AWS Cloud Security Engineer
Core
Designing and defending the security foundation for multi-account AWS environments powering hyperscale data centers and mission-critical facilities, with a focus on hybrid site-to-cloud connectivity and threat detection.
Role type
Senior IC AWS Cloud Security Engineer
Builds
Multi-account AWS security foundations, site-to-cloud secure paths, threat detection monitoring, and vulnerability management programs.
Domain
Cloud Security / Energy Infrastructure / OT-ICS Adjacent
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Multi-account AWS architecture, AWS Identity and Access Management (IAM), Hybrid network security (VPN, segmentation), Threat detection and mitigation, Infrastructure as Code (IaC), Vulnerability management, Cloud-native security services (GuardDuty, Security Hub, etc.)
Preferred skills
OT/ICS security experience, Detection engineering, Incident response, Compliance frameworks (IEC 62443, NIST), Container/Serverless security
Technologies
AWS Organizations, SCPs, IAM Identity Center, Entra ID, CDK, Terraform, CloudFormation, GuardDuty, Security Hub, Detective, Inspector, Config, CloudTrail, Wazuh, Datadog, Grafana
Responsibilities
Structure multi-account AWS environments with SCPs and guardrails; Design and defend site-to-cloud connectivity and network segmentation; Implement and tune threat detection and monitoring against attacker techniques; Manage vulnerability scanning, triage, and remediation workflows; Automate identity and access management processes.
Seniority
Senior, hands-on IC
