Overview
Skills
Job Details
Design and implement secure cloud architectures using AWS services (EC2, S3, Lambda, RDS, ECS, EKS, etc.).
Develop and enforce Identity and Access Management (IAM) policies, roles, and permission boundaries.
Implement network security controls, including VPC segmentation, security groups, NACLs, and private endpoints.
Integrate and manage AWS Security Hub, GuardDuty, Macie, Detective, Config, and CloudTrail for continuous monitoring.
Conduct risk assessments, threat modeling, and vulnerability management for AWS workloads.
Ensure compliance with standards such as CIS Benchmarks, NIST 800-53, ISO 27001, PCI-DSS, SOC 2, and FedRAMP.
Design and deploy encryption strategies using KMS, CloudHSM, and Secrets Manager for data protection.
Collaborate with DevOps teams to implement DevSecOps pipelines using AWS CodePipeline, Terraform, or Jenkins.