization and managing Kubernetes clusters (AKS or EKS) • Experience with common cloud networking, firewall and load balancing configuration • BS in Computer Science or equivalent work experience
Role Description Join Mutual of Omaha as a Cloud Engineer on our Common Technology Platform (CTP) Agile Release Train (ART) within the Department of Cloud (DOC)—a team shaping how we design, build, and scale secure AWS solutions across the enterprise. You’ll advance our AWS ecosystem by driving our AWS CDK library and AWS Config Rules, enabling automation, Infrastructure as Code (IaC), and a world‑class developer experience for teams modernizing on Amazon Web Services. In this high‑impact role, you’ll help define the future of Mutual of Omaha’s technology platform used by internal I/S teams, business partners, and ultimately our customers. Qualifications - 5+ years of experience in development including TypeScript and/or Python. - 2+ years of experience in AWS including experience writing and debugging scripts/code for building and managing AWS services, delivered through CDK's. - IaC (Infrastructure as Code) experience including independently building/managing cloud services by automating/orchestrating moderately complex processes using Infrastructure as Code (IaC) within a single cloud environment. - Strong skills in engineering: design, research, requirements gathering, testing, operational support, developing and using quantitative measurements; building and following disciplined processes; building reusable components. - Experience with distributed cloud platform configuration, deployment, and lifecycle management automation tools. - Promote a culture of diversity and inclusion, value different ideas and opinions, and listen courageously, remaining curious in all that you do. - Able to work remotely with access to a high-speed internet connection and located in the United States or Puerto Rico. Requirements - Create innovative cloud solutions by designing and automating infrastructure using AWS CDK, scripting languages, and APIs—bringing ideas to life with Infrastructure as Code. - Partner with teams across the organization to uncover challenges, accelerate delivery, and make the developer experience seamless through modern self-service tools. - Apply engineering excellence to solve complex infrastructure problems—driving automation, self-healing capabilities, and reusable components that scale. - Lead lifecycle automation for distributed cloud platforms, ensuring smooth configuration, deployment, and monitoring for a stable, secure environment. - Build and optimize secure cloud networks, including load balancers, firewalls, and VPN connectivity, to keep our systems resilient and reliable. Benefits - Estimated Salary (Levels have variable responsibilities and qualifications): - Engineer II: $110,000 - $130,000, plus annual bonus opportunity. - Engineer III: $130,000 - $145,000, plus annual bonus opportunity. - 401(k) plan with a 2% company contribution and 6% company match. - Work-life balance with vacation, personal time, and paid holidays.
• Most of the work focused on helpdesk and MS365 • Helpdesk work: ο new users and accounts setup, printer configurations, Network troubleshooting, new device setup, configuration and data migration, Migration of data from old to new devices, SharePoint, Intune, conditional access and other tasks • Troubleshooting issues with end clients • Phone and email/remote support • Remote IT support for our range of managed services customers, ranging from home users to local government entities • Cloud-focused support. That could be Microsoft 365 stack, it could be the configuration of DNS through to SSL Certificates. There will be on-prem infrastructure, as most customers are running Azure AD Sync. • Excellent DNS knowledge • Good understanding of Share Permissions, AD OU structure and NTFS Permissions • Kaseya Autotask PSA, CW Automate, CW Control and ITGlue are our primary tools • Ability to demonstrate your learning achievements • Willingness to upskill and develop your technical skillset



