onsite
Cloud Security Engineer - addi
Security Engineer
Design, implement, and maintain secure cloud architectures on AWS, automating security controls with IaC and scripting while collaborating with development and operations teams to ensure compliance and resilience.
About the role
Key Responsibilities
- Design and harden AWS cloud environments, applying security best practices across networking, compute, storage, and serverless services.
- Develop and maintain Infrastructure‑as‑Code templates (e.g., Terraform, CloudFormation) to enforce consistent, auditable security configurations.
- Implement automated security testing and remediation pipelines using CI/CD tools and scripting languages such as Python.
- Manage identity and access management, including IAM policies, roles, and privileged access controls.
- Monitor cloud security posture, respond to incidents, and conduct root‑cause analysis to continuously improve defenses.
Requirements
- 3+ years of hands‑on experience securing AWS workloads in a production environment.
- Proficiency with Infrastructure as Code (Terraform, CloudFormation) and automation scripting (Python, Bash).
- Strong knowledge of cloud security frameworks (CIS, NIST, ISO 27001) and AWS native security services (GuardDuty, Security Hub, Config).
- Experience building CI/CD pipelines that integrate security testing (SAST, DAST, IaC scanning).
- Solid understanding of IAM, networking security, encryption, and incident response in cloud contexts.