Required Qualifications
- 5-8 years of overall IT or security engineering experience, with 3+ years hands-on in AWS infrastructure and AWS security specifically.
- Least-privilege identity design in AWS: IAM, IAM Identity Center and permission sets, roles, service-linked roles, SCPs, and AWS Organizations.
- Network security in AWS: VPC design, segmentation, and traffic controls.
- Encryption and secrets: KMS, Secrets Manager, and key management practices.
- Logging and detection: CloudTrail, Config, GuardDuty, and Security Hub, including finding aggregation and remediation.
- Experience writing AWS Lambda functions and Athena queries to analyze CloudTrail data centrally.
- Infrastructure as Code (Terraform or CloudFormation) for provisioning and enforcing secure configurations.
- CI/CD security: GitHub Actions OIDC,
short-lived federated credentials, and elimination of static cloud secrets.
- Remediation ownership: triage, tracking, exception governance, and evidence collection.
- Experience delivering in regulated environments (e.g. PCI DSS, SOC 2, ISO 27001, NIST, FFIEC-aligned programs, FedRAMP, or client-specific control frameworks) with audit-ready evidence expectations.
- Experience working in Agile delivery environments using tools such as Jira, Azure DevOps, Confluence, ServiceNow, GitHub, GitLab, or equivalent.
- Solid written and verbal communication and client-facing delivery skills.
📌 Aws Engineer (Hyderabad)
🏢 PwC
📍 Hyderabad