Salary
💰 $123,250 - $179,400 per year
Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud Platform
About the role
- Architect and implement AWS landing zones that align with best practices and organizational requirements
- Design and implement secure and scalable cloud landing zones within the AWS environment
- Develop and maintain comprehensive system security plans that comply with industry standards and regulations specific to AWS
- Create and update threat models to identify and mitigate potential security risks within the AWS environment
- Ensure cloud architecture and security practices align with NIST standards and guidelines, including NIST SP 800-53 and NIST Cybersecurity Framework
- Conduct assessments to evaluate compliance with NIST requirements and recommend necessary adjustments to cloud configurations and security controls
- Produce perimeter review artifacts to assess and document security controls and compliance posture in AWS
- Maintain up-to-date documentation of AWS architecture, security policies, and procedures
- Work closely with DevOps, security, and compliance teams to ensure alignment on AWS security strategies and NIST compliance
- Provide guidance and support to development teams on best practices for AWS security and architecture
- Stay current with emerging AWS technologies, security trends, and compliance requirements
- Recommend improvements to existing AWS architecture and security practices to enhance compliance with NIST and other relevant standards
Requirements
- 5+ years of experience in cloud security architecture and design, with a focus on major cloud platforms (e.g., AWS, Azure, GCP)
- 3+ years of experience in cyber security solutions architecture, with a focus on cloud technologies, DevSecOps, and secure system design
- 3+ years of experience in a cloud computing environment (e.g., Azure/AWS/Google Cloud) and related security services
- Experience in Infrastructure as Code (IaC) and CI/CD environments
- Experience creating AWS service provider landing zones, system security plans, and threat models
- Knowledge of NIST standards including NIST SP 800-53 and the NIST Cybersecurity Framework
- Experience producing perimeter review artifacts and conducting compliance assessments
- Security certifications preferred (e.g., CISSP, CISM)
- Relevant AWS certifications preferred (e.g., AWS Solutions Architect Expert)
- Experience facilitating technical discussions, Value Stream Analysis, and process improvement
- Experience in team building and leading cross-functional teams
- Drug-free workplace: post-offer drug testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria met
- Export control requirement: must be a "U.S. Person" as defined by 22 C.F.R. §120.15 (U.S. Citizen, lawful permanent resident, refugee, or asylee)
- Visa sponsorship: Employer will not sponsor applicants for employment visa status