Why Work With Us
We believe that exceptional outcomes start with exceptional people. Our culture prioritizes integrity, collaboration, and technical excellence—empowering every team member to contribute to mission-critical projects that directly shape national security, compliance, and digital transformation initiatives. From security operations to cloud modernization, your work will matter here.
Jobs Listing
FedRAMP / FISMA SME
Role Overview
The FedRAMP/FISMA Subject Matter Expert will support compliance, security authorization, and continuous monitoring efforts for federal information systems and cloud environments. The SME will work closely with government clients, engineering teams, and security leadership to ensure adherence to NIST frameworks, RMF, and federal mandates across FedRAMP, FISMA, and related policy requirements.
Key Responsibilities
- Lead FedRAMP and FISMA assessment and authorization activities, including preparation and review of System Security Plans (SSPs), POA&Ms, Continuous Monitoring deliverables, and supporting documentation.
- Guide clients and engineering teams through NIST Risk Management Framework (RMF) processes, security control inheritance, and remediation strategies.
- Conduct compliance assessments, gap analysis, and audit-readiness evaluations for federal programs and cloud service providers (CSPs).
- Coordinate with 3PAOs, auditors, government stakeholders, and internal security personnel throughout the authorization lifecycle.
- Provide advisory support on security architecture, boundary definitions, data flows, and implementation evidence.
- Track compliance posture, control implementation status, corrective actions, and continuous monitoring artifacts.
- Support policy development, documentation alignment, and process improvement initiatives.
Qualifications & Skills
- Bachelor’s degree (technical or cybersecurity emphasis preferred) or equivalent experience.
- Minimum 3+ years of experience in federal cybersecurity compliance or FedRAMP/FISMA programs.
- Strong understanding of NIST SP 800-53, NIST SP 800-37, NIST SP 800-171, and RMF processes.
- Familiarity with FedRAMP PMO guidelines, templates, and ATO requirements.
- Excellent communication and documentation skills, with the ability to articulate complex controls clearly.
- Experience supporting security audits, assessments, or ATO engagements.
- Government or public sector experience strongly preferred.
Clearance / Certifications (Preferred or Required Based on Client)
- Active Security Clearance (preferred or required for certain engagements).
- Relevant certifications: CAP, CISSP, CISA, Security+, or equivalent (preferred).
Cloud Engineer (AWS, Azure, or GCP)
Role Overview
The Cloud Engineer will design, deploy, and optimize cloud infrastructure across AWS, Azure, and/or Google Cloud environments. The role requires experience implementing cloud-native services, infrastructure as code, networking, automation, and performance optimizations while supporting secure and scalable architectures for enterprise and government clients.
Key Responsibilities
- Architect and deploy scalable cloud infrastructure and services using AWS, Azure, or GCP platforms.
- Implement networking, compute, storage, and identity-related configurations for multi-tier and distributed workloads.
- Automate infrastructure provisioning and configuration using IaC (Terraform, CloudFormation, ARM, etc.).
- Support cloud migration projects, workload modernization, and performance tuning efforts.
- Troubleshoot and optimize cloud environments for cost, reliability, and operational efficiency.
- Collaborate with DevOps, security engineers, and program managers to support deployment pipelines and cloud automation initiatives.
- Prepare cloud documentation, runbooks, and deployment artifacts for internal and client stakeholders.
Qualifications & Skills
- Bachelor’s degree in Computer Science, Engineering, or related technical discipline (or equivalent experience).
- 2+ years of hands-on experience with at least one major cloud platform (AWS, Azure, or GCP).
- Experience with infrastructure as code tools such as Terraform, Pulumi, ARM, or CloudFormation.
- Familiarity with CI/CD pipelines, Docker/Kubernetes, and DevOps automation frameworks.
- Strong understanding of cloud networking, identity management, monitoring, and logging.
- Solid troubleshooting and problem-solving abilities in cloud-native environments.
- Effective communication skills for collaborating with cross-functional technical teams.
Certifications (Preferred)
- AWS Associate/Professional, Azure Administrator/Solutions Architect, or GCP Professional certifications.
Cloud Security Engineer
Role Overview
The Cloud Security Engineer will design, implement, and support security controls and compliance initiatives across cloud platforms. This role focuses on cloud-native security architectures, identity and access management, DevSecOps, monitoring, compliance frameworks, and incident response within enterprise and government cloud environments.
Key Responsibilities
- Integrate and optimize cloud security controls across AWS, Azure, and/or GCP platforms.
- Implement IAM controls, zero trust principles, and least privilege access policies.
- Support DevSecOps automation, secure CI/CD pipelines, IaC scanning, and vulnerability management.
- Assist with compliance initiatives (FedRAMP, FISMA, CMMC, HIPAA, etc.) and related cloud security documentation.
- Monitor cloud environments for risks, misconfigurations, and security events; assist with analysis and remediation.
- Collaborate with engineering, compliance, and SOC teams to enforce cloud security best practices.
- Participate in configuration reviews, threat modeling discussions, and architectural design sessions.
Qualifications & Skills
- Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field (or equivalent experience).
- 2+ years of cloud security experience in enterprise or government environments.
- Strong understanding of cloud security frameworks, IAM, network segmentation, and workload protection.
- Experience with security tools such as CSPM, CWPP, CIEM, container security, or vulnerability scanning platforms.
- Familiarity with NIST control frameworks, FedRAMP or government compliance standards is a plus.
- Experience with Terraform, Kubernetes, or DevSecOps tooling is beneficial.
- Strong analytical and communication skills with attention to details.
Certifications (Preferred)
- Security+, SSCP, CISSP, CCSP, AWS Security, Azure Security Engineer, or equivalent.
Ready to Advance Your Career?
XentIT is an Equal Opportunity Employer. We welcome talent from diverse backgrounds and encourage applications from professionals with a passion for cybersecurity, cloud innovation, and continuous learning.
