Role Summary
We are seeking a Senior AWS DevSecOps Engineer to integrate security throughout the software delivery lifecycle while supporting healthcare modernization and cloud migration programs.
The candidate will establish secure CI/CD pipelines, automate compliance controls, and implement cloud-native security best practices.
Key Responsibilities
- Implement DevSecOps frameworks across AWS platforms.
- Embed security controls into CI/CD pipelines.
- Perform infrastructure security reviews and risk assessments.
- Integrate vulnerability scanning and policy enforcement into deployment pipelines.
- Manage secrets, certificates, encryption, and key management solutions.
- Support AWS Security Hub, GuardDuty, Inspector, AWS Config, and IAM Access Analyzer.
- Conduct threat modeling and security architecture reviews.
- Support audit readiness, HIPAA compliance, and ISO security standards.
- Automate cloud governance and compliance reporting.
Required Skills
- AWS Security Services
- DevSecOps
- Terraform
- GitHub Actions Security
- Vulnerability Management
- Secrets Manager
- AWS KMS
- Security Hub
- GuardDuty
- AWS Config
- SAST/DAST tools
- Python/Bash Automation
Preferred Experience
- Healthcare compliance (HIPAA/HITRUST)
- SOC2 / NIST Frameworks
- Cloud security architecture
- Regulated environments