{"id":1711902,"url":"https://alion.io/job/kbr-cloud-engineer-2","title":"Cloud Engineer","company":{"id":4344,"name":"KBR","domain":"kbr.com","url":"https://alion.io/company/kbr","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":null},"role":"DevOps","role_family":"DevOps","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":130000,"max":190000,"currency":"USD","period":"year","gross":null,"usd_annual":190000},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"Amazon CloudWatch","optional":false},{"name":"Amazon EC2","optional":false},{"name":"Amazon EventBridge","optional":false},{"name":"Amazon S3","optional":false},{"name":"AWS","optional":false},{"name":"AWS Lambda","optional":false},{"name":"Bash","optional":false},{"name":"CloudFormation","optional":false},{"name":"Docker","optional":false},{"name":"FedRAMP","optional":false},{"name":"Helm","optional":false},{"name":"Kubernetes","optional":false},{"name":"Least Privilege","optional":false},{"name":"Linux","optional":false},{"name":"Python","optional":false},{"name":"Terraform","optional":false},{"name":"Windows","optional":false},{"name":"Windows Server","optional":false}],"status":"live","first_seen_at":"2026-09-28T00:00:00Z","employer_posted_date":"2026-09-28","last_verified_at":"2026-10-06T21:20:51Z","board_verified":true,"closed_at":null,"days_open":9,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":9},"description":"Title:\nCloud EngineerKBR is seeking a highly qualifiedCloud Engineer, AWS Administrator and CloudWatch Specialist to support the Aviation Product Lifecycle Management program. The selected candidate will provide engineering, administration, monitoring, automation, and cybersecurity support for secure Amazon Web Services GovCloud environments supporting Navy and Department of Defense aviation systems. The Cloud Engineer will design, administer, secure, and sustain AWS infrastructure operating at Impact Levels 5 and 6. The position will serve as a technical specialist for Amazon CloudWatch monitoring, Windows and Linux environments, containerized applications, Kubernetes orchestration, disaster recovery, and infrastructure automation. The successful candidate will help ensure that AvPLM systems remain secure, resilient, observable, recoverable, and aligned with applicable Navy and DoD requirements, including established Recovery Time Objectives and Recovery Point Objectives.\nKey Responsibilities\nAWS GovCloud Infrastructure Administration\nAdminister the lifecycle of AWS GovCloud resources, including Amazon EC2 instances, Linux-hosted containers, Amazon S3 storage buckets, Amazon FSx storage shares, and associated network configurations.\nConfigure and maintain secure Virtual Private Cloud environments, including subnets, route tables, security groups, Network Access Control Lists, and transit gateways.\nImplement and maintain Identity and Access Management policies, roles, and permissions in accordance with least-privilege principles.\nUse Infrastructure as Code tools, including Terraform and AWS CloudFormation, to automate infrastructure deployment and configuration.\nDevelop Python and Bash scripts to automate system deployment, patch management, and recurring administrative activities.\nUse AWS Systems Manager to support configuration management, patching, automation, and administration of cloud-hosted systems.\nAmazon CloudWatch Monitoring and Alerting\nDesign, implement, and maintain enterprise monitoring solutions using Amazon CloudWatch, CloudWatch Logs, and AWS EventBridge.\nDevelop and automate deployment of the CloudWatch unified agent across virtual-machine fleets to collect operating-system metrics and system logs.\nCreate custom CloudWatch dashboards that display key performance indicators, infrastructure health, system availability, and disaster recovery readiness.\nConfigure CloudWatch log groups, metric filters, alarms, and alerting capabilities.\nEstablish event-driven remediation and notification workflows by integrating CloudWatch Alarms with AWS Lambda, Amazon Simple Notification Service, and applicable IT service management tools.\nImplement monitoring capabilities for the network traffic, servers, databases, and supporting systems that comprise Commercial Off-the-Shelf Product Lifecycle Management applications.\nMonitor system performance and identify conditions that may affect availability, reliability, security, or mission operations.\nWindows Server Administration\nDeploy, configure, administer, and sustain Windows Server environments hosted on Amazon EC2.\nSupport the availability, security, and performance of cloud-hosted Windows systems.\nAdminister Active Directory, Group Policy Objects, Domain Name System services, and Internet Information Services.\nIntegrate Windows Server environments with DoD Public Key Infrastructure to support Common Access Card authentication.\nPerform operating-system patching, upgrades, vulnerability remediation, and recurring maintenance using AWS Systems Manager, Windows Update Services, or other approved tools.\nContainer and Kubernetes Administration\nDesign, deploy, configure, and administer Kubernetes clusters using Amazon Elastic Kubernetes Service or self-hosted Kubernetes on Amazon EC2, based on AvPLM and COTS application requirements.\nBuild, maintain, secure, and optimize Docker and other container images in alignment with DoD DevSecOps practices.\nAdminister Kubernetes components, including pods, deployments, services, ingress controllers, and Role-Based Access Control.\nManage secure container registries, including Amazon Elastic Container Registry.\nUse Helm and other approved package-management tools to support application deployment, configuration, upgrades, and lifecycle management.\nDisaster Recovery and Contingency Operations\nConfigure, test, and validate AWS disaster recovery capabilities using AWS Backup, AWS Elastic Disaster Recovery, multi-region replication, and other approved AWS-native services.\nCoordinate with system owners, engineering teams, cybersecurity personnel, and other stakeholders to align technical configurations with documented Recovery Time Objectives and Recovery Point Objectives.\nSupport disaster recovery planning for in-scope AvPLM and mission-program applications.\nPlan, coordinate, execute, and document disaster recovery exercises.\nVerify system failover integrity, monitoring performance, application availability, and data-recovery processes following exercises or contingency events.\nIdentify recovery gaps and support corrective actions that improve system resilience and continuity of operations.\nCybersecurity and Compliance\nHarden cloud infrastructure, Windows systems, Linux systems, containers, and supporting services in accordance with applicable Defense Information Systems Agency Security Technical Implementation Guides.\nSupport compliance with FedRAMP requirements and applicable NIST Special Publication 800-53 security controls.\nEnsure log aggregation, system monitoring, and audit configurations comply with applicable Navy and DoD retention requirements.\nCollaborate with Command cybersecurity and information-assurance teams to produce technical documentation supporting Assessment and Authorization activities.\nSupport system authorization and continuous monitoring activities conducted under the DoD Risk Management Framework.\nAssist with vulnerability remediation, security evidence collection, configuration documentation, and technical responses to cybersecurity findings.\nBasic Qualifications\nBachelor’s degree. Relevant additional experience may be considered in accordance with contract requirements.\nMinimum of three years of specialized experience administering cloud systems within an AWS GovCloud or AWS Secret Region government environment.\nDemonstrated experience managing CloudWatch log groups, metric filters, dashboards, alarms, and alert configurations.\nProficiency with AWS Command Line Interface, AWS Systems Manager, Identity and Access Management, Amazon EC2, and Virtual Private Cloud configurations.\nExperience administering Windows Server and Linux operating systems in cloud-hosted environments.\nExperience building or administering Linux-based containers and Kubernetes environments.\nDemonstrated experience using Terraform for Infrastructure as Code.\nProficiency with Python, Bash, or comparable scripting languages for administrative and infrastructure automation.\nPractical knowledge of DISA STIGs, DoD Risk Management Framework requirements, and military disaster recovery planning standards.\nAbility to develop and maintain accurate technical procedures, architecture information, monitoring documentation, and system-administration records.\nRequired Certifications: Candidates must possess the following certifications before onboarding: AWS Certified SysOps Administrator, Associate CompTIA Security+ or another approved IAT Level II baseline certification \nPreferred Certification AWS Certified Solutions Architect, Associate\nPreferred Qualifications\nExperience supporting Navy, Marine Corps, NAVAIR, or other DoD enterprise information systems.Experience administering AWS environments operating at DoD Impact Levels 5 or 6.\nExperience supporting PLM or other complex COTS enterprise applications.\nFamiliarity with IT service management integration and automated incident-notification workflows.\nExperience conducting disaster recovery exercises and documenting recovery results.\nExperience supporting RMF authorization packages, continuous monitoring, or Assessment and Authorization activities.\nStrong written and verbal communication skills, with the ability to coordinate effectively across engineering, cybersecurity, operations, application, and government stakeholder teams.\nScheduled Weekly Hours: 40 hours/week.\nCompensation: $130,000-$190,000. The salary range posted is based on the national average. The offered rate will be based on the selected candidate’s location, knowledge, skills, abilities, and/or experience, contract affordability, and in consideration of internal parity.\nAdditional Compensation: KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels per internal policy or contractual designation. Additional compensation may be in the form of a sign-on bonus, relocation benefits, short-term incentives, long-term incentives, or discretionary payments for exceptional performance.\nKBR Benefits: KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development .\nBelong, Connect and Grow at KBR\nAt KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.\nKBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.","description_format":"text","description_chars":10052,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["401k plan","Flexible schedule","Life insurance"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":true,"industries":["Military","Missiles","Air Defense","Information Security"],"lifecycle":[{"event":"open","at":"2026-10-02T17:31:04Z"}],"visa":[],"liveness":{"score":83,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.835,"p_room":1,"age_days":8,"expected_fill_days":25,"reasons":["conf:1","velocity","win:early","comp:brand"],"computed_at":"2026-10-06T05:45:30Z"},"pay":{"stated_usd_annual":190000,"is_top_pay":true},"html_url":"https://alion.io/job/kbr-cloud-engineer-2","json_url":"https://alion.io/job/kbr-cloud-engineer-2.json","meta":{"generated_at":"2026-10-07T00:15:12Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":369,"day_limit":5000,"remaining_today":4631,"minute_limit":60,"resets_at":"2026-10-08T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":4344},"rest":"https://alion.io/mcp/rest/get_company?id=4344"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fkbr-cloud-engineer-2"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fkbr-cloud-engineer-2"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fkbr-cloud-engineer-2"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/kbr-cloud-engineer-2\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fkbr-cloud-engineer-2"}]}