AWS Cloud security lead

Remote • Posted 2 hours ago • Updated 2 hours ago
Full Time
No Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Cloud Security
  • Cyber Security

Summary

We have an AWS Cloud security lead role with one of our direct clients.

Skill : AWS Cloud security lead

Working Model: Fully Remote role

Long term contract

Senior Security Engineer

  • Our client is seeking an experienced Lead Security Engineer to join its Information Security team and play a key role in strengthening and maturing the organization s overall security program.
  • This is a hands-on senior security role, not a purely governance or compliance position. The ideal candidate will have strong experience across IAM, cloud/AWS security, vulnerability management, endpoint security, security monitoring, and enterprise security controls, while also being comfortable working within a CISO-led security environment.
  • The successful candidate will translate security requirements and business risks into practical technical controls, drive implementation across technology teams, and provide clear security metrics, risk reporting, and recommendations to security leadership.

Key Responsibilities

  • Security Engineering & Controls
  • Design, implement, maintain, and continuously improve security controls across cloud, infrastructure, endpoint, network, application, and identity environments.
  • Assess existing security controls, identify gaps, and develop remediation plans.
  • Implement and enhance controls across:
  • Identity & Access Management (IAM)
  • Privileged Access Management (PAM)
  • MFA and RBAC
  • Microsoft Entra ID / Azure AD
  • Endpoint security and EDR/XDR
  • Network security
  • AWS cloud security
  • Vulnerability and patch management
  • Security logging and monitoring
  • Data protection and encryption
  • Application security
  • Security configuration and hardening
  • Work with infrastructure, cloud, application, and engineering teams to integrate security controls across the technology environment.
  • Evaluate security technologies and recommend improvements based on security and business requirements.

Cloud & Identity Security

  • Implement and maintain security controls within AWS environments.
  • Support AWS security monitoring and logging, including Amazon CloudWatch and related security capabilities.
  • Administer and secure enterprise identity environments involving Microsoft Entra ID, Active Directory, IAM, PAM, MFA, and RBAC.
  • Review cloud architectures and recommend preventive and detective security controls.
  • Vulnerability Management & Endpoint Security
  • Conduct and support vulnerability assessments, vulnerability scanning, configuration reviews, remediation tracking, and security hardening.
  • Support enterprise endpoint security technologies, including CrowdStrike/Falcon or similar EDR/XDR security products.
  • Assist with penetration testing activities and remediation of identified findings.
  • Security Monitoring & Incident Response
  • Work with security operations teams to strengthen SIEM, security logging, monitoring, detection, alerting, and response capabilities.
  • Analyze security events and recommend improvements to preventive and detective security controls.
  • Security Governance, Risk & CISO Support
  • Work closely with CISO/security leadership to support execution and maturity of the organization's Information Security program.
  • Conduct security risk and control assessments and identify security/control deficiencies.
  • Maintain risk registers and track security remediation activities to completion.
  • Develop security metrics, dashboards, risk reports, and management presentations for CISO and executive stakeholders.
  • Assist with third-party/vendor security assessments and due diligence.
  • Security Frameworks & Compliance
  • Work with major Information Security frameworks and standards, including:
  • NIST Cybersecurity Framework
  • SOC 2
  • ISO 27001
  • Support continuous control monitoring and evidence collection.

Security Architecture

  • Review new technologies, applications, infrastructure, and cloud architectures from a security perspective.
  • Identify architectural security risks and recommend appropriate technical or compensating controls.
  • Participate in security architecture and design reviews.
  • Define security requirements for new technology projects and implementations.
  • Promote secure-by-design and security-by-default practices.

Required Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related area, or equivalent practical experience.
  • 7+ years of experience in Information Security, Cybersecurity, Security Engineering, or a related discipline.
  • Strong hands-on security engineering and security control implementation experience.
  • Strong experience with IAM, PAM, MFA, RBAC, Microsoft Entra ID/Azure AD, and Active Directory.
  • Hands-on experience with AWS administration and cloud security.
  • Experience with vulnerability management and vulnerability assessments.
  • Knowledge of endpoint security and EDR/XDR technologies such as CrowdStrike Falcon or comparable products.
  • Experience with SIEM, security logging, monitoring, and incident response.
  • Understanding of Amazon CloudWatch or similar cloud monitoring/logging technologies.
  • Experience with NIST CSF, SOC 2, security risk assessments, control assessments, and audit support.
  • Strong knowledge of Windows Server, Active Directory, Group Policy, Microsoft 365, and SaaS administration.
  • Knowledge of network security, data protection, encryption, application security, and threat mitigation.
  • Experience with scripting/automation using PowerShell, Python, Bash, or similar scripting languages.
  • Experience with virtualization technologies such as VMware and Hyper-V.

Preferred Qualifications

  • Experience working within a CISO-led Information Security organization.
  • Experience with GRC tools and security governance programs.
  • Experience with AWS, Azure, or Google Cloud Platform security.
  • Experience with SIEM, EDR/XDR, IAM/PAM, vulnerability management, DLP, and security monitoring tools.
  • Security architecture and secure cloud/infrastructure design experience.
  • Experience developing executive-level security metrics and CISO reporting.
  • Third-party/vendor security risk management experience.
  • Experience supporting SOC 2 and/or ISO 27001 audits and certification initiatives.
  • Experience developing Information Security policies, standards, procedures, and control frameworks.
  • Preferred Certifications

If this opportunity interests you, please feel free to share your updated resume at

Thanks and Regards,

Ankit Grover

Sr. Executive - TA

Iris Software

200 Metroplex Drive, Suite #300, Edison, NJ 08817

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: irissoft
  • Position Id: 9101327
  • Posted 2 hours ago
Contact the job poster
AG

Ankit Grover

Recruiter @ IRIS Software, Inc.
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

•

Today

Easy Apply

Full-time

Depends on Experience

Remote

•

Today

Full-time

USD 67,703.00 - 90,270.00 per year

Remote

•

Today

Full-time

USD 130,000.00 - 185,000.00 per year

Remote or Hybrid in Atlanta, Georgia

•

13d ago

Easy Apply

Full-time

110,000 - 120,000

Search all similar jobs