Responsibilities:
- Design and implement secure AWS architectures for enterprise and customer-facing applications.
Define and execute AWS security strategies aligned with business, regulatory, and compliance requirements.
Implement and manage AWS security services such as IAM, KMS, GuardDuty, Security Hub, CloudTrail, AWS Config, and WAF.
Conduct security assessments, risk analyses, and threat modeling; recommend remediation plans.
Establish secure access controls, identity management, and network segmentation practices.
Partner with DevOps and Engineering teams to integrate security into CI/CD pipelines and Infrastructure as Code (CloudFormation/Terraform).
Monitor cloud security posture, support incident response activities, and maintain security documentation and standards.
Required Skills & Qualifications:
10+ years of Information Security experience, including 3+ years in AWS Security Architecture.
Hands-on experience designing and securing AWS cloud infrastructure and services.
Strong knowledge of AWS security tools, logging, monitoring, threat detection, and SIEM integrations.
Experience with containers (EKS/ECS), serverless technologies, and Infrastructure as Code.
Familiarity with security frameworks and compliance standards such as NIST, CIS, ISO 27001, Zero Trust, and NERC CIP.
Knowledge of network security, including VPCs, VPNs, firewalls, segmentation, and secure protocols.
Scripting/automation experience with Python, Ansible, PowerShell, or similar tools.
Experience supporting GRC, audits, and compliance initiatives.
Strong communication and stakeholder management skills.
Preferred certifications: CISSP, CCSP, CISM, AWS Certified Security Specialty, or AWS Solutions Architect