2

Remote Cloud Security Jobs in Virginia (NOW HIRING)

Cloud Architect Manager

Norfolk, VA ยท On-site +1

$63 - $80/hr

... security, and business teams to enable enterprise transformation. The ideal candidate brings deep ... For positions that are available as remote work, Sentara Health employs associates in the following ...

Security Engineer

Ashburn, VA ยท On-site +1

$99K - $225K/yr

Remote Work: No Job Number: R0248294 Location: Ashburn,VA,US Share job via: Share Security Engineer ... As a systems security and network security engineer, you can identify the enterprise-wide cloud ...

Site Reliability Engineer (Remote)

Vienna, VA ยท On-site +1

$57.25 - $76/hr

Security Management : Lead the development and implementation of security protocols and best practices across our cloud infrastructure. This includes managing identity and access management (IAM ...

Sr. AWS Cloud Engineer III (6823)

Reston, VA ยท On-site +1

$220K - $290K/yr

Support the design and implementation of cloud-based architecture, ensuring scalability, reliability, and security in alignment with industry best practices. * Collaborate with cross-functional teams ...

New

Product Compliance Manager (Remote)

Mclean, VA ยท On-site +1

$154K - $225K/yr

Deep expertise in cloud security and compliance frameworks (e.g., FedRAMP, NIST 800-53, ISO 27001, SOC 2, CSA STAR). * Proven ability to drive enterprise transformation and operational maturity.

New

Senior Security Engineer

Arlington, VA ยท On-site +1

$140K - $180K/yr

Strong candidates will have deep hands-on experience across security engineering, cloud, Linux, networking, automation, and application security, with a desire to learn and work with emerging ...

Cloud Engineer

Chantilly, VA ยท On-site +1

$99K - $225K/yr

Remote Work: No Job Number: R0245212 Location: Chantilly,VA,US Share job via: Share Cloud Engineer ... Ability to obtain a Security+ CE, SSCP, CCNA-Security, or GSEC Certification within 6 months of ...

Cloud Engineer

Chantilly, VA ยท On-site +1

$69K - $158K/yr

Remote Work: No Job Number: R0245205 Location: Chantilly,VA,US Share job via: Share Cloud Engineer ... Ability to obtain a Security+ CE, SSCP, CCNA-Security, or GSEC Certification within 6 months of ...

Showing results 41-60

Remote Cloud Security information

See Virginia salary details

$10

$71

$103

How much do remote cloud security jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for remote cloud security in Virginia is $71.09, according to ZipRecruiter salary data. Most workers in this role earn between $62.45 and $82.93 per hour, depending on experience, location, and employer.

What is a remote cloud security?

A Remote Cloud Security job involves protecting cloud-based systems, data, and infrastructure from cyber threats while working from a remote location. Professionals in this field develop and implement security policies, monitor cloud environments for vulnerabilities, and respond to security incidents. They often use specialized tools to ensure that cloud services comply with industry standards and regulations, and collaborate with other IT teams to maintain a secure cloud infrastructure. Remote Cloud Security roles are in high demand as more organizations adopt cloud technologies and flexible work arrangements.

What are the key skills and qualifications needed to thrive as a remote cloud security professional?

To thrive as a Remote Cloud Security professional, you need a solid understanding of cloud platforms (such as AWS, Azure, or Google Cloud), cybersecurity principles, and relevant security frameworks, often backed by a degree in computer science or information security. Familiarity with tools like SIEM systems, firewalls, vulnerability scanners, and certifications such as AWS Certified Security or CISSP is highly valued. Strong analytical thinking, problem-solving, and communication skills help you assess threats and collaborate effectively across distributed teams. These skills and qualifications are critical for protecting sensitive data, ensuring compliance, and maintaining robust security in cloud environments.

What are some common challenges faced by professionals working in remote cloud security roles, and how can they be effectively addressed?

Remote cloud security professionals often encounter challenges such as rapidly evolving threats, maintaining secure configurations across diverse cloud platforms, and ensuring effective communication with dispersed teams. Staying current with industry best practices and cloud provider updates is essential, as is leveraging automation tools for monitoring and policy enforcement. Regular virtual team meetings and documentation help maintain alignment and foster collaboration, while ongoing training ensures readiness to address new security risks.

What is the difference between Remote Cloud Security vs Remote Cloud Engineer?

AspectRemote Cloud SecurityRemote Cloud Engineer
Primary FocusProtecting cloud infrastructure, managing security protocols, compliance, threat detectionDesigning, developing, deploying cloud applications and infrastructure
Required SkillsSecurity certifications (e.g., CISSP, CCSP), knowledge of security tools, risk managementCloud platforms (AWS, Azure), scripting, infrastructure as code, system architecture
Work EnvironmentSecurity teams, IT departments, cloud service providersDevelopment teams, DevOps, cloud service providers

Remote Cloud Security specialists focus on safeguarding cloud environments through security measures and compliance, while Remote Cloud Engineers build and maintain cloud infrastructure and applications. Both roles often collaborate but serve different core functions within cloud operations.

What are the most commonly searched types of Cloud Security jobs in Virginia?

The most popular types of Cloud Security jobs in Virginia are:

What cities in Virginia are hiring for Remote Cloud Security jobs?

Cities in Virginia with the most Remote Cloud Security job openings:

Infographic showing various Remote Cloud Security job openings in Virginia as of August 2026, with employment types broken down into 79% Full Time, 19% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $147,868 per year, or $71.1 per hour.

Offensive Security Control Assessor Security Control Assessor Representative

Dark Wolf Solutions

Herndon, VA โ€ข On-site, Remote

Full-time

Posted 21 days ago


Key responsibilities

  • Lead security control assessments and evaluate the effectiveness of technical controls across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and AI/LLM application stacks.

  • Review, author, and maintain assessment packages such as SSPs, SAPs, SARs, and POA&Ms tailored to rapid prototyping and AI systems.

  • Coordinate with stakeholders to deliver decision-ready risk briefings and ATO recommendations, and support continuous monitoring and cloud architecture reviews.


Job description

Dark Wolf Solutions is seeking Security Control Assessor/Representatives (SCA/Rs) to lead security control assessments across high-priority projects. Working at the intersection of cybersecurity engineering, cloud architecture, and DevSecOps prototyping, you will evaluate security controls for cutting-edge AI/LLM technologies across multiple classification levels. This position is ideal for a pragmatic cloud assessor or SCAR who excels in fast-paced DevSecOps environments, understands AWS cloud security, and is eager to shape the cybersecurity posture of next-generation DoD AI capabilities.This position will be based out of Arlington, VA with hybrid/remote opportunities. Additional responsibilities include:

Key Responsibilities

  • Execute formal SCA/R duties.
  • Lead security assessment efforts, establishing reusable security playbooks and assessment frameworks for rapid AI deployment into enterprise workflows.
  • Evaluate technical control effectiveness across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and GenAI/LLM application stacks.
  • Bridge the gap between OffSec and development by applying software design best practices. Lead technical exchange meetings (TEMs), participate in Discovery & Framing workshops, and maintain effective communication with cross-functional teams and stakeholders.
  • Act as the primary subject matter expert and lead developer for custom offensive tooling, integrating disparate capabilities into a cohesive, mission-ready platform.
  • Review, author, and maintain assessment packages—including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and POA&Ms—tailored to rapid prototyping and AI systems.
  • Assess technical security risks specific to AI/LLM implementations, such as API exposure, vector database access controls, model integration surface area, and software supply chain dependencies.
  • Support continuous monitoring (ConMon), technical risk evaluations, and cloud architecture reviews across multi-tenant, multi-classification environments.
  • Coordinate with Authorizing Officials (AOs), program managers, and engineering leads to deliver decision-ready risk briefings and ATO recommendations.
  • Provide technical input and oversight for cybersecurity engineering and penetration testing activities across prototype projects.

Required Qualifications

  • Active Top Secret security clearance
  • Current DoD 8570/8140 IAM Level II or Level III certification (e.g., Security+, CySA+, CISM, CISSP, CCISO, CAP/CISC)
  • 5–7+ years of experience conducting security control assessments, compliance testing, or A&A/RMF activities for DoD or federal information systems
  • Solid operational understanding of core AWS cloud services (EC2, S3, IAM, VPCs, Security Groups, Security Hub) and how security controls function within cloud-native and CI/CD pipeline environments.
  • Experience with GitLab CI/CD (pipeline design, runners, artifact management) and AWS Cloud services (EC2, VPC, IAM, S3).
  • Strong working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-37 (RMF), DoD Cloud Computing SRG, and FedRAMP baselines.
  • Demonstrated experience writing and evaluating core RMF artifacts (SSPs, SAPs, SARs, POA&Ms)
  • Exceptional written and verbal communication skills, with the ability to articulate technical risk clearly to executive stakeholders, Authorizing Officials, and engineering teams.
  • Hands-on experience navigating government GRC repositories, such as eMASS or XACTA.

Desired Qualifications

  • Hands-on experience mapping security controls to the NIST AI Risk Management Framework (AI RMF), the OWASP Top 10 for LLM Applications, or the DoD Responsible AI (RAI) Guidelines.
  • Familiarity evaluating secure design patterns for autonomous AI Agents (e.g., tool-calling permissions, sandboxing agent execution environments, prompt boundaries, and ReAct/LangGraph architectures).
  • Experience assessing cloud-managed AI ecosystems and foundation model platforms (e.g., AWS Bedrock, AWS SageMaker, Hugging Face Enterprise, or self-hosted open-source models).
  • Understanding of data protection, access controls, and boundary security for RAG pipelines and vector databases (e.g., OpenSearch Vector Engine, Pinecone, Milvus, or PostgreSQL pgvector).
  • Familiarity evaluating risks unique to LLMs—including prompt injection, data poisoning, model inversion, insecure output handling, and open-source supply chain vulnerabilities in AI libraries (PyTorch, LangChain, LlamaIndex).
  • Exposure to LLM guardrail platforms, evaluation frameworks, or AI security tools (e.g., Promptfoo, Garak, Giskard, NeMo Guardrails) used to test model robustness and output safety.
  • Experience with cATO methodologies, Infrastructure as Code (IaC) templates (Terraform, CloudFormation), and container security (AWS EKS/ECS, Docker).
  • Active AWS Certifications (e.g., AWS Certified Security – Specialty or AWS Certified Solutions Architect).
  • Background or familiarity with offensive security, penetration testing

The salary range for this position is estimated to be between $135,000.00 - $160,000.00, commensurate on experience and technical skillset.

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.