Haystack
← Back to Jobs
Technology
TS

AWS IAM/Platform Engineer Hybrid

Tektree Systems Inc.Raleigh, NC🇺🇸United StatesPosted Sep 22, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Raleigh, NC, United States
Posted
18 hours ago
AWSSSOCDKCloudFormationGitPythonTerraform

Job Description

 The top 3 skills required for this role:


AWS IAM, IAM Identity Center (SSO), Identity Governance, RBAC, Access Management
Terraform, Python Automation, Lambda, Step Functions, EventBridge, CI/CD

Job Description/ Responsibilities

  • Design, implement, and manage AWS IAM and IAM Identity Center solutions across enterprise multi-account AWS environments.
    * Develop IAM policies, permission boundaries, trust relationships, RBAC, permission sets, and least-privilege access models.
    * Manage AWS Organizations governance including SCPs, RCPs, tag policies, backup policies, guardrails, and account lifecycle controls.
    * Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring.
    * Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
    * Support governance-as-code and IAM automation through Git, CI/CD pipelines, CloudFormation, CDK, or Terraform with automated validation.
    * Deep expertise in AWS IAM, IAM Identity Center, AWS Organizations, Control Tower, IAM policy language, evaluation logic, cross-account access, and permission boundaries.
    * Hands-on experience with AWS Config, GuardDuty, CloudTrail, Security Hub, compliance monitoring, and remediation automation.
    * Strong Python development skills with AWS Lambda, Step Functions, EventBridge, Boto3, APIs, and event-driven automation frameworks.
    * Experience with Git-based source control, CI/CD pipelines, version-controlled policies, permission sets, and governance configurations.
  • Preferred Qualifications / Certifications
    * Experience implementing enterprise AWS Landing Zones, account vending, onboarding, and governance automation across AWS Organizations.
    * Hands-on IAM Identity Center permission set management and account assignment automation through CI/CD pipelines.
    * Familiarity with Terraform, CloudFormation, AWS CDK, GitOps approaches, compliance frameworks, and identity governance patterns.
    * Preferred certifications: AWS Solutions Architect Associate/Professional, AWS Security Specialty, AWS DevOps Engineer Professional.
    Soft Skills
    * Strong problem-solving, independent ownership, stakeholder communication, and ability to translate security and governance requirements into scalable AWS solutions                             Years of Experience:    15.00 Years of Experience

Similar jobs