Full-Time

Cloud Operations Engineer

CyberSheath

CyberSheath

51-200 employees

Cybersecurity compliance consulting for defense contractors

Compensation Overview

$110k - $127k/yr

No H1B Sponsorship

Remote in USA

Remote

Travel expectations are approximately 20%.

US Citizenship Required

Bachelor's

Category
DevOps & Infrastructure (1)
Required Skills
TCP/IP
Bash
SharePoint
Microsoft Azure
LDAP
Microsoft Windows
Microsoft Intune
Vulnerability Analysis
AWS
Linux/Unix

Get referred to CyberSheath

See people who can refer or advise you

Requirements
  • Minimum of 7+ years of experience in system administration, including Microsoft Windows operating systems, Microsoft Azure administration, server management with Active Directory and Group Policy, deployment, and migrations.
  • Hands-on Linux system administration experience with RHEL, CentOS, Rocky Linux, and/or Ubuntu, including user management, package management, shell scripting, and patching.
  • Working knowledge of AWS core services, including EC2, S3, IAM, and VPC, sufficient to provide baseline operational support.
  • Intermediate networking experience with TCP/IP, routing, SSH, and VPN.
  • Knowledge of automation tools and scripting.
  • Knowledge of security tools such as EDR, SIEM, MFA, DLP, and AIP.
  • Must be a U.S. citizen and reside within the United States or its territories.
Responsibilities
  • Provision and deliver computer systems and services across on-premise and cloud-hosted solutions.
  • Perform Office 365 migrations involving email, SharePoint, OneDrive, and Teams; perform server migrations to Azure; and implement Azure technologies.
  • Design and deliver secure cloud solutions in Office 365 and Azure.
  • Configure and support Intune device enrollment, compliance policies, and endpoint management for client environments.
  • Administer, patch, and support Linux server environments hosted on-premise and in the cloud.
  • Troubleshoot Linux system, service, and networking issues, including user and permission management, package management, systemd services, and shell scripting.
  • Apply Linux hardening and patch management practices aligned with DIB and CMMC expectations.
  • Provision, configure, and support AWS workloads, including EC2, S3, IAM, and VPC networking.
  • Assist with migrations and ongoing operations across AWS, including AWS GovCloud where applicable.
  • Support multi-cloud client environments spanning Azure and AWS while maintaining consistent security and operational standards.
  • Perform architecture, design, system evaluation and analysis, and infrastructure assessments.
  • Deploy and maintain tools and monitoring agents such as endpoint protection, vulnerability management, log collection, multifactor authentication, and remote monitoring and management tools.
  • Track activities, detailed case notes, and time entries within the service desk ticketing system.
  • Drive technical implementation tasks to completion by budgeted deadlines.
  • Work with internal stakeholders to identify key tasks and timelines and keep work on time and on budget.
  • Provide timely project-status updates and feedback to internal teams and clients.
  • Communicate proactively with clients to ensure requests are properly addressed.
  • Collaborate with team members to troubleshoot onboarding implementation issues.
  • Perform other duties as assigned.
Desired Qualifications
  • Working experience with government versions of Office 365, Azure, or AWS, including AWS GovCloud.
  • Working experience with the ConnectWise suite of products.
  • A bachelor's degree from an accredited university in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field.
  • Microsoft Azure certifications AZ-104, AZ-305, or AZ-400.
  • AWS certifications including AWS Certified Cloud Practitioner (CLF-C02), AWS Certified SysOps Administrator – Associate (SOA-C02), or AWS Certified Solutions Architect – Associate (SAA-C03).
  • Linux certifications including CompTIA Linux+ or Red Hat Certified System Administrator (RHCSA).
  • Networking and security certifications including Network+, Security+, or CCSP.

CyberSheath provides cybersecurity and compliance services for organizations handling sensitive government data, especially defense contractors. It helps meet standards like NIST 800-171 and CMMC through consulting, risk assessments, compliance assessments, incident response, and staffing resources. It integrates compliance into daily operations, offers privileged access risk assessments, and focuses on outcome-based deployment and risk-based professional services to deliver audit-ready evidence. Its goal is to help clients achieve verifiable, auditable compliance while reducing cyber risk and ensuring expertise is available on demand.

Company Size

51-200

Company Stage

N/A

Total Funding

N/A

Headquarters

Reston, Virginia

Founded

2012

Get referred to CyberSheath

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • June 2026 training relaunch targets the Phase 2 deadline and expands inbound demand.
  • May 2026 wins with Tunnell Consulting and CTG Federal validate delivery in real deployments.
  • Emil Sayegh's August 2025 appointment and BV's majority stake sharpen go-to-market execution.

What critics are saying

  • Nov. 10, 2026 Phase 2 raises execution risk if contractors miss certification windows.
  • C3PAO shortages force waitlists into 2027, squeezing CyberSheath's clients and timelines.
  • If CMMC rules slip or competitors copy its package, CyberSheath loses urgency-driven demand.

What makes CyberSheath unique

  • CyberSheath leads CMMC managed services for the DIB, per 2026 company materials.
  • Its AIM model bundles Assess, Implement, and Manage into one compliance workflow.
  • The ControlCase partnership addresses C3PAO bottlenecks with assessment access and technical readiness.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Flexible Work Hours

Growth & Insights and Company News

Headcount

6 month growth

13%

1 year growth

13%

2 year growth

13%
SEP
Jul 27th, 2026
SEP achieves CMMC Level 2 certification.

SEP achieves CMMC Level 2 certification. SEP news. Westfield, IN - July 27, 2026 - SEP, one of Indiana's largest software development firms, has achieved Cybersecurity Maturity Model Certification (CMMC) Level 2 certification for its development environment, reflecting full implementation of all 110 NIST SP 800-171 Rev 2 security controls with a perfect SPRS score of 110/110. CMMC Level 2 is a Department of Defense certification confirming a contractor fully implements the 110 security controls required to handle Controlled Unclassified Information (CUI) on defense programs. SEP has served aerospace and defense clients since 1989, building software across web, mobile, desktop, embedded, and cloud systems. A small fraction of companies in the Defense Industrial Base (DIB) currently hold CMMC certification, and SEP pursued certification early, building with CyberSheath and assessed by A-LIGN, to give existing and prospective defense clients confidence in how their most sensitive data is handled. "Too many contractors treat CMMC as a box to check. We approached certification to ensure continuity for the defense clients we already serve, and to build a foundation for the work ahead," said Marty Draper, Vice President of IT, Security, and Compliance at SEP. "It was important to us that we could keep supporting our existing defense clients while building toward what's next, without reworking how we operate." SEP partnered with CyberSheath, one of the most experienced CMMC compliance firms in the Defense Industrial Base, to architect the security controls, access policies, and system configurations behind the certification. The environment was independently assessed by A-LIGN, a Certified Third-Party Assessor Organization (C3PAO). SEP's certification is scoped to its defense development environment, which CyberSheath architected alongside SEP's internal IT & Security team to keep pace with SEP's broader business. That structure lets SEP bring on new defense clients within the existing compliance boundary, without expanding scope or reworking the architecture project by project. "Congratulations to SEP for achieving CMMC Level 2 certification. This accomplishment demonstrates a strong commitment to safeguarding valuable information to protect our nation, developing a competitive advantage, and creating a culture of security," said Petar Besalev, EVP of Compliance and Cybersecurity Services at A-LIGN. "We're proud to support this integral step in SEP's compliance journey with a high-quality assessment process and deep expertise in federal compliance." "SEP's accomplishment demonstrates a strong commitment to safeguarding valuable information to protect our nation, developing a competitive advantage, and creating a culture of security." Petar Besalev EVP of Compliance and Cybersecurity Services at A-LIGN Contractors and subcontractors that handle CUI are legally obligated to safeguard it under DFARS clause 252.204-7012, independent of where CMMC's broader certification framework lands. According to the Cyber AB, as of March 2026 only 1,074 organizations nationwide had achieved CMMC Level 2 certification, against a Defense Industrial Base the Department of War has estimated at roughly 80,000 contractors. "This certification is a foundation, not a finish line. We built it to support the defense clients we serve today and to give us room to grow with the ones we haven't met yet," said Draper. "As the requirements around this work continue to evolve, we intend to continue to be a leader in the strategic adoption of them." SEP designs and builds custom software for organizations ranging from Fortune 100 companies to scale-ups. One of Indiana's largest software development firms, SEP's services span the full product lifecycle: strategy, development, design, data, and AI. SEP works across industries including aerospace and defense, heavy machinery, pharma, precision ag, fintech, life sciences and medical devices, consumer IoT, and industrial IoT. Building for the DIB? See the security controls, scope, and partners behind SEP's CMMC Level 2 certified development environment. AI post recap. SEP, an Indiana software development firm serving aerospace and defense clients since 1989, has achieved Cybersecurity Maturity Model Certification (CMMC) Level 2 with a perfect SPRS score of 110 out of 110. The certification confirms SEP fully implements all 110 NIST SP 800-171 Rev 2 security controls required to handle Controlled Unclassified Information for Department of Defense programs. CyberSheath architected the security controls, and A-LIGN, a Certified Third-Party Assessor Organization, conducted the independent assessment. What is CMMC Level 2 certification? CMMC Level 2 is a Department of Defense cybersecurity certification confirming a contractor fully implements all 110 NIST SP 800-171 security controls needed to handle Controlled Unclassified Information (CUI) on defense programs. Does SEP have experience working in aerospace and defense? Yes. SEP has served aerospace and defense clients since 1989, building web, mobile, desktop, embedded, and cloud software for the industry. Links to the A&D industry page. Who helped SEP get CMMC Level 2 certified? CyberSheath architected SEP's security controls and access policies, and A-LIGN, a Certified Third-Party Assessor Organization (C3PAO), conducted the independent assessment. July 27, 2026 Published: July 27, 2026 At SEP, Software Engineering Professionals, Inc. make vital software. The kind that keeps airplanes in the sky, helps farmers feed a growing population, and makes medical devices safe. Whatever industry you're in, bring Software Engineering Professionals, Inc. your toughest challenge. Software Engineering Professionals, Inc. is wired to tackle what really matters - to you, to Software Engineering Professionals, Inc., and to its world. 317.843.1640 16080 Westfield Blvd. Carmel, IN 46033

CyberSheath
Mar 31st, 2026
CyberSheath supports CTG Federal's achievement of CMMC Level 2 certification.

CyberSheath supports CTG Federal's achievement of CMMC Level 2 certification. RESTON, Va. - March 31, 2026 - CyberSheath, a leading provider of cybersecurity and compliance services for the defense industrial base, supported CTG Federal, a U.S. small-business government IT solutions provider, in the implementation and successful achievement of Cybersecurity Maturity Model Certification (CMMC) Level 2. CTG Federal delivers advanced IT infrastructure and mission systems to U.S. government customers, including organizations within the Department of War. As part of its commitment to protecting controlled unclassified information (CUI) and maintaining the highest standards of cybersecurity, CTG Federal established a comprehensive security program aligned to the CMMC Level 2 framework. To support this effort, CTG Federal worked with CyberSheath to augment internal capabilities across several areas of the program, including security architecture validation, control implementation support, and ongoing operational processes required to meet CMMC Level 2 standards. "Defense contractors responsible for handling controlled unclassified information must operate with a high degree of discipline and technical rigor," said Emil Sayegh, CEO of CyberSheath. "CTG Federal demonstrated a strong internal cybersecurity foundation, and we were proud to support their team as they finalized the architecture and operational controls necessary to meet CMMC Level 2 requirements." The formal assessment was conducted by Cybersec Investments, a Certified Third-Party Assessor Organization (C3PAO). Achieving CMMC Level 2 certification validates that CTG Federal's security environment and operational processes meet the Department of War requirements for safeguarding controlled unclassified information. "Cybersecurity and responsible stewardship of government information are core to how we operate," said Brian Reynolds, President and CEO of CTG Federal. "Our team invested significant effort in building a mature security program aligned with CMMC, and CyberSheath provided valuable support during the implementation and validation process. Achieving CMMC Level 2 reinforces our commitment to protecting the missions and information entrusted to us by our government customers." As CMMC requirements expand across the defense industrial base, CTG Federal's certification ensures the company is positioned to continue supporting defense customers that require validated cybersecurity maturity. About CyberSheath Established in 2012, CyberSheath is one of the most experienced and trusted IT security services partners for the U.S. defense industrial base. From CMMC compliance to strategic security planning to managed security services, CyberSheath offers a comprehensive suite of offerings tailored to clients' information security and regulatory compliance needs. Learn more at https://www.cybersheath.com/. About CTG Federal CTG Federal, a Cohesive Technology Group company, is a U.S.-based small business federal IT solutions provider and trusted partner to civilian, defense, and intelligence agencies. The company designs, integrates, and supports mission-ready infrastructure and platforms spanning sovereign AI and high-performance computing (HPC), storage and data management, secure networking, and enterprise services. CTG Federal specializes in delivering complex technology deployments in sensitive environments, with a strong emphasis on cybersecurity, supply chain assurance, and operational excellence. Through a disciplined, customer-first approach and partnerships with leading technology providers, CTG Federal helps government organizations modernize IT, accelerate mission outcomes, and protect critical information. CyberSheath Kristen Morales Lexie Capperella Gregory for CyberSheath

CyberSheath
Aug 20th, 2025
CyberSheath Names Tech and Cybersecurity Veteran Emil Sayegh as CEO

RESTON, Va. - Aug. 21, 2025 - CyberSheath, the largest CMMC managed service vendor in the DIB, has appointed Emil Sayegh as Chief Executive Officer.

Business Wire
Jul 16th, 2025
Social Engineering Expert and Hacker Rachel Tobac to Deliver Keynote at CyberSheath's CMMC CON 2025

CyberSheath, the largest CMMC managed service vendor in the DIB, will host its sixth annual free virtual conference, CMMC CON 2025: Compliance Blueprint - Plan.

Business Wire
Jun 18th, 2025
CyberSheath Launches Revamped CMMC CON Ninja Training Program as Compliance Enforcement Intensifies

CyberSheath launches revamped CMMC CON ninja training program as compliance enforcement intensifies.