Cyber solutions that move you forward, faster.
Principal Cloud Engineer
Location
United States
Posted
9 days ago
Salary
$109K - $182K / year
Seniority
Lead
Job Description
Principal Cloud Engineer
Coalfire
• Own the technical integrity of Coalfire’s FedRAMP reference architectures and capabilities across AWS, Azure, and GCP, and across certification levels. • Set the engineering standards delivery teams build against—architecture patterns, security baselines, automation frameworks, and evidence-collection approaches. • Review and approve custom architecture decisions when client requirements fall outside the standard; promote recurring customizations into the reference architecture so the standard improves every quarter. • Serve as a technical escalation point for delivery teams on architecture and security design questions to improve client outcomes. • Keep reference architectures current with evolving FedRAMP requirements, including machine-readable compliance packaging (OSCAL or JSON) and continuous-monitoring mandates. • Mentor engagement architects and senior engineers; raise the technical bar across the delivery organization. • Partner with the sales organization on solution shape for the most strategic pursuits. • Represent Coalfire’s technical point of view in the FedRAMP community—working groups, public comment, and industry forums.
Job Requirements
- BS or above in a related Information Technology field or equivalent combination of education and experience
- 10+ years in cloud security engineering and architecture, including principal- or staff-level scope
- Hands-on FedRAMP authorization experience—building, operating, or assessing FedRAMP environments
- Demonstrated design-authority experience: owning standards, running architecture review, and documenting decisions in a form other engineers build from
- Deep expertise in infrastructure-as-code (Terraform or equivalent), CI/CD, policy-as-code, and compliance automation
- Architecture depth on at least two of the three major cloud platforms (AWS, Azure, GCP)
- Fluency in NIST 800-53 and the FedRAMP control framework, as well as CMMC and DoD compliance standards
- Excellent communication, organizational, and problem-solving skills
- Effective documentation skills, including technical diagrams and written descriptions
- Ability to work independently and as part of a team with a professional attitude and demeanor
- Critical thinking, and the ability to balance security requirements with mission needs
- Professional/Expert-level certification in at least one major cloud platform (AWS, Azure, or GCP)
Benefits
- paid parental leave
- flexible time off
- certification and training reimbursement
- digital mental health and wellbeing support membership
- comprehensive insurance options
Related Guides
Related Categories
Related Job Pages
More Cloud Engineer Jobs
Engagement Architect – Cloud Architecture, FEDRAMP
CoalfireCyber solutions that move you forward, faster.
• Own client engagements end-to-end: from contract signature through environment build, control implementation, automated evidence pipelines, and handoff to managed operations. • Instantiate Coalfire’s reference architecture for the contracted certification level and cloud platform, adapting it to the client’s application and boundary. • Lead implementation of security controls and the automation that continuously validates them—the evidence a modern FedRAMP certification runs on. • Coordinate Coalfire’s engineering teams as they deploy their capabilities (identity, monitoring, change management, and more) into your engagement. • Drive the build through defined quality gates, with a clean, measurable transition to operations—every in-scope control implemented, validated, and stable. • Serve as the client’s primary technical counterpart: run technical working sessions, manage milestones and risks, and keep scope honest. • Document architecture decisions and feed lessons from each build back into Coalfire’s standards.
• Design and implement the security capabilities that satisfy FedRAMP’s Key Security Indicators (KSIs) within your team’s specialty domains. • Build the Security Decision Record (SDR) automation that deploys those capabilities repeatably across many client environments—infrastructure-as-code, pipelines, and configuration baselines, not one-off builds. • Develop automated validation and continuous-monitoring evidence for each capability, so the certified state is provable every day. • Deploy into client environments as the subject-matter expert for your domain: land the capability, integrate it with the client’s stack, troubleshoot, and harden. • Bring lessons from every deployment back to your team, improving the standard implementation for the next client. • Mentor junior team members by reviewing their work, sharing best practices, and guiding them through troubleshooting and operational standards. • Contribute to documentation, runbooks, and machine-readable compliance artifacts. • Support both new FedRAMP environment builds and the modernization of existing ones. • Author and peer review detailed design and security documentation, inclusive of vendor best practices.
Role Description The Cloud Service Administrator I reports to the Service Center Manager and is responsible for providing support for a wide-array of systems related to the OpSus Cloud and Technical Solutions Group division. The Cloud Service Administrator I will be primarily responsible for ensuring customer calls and self-service requests are addressed, tracked, communicated about, and resolved in a timely manner. The Cloud Service Administrator I provides support for incidents to restore service(s) as soon as possible along with pro-actively monitoring the infrastructure and responding to alerts as applicable. - Ensure inbound phone calls and self-service requests are addressed appropriately in a timely manner using excellent customer service skills. - Identify, troubleshoot, and resolve customer and systems issues. Utilize standard and ad-hoc procedures to perform first level issue resolution for systems. Use appropriate tools to track and report problem status and escalate to internal support, vendors, and management within established SLA’s. - Follow all issues to resolution, engaging others as needed. Acts as the primary contact for the customer providing a single point of interaction. - Reference and utilize technical resolution documentation, such as knowledge base articles, on systems, infrastructure, and processes. - Follow security procedures, standards, and protocols related to all technologies. - Actively monitor all infrastructure and systems and ensure resolution to any monitoring alerts. Work with engineering to resolve any alerts as necessary. - Adhere to standards for availability and business continuity. - Work directly with customers, utilizing excellent customer service skills, during all phases of the customer relationship. - The Service Center will be required to answer support calls from customers and work to resolve their issues. Qualifications - One year or more of progressive experience in supporting a combination of Microsoft and Linux Operating Systems, VMware vSphere virtualization required. - End-user and infrastructure desktop support experience with either physical or virtual desktop technologies strongly preferred. - Working knowledge of Microsoft operating systems, networking concepts, and computer hardware required. - Experience in executing periodic systems patching and updates on a regular basis required. - Experience with supporting advanced blade architecture such as Cisco UCS and HP BladeSystem preferred. - Experience with advanced datacenter wide virtualization preferred. - Previous Customer Service, Call Center, Help Desk and/or Service Desk experience preferred. Requirements - Bachelor degree in Information Management, Computer Science, or other related field or an equivalent amount of experience is preferred for this position. - Certifications in Microsoft, VMware, Storage, A+, Network+, and other Cloud Technologies considered a plus for this position. - Excellent customer service skills required along with the ability to manage multiple customer issues at the same time. Benefits - Competitive salary and above average benefit packages. - CloudWave is a drug-free, EEO employer.
Cloud and AI Platform Architect
HealthesystemsHealthesystems is a specialty provider of innovative medical cost management solutions for workers’ comp industry.
• Lead culture of change for cloud adoption • Develop and coordinate the cloud architecture • Refine and coordinate the adoption of the Cloud Strategy • Collaborate with stakeholders to move from traditional infrastructure vendors toward cloud providers • Partner with EA and other stakeholders to create governance for on-prem and cloud infrastructure • Collaborate with architecture, SMEs, and stakeholders to evaluate, design, and validate cloud and infrastructure architectures • Define and guide the enterprise AI platform and ecosystem architecture • Establish architecture standards and governance guardrails for responsible AI adoption • Drive sustainable cloud and infrastructure cost optimization

