AWS Cloud Architect

Posted 8 Hours Ago
Be an Early Applicant
Hiring Remotely in US
Remote
180K-215K Annually
Senior level
Artificial Intelligence • Cybersecurity • Quantum Computing • Defense
The Role
Leads the design and implementation of secure, compliant AWS environments, including GovCloud, multi-account landing zones, networking, containers, infrastructure as code, CI/CD, and hybrid connectivity. Translates an existing GCP platform into AWS while maintaining security-control parity and supporting FedRAMP, NIST, CMMC, and ATO requirements. The role also troubleshoots complex infrastructure issues, develops technical documentation, supports continuous monitoring and remediation, and mentors engineers while collaborating with customers and cross-functional teams.
Summary Generated by Built In
Description

Quantum Sky seeking an AWS Cloud Architect to lead the expansion of our existing Google Cloud (GCP) platform into AWS. This role will take the platform’s proven Google Cloud architecture, security controls, and compliance posture and deliver an equivalent, production-ready AWS offering.The ideal candidate combines deep hands-on AWS engineering expertise with experience implementing cloud environments subject to federal cybersecurity and compliance requirements such as FedRAMP, FISMA, DoD Risk Management Framework (RMF), NIST SP 800-53, or comparable regulated security frameworks.This role requires strong knowledge of AWS cloud security, containers, Infrastructure as Code, automation, DevSecOps, and hybrid infrastructure. Candidates must be capable of translating business requirements into secure, compliant, and production-ready cloud architectures.


Responsibilities:

  • Design and implement secure, scalable, and highly available solutions on Amazon Web Services (AWS), including AWS GovCloud (US), that meet security and compliance requirements including FedRAMP, NIST 800-53, CMMC, CIS Benchmarks, and Zero Trust principles.
  • Lead the expansion of our GCP-based platform into AWS, translating its existing architecture, landing zone, and security controls into equivalent AWS services and design patterns.
  • Map GCP services and NIST SP 800-53 control implementations to their AWS equivalents, maintaining feature and control parity across both clouds and documenting control inheritance and evidence for ATO.
  • Refactor and extend the platform’s Terraform modules and CI/CD pipelines to support AWS deployments alongside the existing GCP implementation.
  • Lead technical discovery sessions and develop solution architectures aligned with customer requirements.
  • Design secure networking architectures using Amazon VPC, AWS Transit Gateway, security groups and network ACLs, AWS Network Firewall, Route 53, Elastic Load Balancing, NAT Gateways, VPC endpoints and AWS PrivateLink, and hybrid connectivity via AWS Direct Connect and Site-to-Site VPN.
  • Deploy and operate services such as Amazon EC2, Amazon EKS, Amazon ECS, Amazon S3, Amazon RDS, AWS Secrets Manager, AWS KMS, Amazon CloudWatch, AWS CloudTrail, AWS Config, AWS Security Hub, Amazon GuardDuty, and related AWS services.
  • Implement cloud security controls including least-privilege IAM, network segmentation, encryption and key management, centralized logging, monitoring, vulnerability management, and secure configuration.
  • Build and support containerized platforms using Amazon EKS and Amazon ECS.
  • Develop Infrastructure as Code (IaC) using Terraform or similar automation frameworks.
  • Design and implement CI/CD pipelines supporting infrastructure and application deployments.
  • Automate infrastructure provisioning, configuration management, and operational tasks.
  • Develop technical documentation, architecture diagrams, and implementation guides.
  • Troubleshoot complex infrastructure, networking, security, and application issues.
  • Support security assessment, Authorization to Operate (ATO), continuous monitoring, and POA&M remediation activities, including collection and maintenance of technical evidence.
  • Provide technical leadership and mentor junior engineers.
  • Collaborate with customers, project managers, and engineering teams throughout project lifecycles.
Qualifications

Required:

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or equivalent experience.
  • 7+ years of experience designing and implementing enterprise IT infrastructure.
  • 4+ years of hands-on AWS architecture experience.
  • Strong knowledge of AWS architecture, including IAM roles and policies, AWS Organizations, Service Control Policies, and AWS Control Tower multi-account strategy, Amazon VPC and Transit Gateway, network security, EC2, EKS, S3, CloudWatch and CloudTrail, AWS KMS, and Secrets Manager.
  • Proven hands-on experience developing and customizing AWS landing zone templates using AWS Control Tower, Landing Zone Accelerator (LZA) on AWS, Account Factory for Terraform (AFT), or Customizations for Control Tower (CfCT), including multi-account structure, SCP guardrails, centralized logging and security services, and network baselines for regulated workloads.
  • Strong hands-on experience with Terraform or comparable Infrastructure as Code technologies.
  • Experience implementing CI/CD pipelines using GitHub Actions, GitLab CI, Jenkins, AWS CodeBuild, and AWS CodePipeline.
  • Strong Linux administration and troubleshooting skills.
  • Experience with scripting and automation using Python, Bash, or similar technologies.
  • Hands-on experience supporting systems governed by FedRAMP, FISMA, DoD RMF, NIST SP 800-53, or comparable federal cybersecurity frameworks.
  • Hands-on experience with containers and orchestration, including Docker, Amazon EKS, and Amazon ECS, and container security best practices.
  • Understanding of security control implementation, assessment evidence, continuous monitoring, vulnerability management, and remediation processes.
  • Strong understanding of cloud security concepts, including IAM, network segmentation, encryption, key management, logging, monitoring, vulnerability management, and secure configuration.
  • Ability to produce clear technical documentation and communicate effectively with engineering, security, compliance, and customer stakeholders.

Desired:

  • Working knowledge of Google Cloud Platform (GCP), including GKE, Shared VPC, Cloud IAM, Cloud KMS, and Security Command Center, sufficient to understand the existing GCP platform and translate it to AWS.
  • Advanced Kubernetes experience, including Red Hat OpenShift, container networking (CNI), service mesh technologies (e.g., Istio), and policy enforcement (e.g., OPA Gatekeeper, Kyverno).
  • Multi-cloud implementation experience across AWS and GCP (and/or Azure), including:
    • Identity and access: federated SSO and centralized identity (e.g., Okta, Entra ID, AWS IAM Identity Center), workload identity federation, and consistent least-privilege models across clouds.
    • Networking: cross-cloud connectivity (VPN, interconnect/Direct Connect), IP address management, DNS, and segmentation in hybrid and multi-cloud topologies.
    • Security tooling: cloud security posture management (CSPM), centralized logging and SIEM integration (e.g., Splunk, Sentinel), and vulnerability and compliance scanning across cloud providers.
  • AWS Certified Solutions Architect – Professional
  • AWS Certified Security – Specialty
  • Certified Kubernetes Administrator (CKA)
  • HashiCorp Terraform Associate
  • Security certifications such as CISSP, CCSP, or Security+
About Quantum Sky

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $180,000-$215,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

The world the mission operates in is going post-quantum, contested, and machine-speed. Quantum Sky engineers the advantage across cyber, networks, software, and quantum because the mission demands dominance, not parity. We don't follow the map. We draw it. 


At Quantum Sky, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamQuantumSky? 


Quantum Sky Engineering LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Skills Required

  • Bachelor's degree in Computer Science, Information Systems, Engineering, or equivalent experience
  • 7+ years of experience designing and implementing enterprise IT infrastructure
  • 4+ years of hands-on AWS architecture experience
  • Strong knowledge of AWS architecture, including IAM, AWS Organizations, Service Control Policies, AWS Control Tower, Amazon VPC, Transit Gateway, EC2, EKS, S3, CloudWatch, CloudTrail, KMS, and Secrets Manager
  • Hands-on experience developing and customizing AWS landing zone templates using AWS Control Tower, Landing Zone Accelerator, Account Factory for Terraform, or Customizations for Control Tower
  • Strong hands-on experience with Terraform or comparable Infrastructure as Code technologies
  • Experience implementing CI/CD pipelines using GitHub Actions, GitLab CI, Jenkins, AWS CodeBuild, or AWS CodePipeline
  • Strong Linux administration and troubleshooting skills
  • Scripting and automation experience using Python, Bash, or similar technologies
  • Hands-on experience supporting systems governed by FedRAMP, FISMA, DoD RMF, NIST SP 800-53, or comparable federal cybersecurity frameworks
  • Hands-on experience with Docker, Amazon EKS, Amazon ECS, containers, orchestration, and container security
  • Understanding of security control implementation, assessment evidence, continuous monitoring, vulnerability management, and remediation
  • Strong understanding of cloud security, IAM, network segmentation, encryption, key management, logging, monitoring, vulnerability management, and secure configuration
  • Ability to produce technical documentation and communicate effectively with engineering, security, compliance, and customer stakeholders
  • Working knowledge of Google Cloud Platform, including GKE, Shared VPC, Cloud IAM, Cloud KMS, and Security Command Center
  • Advanced Kubernetes experience, including OpenShift, CNI, service mesh, and policy enforcement technologies
  • Multi-cloud implementation experience across AWS and GCP or Azure
  • Experience with federated SSO, centralized identity, workload identity federation, and cross-cloud least-privilege models
  • Experience with cross-cloud connectivity, IP address management, DNS, and segmentation in hybrid and multi-cloud environments
  • Experience with CSPM, centralized logging, SIEM integration, and vulnerability and compliance scanning
  • AWS Certified Solutions Architect - Professional
  • AWS Certified Security - Specialty
  • Certified Kubernetes Administrator
  • HashiCorp Terraform Associate
  • CISSP, CCSP, Security+, or comparable security certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
969 Employees
Year Founded: 2018

What We Do

Quantum Sky is a Reston, Virginia-based mission technology company, formerly Tyto Athene, that delivers secure, AI-enabled and quantum-ready capabilities to defense, intelligence, and federal civilian agencies. Its work spans enterprise IT, network engineering, cybersecurity, cloud, software, post-quantum cryptography, and applied quantum technologies, helping customers modernize critical systems, protect mission data, and achieve faster, more resilient decision-making across complex, high-consequence missions.

Similar Jobs

Goldschmitt and Associates Logo Goldschmitt and Associates

Cloud Architect

Information Technology • Natural Language Processing • Software
Remote
United States
144 Employees
160K-180K Annually

RevStar Consulting Logo RevStar Consulting

Solutions Architect

Information Technology • Business Intelligence • Consulting
In-Office or Remote
6 Locations
53 Employees

Myriad360 Logo Myriad360

Cloud Architect

Information Technology • Security
Remote
United States
107 Employees
150K-200K Annually

Softchoice Logo Softchoice

Architect

Cloud • Information Technology • Productivity • Security • Software
Remote
United States
140K-175K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees
Vega Thumbnail
Artificial Intelligence • Automotive • Insurance • Transportation
US
43 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account