About the company
This position is listed on behalf of a partner company, who manages all applications and next steps.
Responsibilities
- Design and implement security controls across AWS environments, including IAM, Service Control Policies, VPC security, S3 policies, and encryption key management.
- Build and maintain Infrastructure as Code solutions using Terraform to enable secure, repeatable, and scalable cloud deployments.
- Integrate security practices into CI/CD pipelines by implementing automated testing, scanning, and DevSecOps processes.
- Monitor, evaluate, and improve cloud security posture using tools such as GuardDuty, Security Hub, AWS WAF, and CloudTrail.
- Establish and enforce identity and access management best practices, including least privilege access, role-based access control, federated identity, and automated remediation.
- Conduct threat modeling, architecture reviews, and security assessments to identify and mitigate vulnerabilities before deployment.
- Investigate security incidents, support response activities, and develop preventive measures based on findings and lessons learned.
- Develop and maintain security policies, procedures, and controls aligned with federal compliance standards such as FedRAMP and DoD IL-4/5.
- Create reporting frameworks and security metrics to communicate risk, trends, and recommendations to technical and business stakeholders.
- Provide technical guidance and security expertise to engineering teams while promoting secure development practices.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent military experience.
- 5+ years of experience securing AWS environments and 5+ years of overall cybersecurity experience.
- Deep knowledge of AWS security architecture, cloud security controls, and infrastructure protection practices.
- Strong experience with Terraform and Infrastructure as Code methodologies.
- Hands-on experience implementing GitLab CI/CD pipelines and DevSecOps security practices.
- Familiarity with cybersecurity frameworks including NIST, CIS, and MITRE ATT&CK.
- Strong analytical skills with experience in log analysis, event investigation, threat detection, and incident response.
- Ability to evaluate security risks and communicate technical recommendations to both technical and non-technical audiences.
- Strong ownership mindset with a commitment to continuous learning, process improvement, and technical excellence.
- AWS Certified Security – Specialty certification preferred.
- CISSP or other relevant cybersecurity certifications preferred.
- Ability to work in the United States and successfully complete required background checks.
- U.S. Government security clearance is a plus.
Conditions
- Fully remote work opportunity within the United States.
- Competitive compensation package with opportunities for professional growth.
- Opportunity to work on advanced cloud security challenges supporting federal environments.
- Exposure to cutting-edge cybersecurity technologies and modern DevSecOps practices.
- Collaborative environment with experienced security professionals and engineers.
- Opportunity to influence security architecture, automation strategies, and compliance initiatives.
- Support for continuous learning and development through challenging technical projects.
- Company-approved travel opportunities of up to 5% for events or team summits.
- Dynamic culture focused on ownership, innovation, collaboration, and meaningful impact.