- Lead implementation and optimization of AWS Cloud Native Security controls across multi-account cloud environments.
- Own security architecture reviews for AWS workloads, containers, serverless applications, and cloud-native platforms.
- Design and automate security guardrails, preventive controls, and compliance monitoring using AWS native services.
- Lead threat detection, vulnerability management, incident response, and remediation activities across AWS environments.
- Manage and optimize AWS Security Hub, GuardDuty, Inspector, Config, CloudTrail, IAM, and Control Tower implementations.
- Drive cloud security posture management (CSPM), workload protection, and continuous compliance initiatives.
- Develop Infrastructure as Code (IaC) security standards, automation scripts, and security remediation playbooks.
- Perform root cause analysis, architecture assessments, and security risk reviews for critical cloud services.
- Establish cloud security governance, operational runbooks, and security best practices.
- Mentor L1/L2 engineers and act as the highest technical escalation point for cloud-native security operations.