AWS Platform Security Engineer
Irvine, CA or San Antonio, TX (3 days WFO)
12+month of contract
Job description :-
Overview:
We are seeking a highly skilled Cloud & Data Platform Security Engineer to design, implement, and govern security controls for AWS and Databricks environments that enable secure data analytics and reporting in Microsoft Power BI. This role will focus on identity and access management (IAM), compliance, security monitoring, and configuration hardening across cloud and data platforms.
Key Responsibilities
Identity & Access Management (IAM) Implementation & Governance
- Design and enforce RBAC/ABAC policies, SCIM provisioning, and SSO/MFA for Databricks workspaces.
- Manage identity lifecycle, including onboarding/offboarding and periodic access reviews.
- Integrate Databricks and AWS services with enterprise IAM solutions (e.g., Azure AD, Okta).
- Implement AWS IAM roles, policies, and permission boundaries for secure data access.
- Ensure secure integration between AWS, Databricks, and Microsoft Power BI for reporting.
Security Architecture & Design
- Develop and maintain security architecture for AWS and Databricks environments supporting Power BI analytics.
- Design secure data pipelines and enforce encryption in transit and at rest across AWS S3, Databricks, and Power BI.
- Implement network security controls (VPC, security groups, private endpoints) for AWS and Databricks connectivity.
Security Monitoring & Incident Response
- Investigate and respond to IAM-related and platform security incidents and defects
Compliance & Risk Management
- Ensure adherence to SOC 2, HIPAA, GDPR, and internal security standards across AWS and Databricks.
- Implement data governance policies for sensitive data used in Power BI reporting.
Technical Skills
- Strong knowledge of AWS security services (IAM, KMS, CloudTrail, GuardDuty, VPC).
- Expertise in Databricks security features, cluster hardening, and workspace governance.
- Familiarity with Microsoft Power BI integration and secure data access patterns.
- Proficiency in implementing RBAC/ABAC, SSO/MFA, and SCIM provisioning.
- Understanding of encryption standards (FIPS 140, TLS 1.2+) and CIS benchmarks.
Certifications (Preferred)
- AWS Certified Security Specialty
- Databricks Certified Data Engineer or Security Professional
- CISSP or CISM
- Microsoft Certified: Power BI Data Analyst Associate (optional but a plus)
Thanks & Regards,
Soumya Dixit
Desk:
Email:
Nityo Infotech Corp. |
666 Plainsboro Road, Suite 1285, Plainsboro, NJ 08536