Driven by Innovation and built on Trust rockITdata is a unique SDVOSB services company that partners with leading commercial healthcare/life sciences organizations on cutting edge innovations - think AI automation and data transformation. We then bring those commercially tested solutions to government entities to deliver predictable measurable impact for the American taxpayer and consumer.
The AWS Cloud Administratoris responsible forthe operational health security posture and continuous availability of an AWS GovCloud (IL4) environment supporting the AI Contact Center platform. This role manages IAM policies monitors infrastructure performance enforces compliance baselines coordinates patching and maintenance activities and ensures 99.9% uptime across all AI services. The administrator works closely with the Security Engineer on FedRAMP High compliance STIG hardening verification and audit readiness and supports the development team with environment provisioning and access management.
Key Responsibilities- Manage and monitor an AWS GovCloud environment (us-gov-west-1) hosting Amazon Connect Bedrock Lambda Lex Kinesis S3 CloudWatchQuickSight and Contact Lens
- Administer IAM roles policies and permission boundaries following least-privilege principles for all team members and service accounts across Dev Test UAT and Production environments
- Monitor infrastructure health and performance using CloudWatch dashboards alarms and automated remediation runbooks;maintain99.9% uptime SLA for AI services and 99.5% for production environments
- Manage environment provisioning and configuration across the four-tier environment structure (Development Test UAT Production) ensuring parity and change isolation
- Coordinate scheduled maintenance windows and deployment activities with the CAB process via ServiceNow ensuring zero-downtime deployments where possible
- Implement and maintain CloudTrail logging VPC Flow Logs and CloudWatch Logs for all AI services; format and forward logs to the SIEM for security monitoring
- Support the Security Engineer with FedRAMP High compliance activities: continuous monitoring POA&M tracking security control evidence collection and audit artifact preparation
- Manage S3 bucket policies encryption configurations (SSE-S3 SSE-KMS) and lifecycle rules for call recordings transcripts and AI inference logs
- Monitor AWS service quotas and request increases as call volumes scale; track Bedrock inference consumption Lambda concurrency and Kinesis shardutilization
- Configure andmaintainAWS backup strategies for critical data stores (DynamoDB S3) with documented recovery procedures
- Respond to operational incidents per the incident management framework; perform root cause analysis and implement preventive measures
- Support 24x7x365 monitoring and on-call rotation for production environment availability
- Maintain operational runbooks and standard operating procedures for common administrative tasks incident response and disaster recovery
Required Qualifications- 3 years of experience administering AWS environments in production including IAM VPC CloudWatch CloudTrail S3 Lambda and KMS
- Experienceoperatingwithin AWS GovCloud or equivalent FedRAMP-authorized cloud environments
- Strong understanding of IAM policy design service control policies permission boundaries and cross-account access patterns
- Proficiencywith CloudWatch monitoring alarms dashboards and log management (CloudWatch Logs Log Insights)
- Experience with infrastructure-as-code (CloudFormation CDK or Terraform) for environment provisioning and change management
- Familiarity with NIST 800-53 security controls FedRAMP continuous monitoring requirements and DFARS 252.204-7012
- Understanding of encryption at rest (KMS SSE) and in transit (TLS 1.2/1.3) implementation in AWS
- Experience with incident management processes and on-call rotations in production environments
- Knowledge of serverless architecture administration (Lambda API Gateway Kinesis S3 event triggers)
- Strong documentation skills for runbooks SOPs and compliance evidence
- Bachelors degree in Information Technology Computer Science Cybersecurity or related field (or equivalent experience)
Preferred Qualifications- AWS certifications:SysOpsAdministrator Solutions Architect or Security Specialty
- Experience with Amazon Connect administration and Contact Lens configuration
- Prior work in IL4/IL5 or DoD environments with STIG compliance requirements
- Familiarity with ServiceNow for change management and incident tracking
- Experience with Azure GCC High environments and Azure-to-AWS interoperability
- Knowledge of HIPAA technical safeguards and healthcare data handling requirements
- Experience with AWS Organizations Control Tower or multi-account governance
#LIREMOTE
Here at rockITdata we are committed to following our 10 Guiding Principles.
Our Guiding Principles define our culture. Theyre who we are how we work and what inspires us to be the best. We empower our people to be themselves and encourage an entrepreneurial way of our challenging fast-paced environment no day is the same.
Know the Why.
Value People Above All Else.
Transparency to a Fault.
Progress Not Perfection.
Be Good by Doing Good.
Smart People Can Disagree.
Bend but Dont Break.
Represent Your Brand.
Think Differently.
Be Amazing Be Fearless Smile Have Fun!
Interested in joining something unique Join us on our rockIT ship as we begin to blast off to the next chapter in our organization!
rockITdata has become aware of a recruitment scam where unauthorized individuals are impersonating rockITdata recruiters issuing fake job offers and attempting to setup payment for the job seekers new hire costs. No one is ever required to complete any monetary transactions before starting employment with rockITdata. Legitimate rockITdata communications only come from @ email addresses and our official Applicant Tracking system JazzHR (@ email addresses). Please refer to our official Careers page at to accurately submit your application with us. You may also verify any suspicious communication by contacting our recruitment team directly through our official email
rockITdata is an equal opportunity employer and is committed to non-discrimination in all employment practices and decisions. All qualified applicants will receive consideration for employment without regard to disability status veteran status or any characteristic protected by Federal state or local law.
rockITdata wants all interested and qualified candidates to be able to use our career site to review and apply for employment opportunities. If you have a disability and need an accommodation to access the application process please contact us for assistance at