Security & Policy Engineer

Overview

On Site
$50 - $60
Contract - W2

Skills

Policy Engineer
Security
Amazon Web Services
DevOps
ISO/IEC 27001:2005
Finance
Auditing
SAP GRC
SSO
PCI DSS
Oracle Policy Automation
KMS
AWS Certified
OPA
Rego
Gatekeeper/Kyverno
CISSP

Job Details

Security & Policy Engineer

Location: Scottsdale, AZ (Onsite)

Contract 2 Hire

Summary:

Join our security engineering team to design and enforce policy-driven cloud security frameworks. This role ensures FinTech-grade controls, Zero Trust, and compliance automation across our AWS environments.

Key Responsibilities:

  • Define and manage IAM roles/policies, Security Groups, and NACLs
  • Implement OPA (Open Policy Agent) and Policy-as-Code for multi-cloud/Kubernetes governance
  • Automate compliance enforcement for PCI-DSS, SOC 2, ISO 27001, and internal audits
  • Contribute to Zero Trust Architecture, micro-segmentation, and privileged access governance
  • Collaborate with DevOps and Platform teams to embed security in pipelines (DevSecOps)
  • Monitor and respond to alerts from GuardDuty, Config, CloudTrail, and external SIEMs

Required Skills:

  • Strong expertise in AWS IAM, cross-account access, Secrets Manager, and Identity Federation
  • Hands-on experience with OPA, Rego, and tools like Gatekeeper/Kyverno
  • Knowledge of encryption mechanisms (KMS, CMK), secure key rotation, and access audits
  • Experience in continuous compliance checks, audit readiness, and GRC platforms
  • Background in incident response, threat modeling, and cloud-native security tools
  • Experience protecting PII, financial transaction data, and meeting security SLAs
  • Understanding of token-based access, SSO integration, and access boundary controls
  • Advanced degrees and certifications such as CISSP, AWS Certified Security Specialty, or similar are a plus

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Nexo Global Inc.