remoteonsite
AVP, AWS Security Engineer - LPL Financial
Security Engineer
Lead AWS security initiatives, architecting secure landing zones, enforcing IAM policies, and driving compliance across the Cloud Center of Excellence to elevate enterprise security posture.
About the role
Key Responsibilities
- Design, implement, and maintain secure AWS landing zones aligned with enterprise Information Security standards.
- Lead IAM strategy, including role-based access control, least privilege enforcement, and multi‑factor authentication across all cloud resources.
- Develop and enforce cloud governance policies, automating compliance checks and remediation workflows.
- Collaborate with cross‑functional teams to integrate security controls into CI/CD pipelines and infrastructure as code.
- Conduct security assessments, penetration tests, and incident response drills to identify and mitigate risks.
Requirements
- 8+ years of experience in cloud security, with deep expertise in AWS services and security best practices.
- Proven track record designing secure cloud architectures and implementing IAM, encryption, and network segmentation.
- Strong knowledge of compliance frameworks (SOC 2, ISO 27001, PCI‑DSS) and experience with automated compliance tooling.
- Excellent communication skills, able to translate technical security concepts to non‑technical stakeholders.
- Relevant certifications such as AWS Certified Security – Specialty, CISSP, or equivalent are highly desirable.