AWS Cloud Security Engineer (W2)

  • Posted 6 hours ago | Updated 6 hours ago

Overview

Remote
$65 - $70
Contract - W2
Contract - 2 Month(s)
No Travel Required

Skills

AWS CLoud Security
SCP
Service Control Policies
Logging
Org CLoud trail
S3 log archive hardening
GuardDuty
Security Hub.
Cribl/SIEM
Terraform modules
Python (boto3)
AWS CLI
Cribl / Firehose / Kinesis
SCP / IAM Policy JSON

Job Details

Job Title: AWS Cloud Security Engineer

Location: Remote Opportunity

Job Description:

Domain Expertise

  • AWS Organizational Governance: Service Control Policies (SCP) design, multi-account patterns, delegated admin setups.
  • Logging & Audit Foundations: Org CloudTrail, AWS Config aggregator, S3 log archive hardening, GuardDuty, Security Hub.
  • CSPM / CNAPP Operations(Wiz.io): Onboarding accounts/resources, tuning posture policies, integrating with ticketing and log routing (e.g., Cribl/SIEM).
  • Infrastructure as Code: Terraform modules, reusable patterns, policy-as-code integration, CI scanning.
  • Vulnerability & Risk Prioritization: Combining CVSS, exploit context, asset criticality, and signal sources into severity logic.
  • Automation & Scripting: Python (boto3), AWS CLI, shell tooling for validation, evidence export, reporting.
  • Identity & Access: IAM least privilege, cross-account role assumptions, permission boundaries, automation roles.
  • Observability / Data Routing (Plus): Cribl / Firehose / Kinesis or equivalent pipeline familiarity.
  • Compliance Awareness: HIPAA safeguard themes (auditability, access control, data protection, etc).
  • Metrics & Reporting: Designing & extracting KPIs (coverage %, MTTR, SLA compliance, control efficacy).

Technical Skills Skill Depth Needed Context

  • Terraform Advanced CNAPP onboarding, scanning pipeline
  • Python (boto3) Advanced Validation & evidence automation
  • AWS Security Services Deep Guardrails + findings pipeline
  • SCP / IAM Policy JSON Deep Precise preventive controls
  • CNAPP tooling Advanced Wiz configuration
  • AWS Config / Conformance Packs Advanced Framework rule deployment
  • Event & Log Pipelines Intermediate Cribl
  • CI/CD (GitHub Actions, Azure DevOps, or similar) Intermediate Shift-left scanning & gating
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.