Job Role: AWS security Engineer
Location: Raleigh, NC (Remote)
Job Description:
- Excellent Understanding of AWS Services like IAM, VPC, Key Vault, Logging & other native AWS security services(Security Hub, Config, Inspector, Guard duty)
- Good understanding of Cloud misconfigurations, threats, attacks
- Ability to deploy & configure AWS services & resources using Terraform/Cloud Formation
- Good understanding of gathering security & compliance requirements for AWS
- Good understanding of Cloud misconfigurations , attacks & vulnerabilities
- Must have designed AWS Security Landing Zones, Control Tower
- Excellent understanding of AWS Identity Center, Cognito, SCP Policies
- Excellent understanding of Network Firewall, Shield, WAF, Route53
- Good experience in Cloud Key Management, Data Protection and Certificate Management in the cloud
- Good in Architecture Diagrams and Solution Design
- Good understanding of Compliance and GRC
- Technical leadership skills coupled with strong communication skills and analytical skills
- Must have experience in direct customer interaction and stakeholder management.
- Understanding on various compliance frameworks such as ISO 27001, NIST, HIPAA, PCI DSS, GDPR etc
Roles & Responsibilities
Set up secure cloud infrastructure using Terraform/Cloud Formation
Prevent cloud Infra misconfiguration at build time and run time
Configure native AWS Security Services
Identify opportunities to centralize and simplify security controls and processes
Design Secure Landing Zones
Develop Security Reference Architecture Diagrams for Cloud Security
Suggest/Recommend and set-up Cloud Security tools (CSPM, CWPP, CIEM)
Independently execute Cloud Security Assessment for customers and develop roadmap to improve their overall Cloud Security Posture
Work with Alliance partners for Cloud security tools to create value for customers
Work to build Cloud security platforms / labs and execute technical Proof of concept
Supporting/reviewing RFP and RFI proposals, Business use cases.
Consulting on various Cloud security engagements
Good to Have
- OPA
- Other Cloud Security Google Cloud Platform, Azure
- DevOps and CI/CD tooling and frameworks
- (GitHub, Jenkins, Ansible, docker container, Kubernetes) and automation abilities
- Certification - AWS Certified Security Specialty