- Audit and enhance existing AWS security configurations
- Implement security best practices across AWS environments
- Harden accounts/org-level architecture using tools like CloudTrail, GuardDuty, SCPs, IAM, VPC, etc.
- Contribute to vulnerability management and remediation activities
- Automate compliance and security changes using Infrastructure as Code (Terraform preferred)
- Support documentation and topology mapping of environments
- Collaborate with InfoSec, IT, Product, and Operations teams to support secure architecture decisions
Key Requirements
- 6+ years of experience in Cloud Security within AWS environments
- Strong background in IT systems/application engineering
- Hands-on with IaC tools (Terraform preferred)
- Proficiency in Python or Golang for scripting and automation
- Robust understanding of network security and OSI model
- Experience with security standards such as SOC2, NIST 800-53, GDPR, PCI DSS
- Knowledge of cloud-native security tools: AWS Config, Security Hub, S3 Policies, WAF, etc.
Nice to Have
- Experience deploying IaC via CI/CD pipelines
- Familiarity with Open Policy Agent for policy enforcement
- Exposure to Attack Surface Management tools and Cloud Security Posture Management