Negotiable
Outside
Remote
USA
Summary: The AWS Security Architect role focuses on designing and implementing secure cloud architectures using AWS services while ensuring compliance with various security standards. The position involves developing IAM policies, implementing network security controls, and managing AWS security tools for continuous monitoring. Additionally, the architect will conduct risk assessments and collaborate with DevOps teams to integrate security into the development process. This role is remote and classified as outside IR35.
Key Responsibilities:
- Design and implement secure cloud architectures using AWS services (EC2, S3, Lambda, RDS, ECS, EKS, etc.).
- Develop and enforce Identity and Access Management (IAM) policies, roles, and permission boundaries.
- Implement network security controls, including VPC segmentation, security groups, NACLs, and private endpoints.
- Integrate and manage AWS Security Hub, GuardDuty, Macie, Detective, Config, and CloudTrail for continuous monitoring.
- Conduct risk assessments, threat modeling, and vulnerability management for AWS workloads.
- Ensure compliance with standards such as CIS Benchmarks, NIST 800-53, ISO 27001, PCI-DSS, SOC 2, and FedRAMP.
- Design and deploy encryption strategies using KMS, CloudHSM, and Secrets Manager for data protection.
- Collaborate with DevOps teams to implement DevSecOps pipelines using AWS CodePipeline, Terraform, or Jenkins.
Key Skills:
- Expertise in AWS services and secure cloud architecture design.
- Strong knowledge of Identity and Access Management (IAM) and security policies.
- Experience with network security controls and AWS security tools.
- Ability to conduct risk assessments and vulnerability management.
- Familiarity with compliance standards such as CIS, NIST, ISO, PCI-DSS, SOC 2, and FedRAMP.
- Proficiency in encryption strategies and data protection methods.
- Experience with DevSecOps practices and tools like AWS CodePipeline and Terraform.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Design and implement secure cloud architectures using AWS services (EC2, S3, Lambda, RDS, ECS, EKS, etc.).
Develop and enforce Identity and Access Management (IAM) policies, roles, and permission boundaries.
Implement network security controls, including VPC segmentation, security groups, NACLs, and private endpoints.
Integrate and manage AWS Security Hub, GuardDuty, Macie, Detective, Config, and CloudTrail for continuous monitoring.
Conduct risk assessments, threat modeling, and vulnerability management for AWS workloads.
Ensure compliance with standards such as CIS Benchmarks, NIST 800-53, ISO 27001, PCI-DSS, SOC 2, and FedRAMP.
Design and deploy encryption strategies using KMS, CloudHSM, and Secrets Manager for data protection.
Collaborate with DevOps teams to implement DevSecOps pipelines using AWS CodePipeline, Terraform, or Jenkins.