- Bachelor's degree in Computer Science, Engineering, or a related technical field
- 5-7 years in DevOps, platform engineering, or SRE with security meaningfully embedded in that experience
- Hands-on AWS experience: VPC, ECS or EKS, Lambda, API Gateway, IAM, GuardDuty, Security Hub, CloudWatch
- Infrastructure as code using Terraform or AWS CDK; this is non-negotiable
- CI/CD pipeline experience with integrated security tooling: GitHub Actions, GitLab CI, or AWS CodePipeline
- Practical security experience: least-privilege IAM, secrets management, SAST/DAST tooling, encryption
- Familiarity with CIS Benchmarks and NIST controls at an implementation level, not just awareness
- Experience with structured logging, distributed tracing,
and alerting in production environments
- Clear communicator who can explain security and infrastructure decisions to both engineering peers and non-technical stakeholders
Preferred Qualifications
- AWS Security Specialty or AWS DevOps Engineer Qualified certification
- Experience with container security: image scanning, runtime policies, Kubernetes security posture
- Familiarity with compliance frameworks relevant to multi-region platforms (GDPR, data residency)
- Background in B2B, industrial, or manufacturing technology environments