ForgeApply
Try it free

ForgeApply · Job listing

Cloud Platform Engineer

ICF

Remote · Washington, DC | Virginia Remote Office (VA99) | Maryland Remote Office (MD99), US$108k – $184k

Tailor your resume for this ICF job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for ICF's site. Free trial, no card required.

About this role

This role is contingent upon a contract award.  

ICF is seeking a Cloud Platform Engineer to deploy, configure, and   maintain   cloud infrastructure for a federal technology program. Reporting to the Cloud / Enterprise Architecture Lead, this role   is responsible for   building and   operating   the multi-cloud landing zone environment using infrastructure-as-code and   DevSecOps   practices. Where the EA Lead sets architecture standards and policy, this role executes and   maintains   them in production.  

The ideal candidate is a hands-on cloud infrastructure engineer who writes automation before clicking buttons and treats configuration as code. The right candidate has deployed and operated cloud landing zones in federal environments and is comfortable working across Azure, AWS, and GCP with consistent tooling and governance discipline.  

Job Location:   This is a remote-friendly position with occasional onsite requirements in the Washington, DC Metro area.  

This position requires that the job be performed in the United States.   If you accept this position, you should note that ICF does monitor employee work locations and blocks access from foreign locations/foreign IP addresses   and also   prohibits personal VPN connections.  

What You'll Be Doing  

• Deploy and manage cloud landing zone architectures across Azure, AWS, and Google Cloud Platform using repeatable, automated provisioning with identity-first controls, guardrails, network security, and policy enforcement.  

• Implement infrastructure and policy as code using   IaC   templates, GitHub Actions, and CI/CD pipelines so environments can be created, updated, and audited consistently and without manual intervention.  

• Build and   maintain   system integrations using APIs, SDKs, webhooks, and event streams, with proper   secrets   management, least-privilege scoping, error handling, and logging.  

• Deploy and manage Azure Virtual Desktop for remote access scenarios and specific user personas.  

• Manage DNS-as-code for all agency platforms and services, including certificates and related configurations.  

• Integrate platform logs, alerts, and risk signals into central monitoring tools, and use automation to flag misconfigurations, risky behavior, and suspicious activity.  

• Perform quarterly reviews of cloud environment configurations against security baselines and compliance requirements, using compliance-as-code tooling where available.  

• Coordinate with identity, device, and cybersecurity teams to ensure cloud access policies, device compliance rules, and conditional access work together as part of a consistent Zero Trust model.  

• Maintain documentation of cloud architectures, configuration baselines, runbooks, and operational procedures so others can safely   operate   and extend the environment.  

• Resolve complex cloud platform issues escalated from operations and service desk teams.  

Minimum   Requirements  

• Bachelor's degree or equivalent  

• 5+ years of experience in cloud engineering or platform operations  

• 3+ years deploying and managing cloud landing zones in Azure, AWS, or GCP in production environments  

• 2+ years implementing infrastructure as code using tools such as Terraform, Bicep, CloudFormation, or equivalent  

• 2+ years supporting federal IT programs in HHS, NIH, FDA, or other health-focused agencies  

• U.S. Citizenship   required   due to federal contract requirements  

• Ability to obtain and   maintain   a Public Trust background investigation  

• Candidate must   reside   in the US,   be authorized to   work in the US, and work must be performed in the US  

Preferred Qualifications  

• Experience managing Azure Virtual Desktop or equivalent virtual desktop infrastructure  

• Familiarity with NIST 800-53, FedRAMP, CIS benchmarks, and CISA Zero Trust guidelines as they apply to cloud infrastructure  

• Experience integrating platform telemetry with SIEM or SOAR tools for automated alerting and remediation  

• Relevant certifications such as Microsoft Azure Administrator, AWS   SysOps   Administrator, or Google Cloud Professional Cloud Engineer  

• Experience with   DevSecOps   delivery practices including automated security testing in CI/CD pipelines  

Working at ICF ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer .   Together, our employees are empowered to share their   expertise   and collaborate with others to achieve personal and professional goals. For more information, please read our  EEO   policy.

We will consider for employment qualified applicants with arrest and conviction records.   Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with   sincerely held   religious beliefs, in all phases of the application and employment process. To request   an accommodation,   please email  Candidateaccommodation@icf.com  and we will be happy to   assist . All information you provide will be kept confidential and will be used only to the extent   required   to provide needed reasonable accommodations.   

Read more about  workplace discrimination righ t s   or our benefit offerings which are included in the  Transparency in (Benefits) Coverage   Act.  

Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or   assist   with responses during interviews (whether in-person or virtual) is not   permitted . This policy is in place to   maintai

Salary insight

The midpoint of this range ($146k) is right around the median disclosed salary for Washington DC roles listed on ForgeApply ($149k across 1,097 jobs).

See full DevOps / SRE salary data for Washington DC

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this ICF role before you apply.

Tailor my resume for this job

Similar jobs

More like this: DevOps & SRE Jobs · Remote DevOps & SRE Jobs · DevOps & SRE Jobs in Washington DC · More jobs at ICF · Browse all jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)