Senior Cloud Security Engineer (AWS & Compliance)
Location: United States (Mid-Atlantic preferred)
Employment Type: Full-Time
About The Role
We’re hiring a
Senior Cloud Security Engineer to help secure and scale a highly distributed, cloud-native platform operating in a
mission-critical and regulated environment. This role blends
hands-on AWS security engineering with
governance, compliance, and secure architecture design.
You’ll work closely with platform, DevOps, and engineering teams to implement
secure-by-design practices, strengthen cloud security posture, and ensure systems meet rigorous compliance standards.
Key Responsibilities
- Design and enhance AWS cloud security architecture, with a focus on IAM, least privilege, and secrets management
- Implement and enforce network security controls (VPC segmentation, security groups, NACLs, private connectivity)
- Partner with DevOps and engineering teams to secure Infrastructure-as-Code (Terraform) and CI/CD pipelines
- Define and maintain security standards, policies, and control frameworks (e.g., NIST, SOC2)
- Build and streamline audit readiness and evidence collection processes
- Configure and optimize logging, monitoring, and alerting for detection and response
- Conduct threat modeling, risk assessments, and security reviews
- Support and improve incident response processes and playbooks
- Document security architectures, patterns, and exceptions
Required Experience
- 7+ years in cybersecurity, cloud security, or platform security engineering
- Strong hands-on experience securing AWS environments
- Deep knowledge of:
- IAM and identity security
- VPC/network security architecture
- Logging, monitoring, and incident response
- Experience with Infrastructure-as-Code (e.g., Terraform)
- Scripting or programming experience (Python, Go, or Bash)
Preferred Experience
- Experience in regulated or compliance-driven environments
- Familiarity with frameworks such as NIST or SOC2
- Experience implementing policy-as-code and security guardrails
- Background in high-reliability or safety-critical industries (e.g., aerospace, defense, robotics, industrial systems)
- Exposure to cloud-native logging and detection systems
- Relevant certifications (e.g., AWS Security Specialty, CISSP)
Technology Environment
- AWS (core cloud platform)
- Terraform, CI/CD pipelines
- Python / Go / Bash
- Docker & cloud-native infrastructure
- Centralized logging platforms (e.g., ELK stack)
What We’re Looking For
- Strong collaboration skills across engineering and security teams
- Ability to balance security rigor with delivery speed
- A risk-based mindset with strong analytical skills
- Clear communicator with experience documenting technical decisions