Quick Overview
Seniority
Mid Senior
Work mode
Remote
Location
United States
Posted
1 week ago
AWSEncryptionMFASOC 2Active DirectoryAzureBashGoogle CloudPenetration TestingPowerShellPythonVMware
Job Description
We have an AWS Cloud security lead role with one of our direct clients.
Skill : AWS Cloud security lead
Working Model: Fully Remote role
Long term contract
Senior Security Engineer
- Our client is seeking an experienced Lead Security Engineer to join its Information Security team and play a key role in strengthening and maturing the organization s overall security program.
- This is a hands-on senior security role, not a purely governance or compliance position. The ideal candidate will have strong experience across IAM, cloud/AWS security, vulnerability management, endpoint security, security monitoring, and enterprise security controls, while also being comfortable working within a CISO-led security environment.
- The successful candidate will translate security requirements and business risks into practical technical controls, drive implementation across technology teams, and provide clear security metrics, risk reporting, and recommendations to security leadership.
Key Responsibilities
- Security Engineering & Controls
- Design, implement, maintain, and continuously improve security controls across cloud, infrastructure, endpoint, network, application, and identity environments.
- Assess existing security controls, identify gaps, and develop remediation plans.
- Implement and enhance controls across:
- Identity & Access Management (IAM)
- Privileged Access Management (PAM)
- MFA and RBAC
- Microsoft Entra ID / Azure AD
- Endpoint security and EDR/XDR
- Network security
- AWS cloud security
- Vulnerability and patch management
- Security logging and monitoring
- Data protection and encryption
- Application security
- Security configuration and hardening
- Work with infrastructure, cloud, application, and engineering teams to integrate security controls across the technology environment.
- Evaluate security technologies and recommend improvements based on security and business requirements.
Cloud & Identity Security
- Implement and maintain security controls within AWS environments.
- Support AWS security monitoring and logging, including Amazon CloudWatch and related security capabilities.
- Administer and secure enterprise identity environments involving Microsoft Entra ID, Active Directory, IAM, PAM, MFA, and RBAC.
- Review cloud architectures and recommend preventive and detective security controls.
- Vulnerability Management & Endpoint Security
- Conduct and support vulnerability assessments, vulnerability scanning, configuration reviews, remediation tracking, and security hardening.
- Support enterprise endpoint security technologies, including CrowdStrike/Falcon or similar EDR/XDR security products.
- Assist with penetration testing activities and remediation of identified findings.
- Security Monitoring & Incident Response
- Work with security operations teams to strengthen SIEM, security logging, monitoring, detection, alerting, and response capabilities.
- Analyze security events and recommend improvements to preventive and detective security controls.
- Security Governance, Risk & CISO Support
- Work closely with CISO/security leadership to support execution and maturity of the organization's Information Security program.
- Conduct security risk and control assessments and identify security/control deficiencies.
- Maintain risk registers and track security remediation activities to completion.
- Develop security metrics, dashboards, risk reports, and management presentations for CISO and executive stakeholders.
- Assist with third-party/vendor security assessments and due diligence.
- Security Frameworks & Compliance
- Work with major Information Security frameworks and standards, including:
- NIST Cybersecurity Framework
- SOC 2
- ISO 27001
- Support continuous control monitoring and evidence collection.
Security Architecture
- Review new technologies, applications, infrastructure, and cloud architectures from a security perspective.
- Identify architectural security risks and recommend appropriate technical or compensating controls.
- Participate in security architecture and design reviews.
- Define security requirements for new technology projects and implementations.
- Promote secure-by-design and security-by-default practices.
Required Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related area, or equivalent practical experience.
- 7+ years of experience in Information Security, Cybersecurity, Security Engineering, or a related discipline.
- Strong hands-on security engineering and security control implementation experience.
- Strong experience with IAM, PAM, MFA, RBAC, Microsoft Entra ID/Azure AD, and Active Directory.
- Hands-on experience with AWS administration and cloud security.
- Experience with vulnerability management and vulnerability assessments.
- Knowledge of endpoint security and EDR/XDR technologies such as CrowdStrike Falcon or comparable products.
- Experience with SIEM, security logging, monitoring, and incident response.
- Understanding of Amazon CloudWatch or similar cloud monitoring/logging technologies.
- Experience with NIST CSF, SOC 2, security risk assessments, control assessments, and audit support.
- Strong knowledge of Windows Server, Active Directory, Group Policy, Microsoft 365, and SaaS administration.
- Knowledge of network security, data protection, encryption, application security, and threat mitigation.
- Experience with scripting/automation using PowerShell, Python, Bash, or similar scripting languages.
- Experience with virtualization technologies such as VMware and Hyper-V.
Preferred Qualifications
- Experience working within a CISO-led Information Security organization.
- Experience with GRC tools and security governance programs.
- Experience with AWS, Azure, or Google Cloud Platform security.
- Experience with SIEM, EDR/XDR, IAM/PAM, vulnerability management, DLP, and security monitoring tools.
- Security architecture and secure cloud/infrastructure design experience.
- Experience developing executive-level security metrics and CISO reporting.
- Third-party/vendor security risk management experience.
- Experience supporting SOC 2 and/or ISO 27001 audits and certification initiatives.
- Experience developing Information Security policies, standards, procedures, and control frameworks.
- Preferred Certifications
If this opportunity interests you, please feel free to share your updated resume at
Thanks and Regards,
Ankit Grover
Sr. Executive - TA
Iris Software
200 Metroplex Drive, Suite #300, Edison, NJ 08817
Similar jobs
- AS
Senior Virtualization & Storage Engineer
NewApex Systems
San Diego, CA🇺🇸$76 - $82/hrOn-site13 hours agoKubernetesPowerShellPython+2Technology - AS
Engineer Software 2
NewApex Systems
Redondo Beach, CA🇺🇸On-site13 hours agoScrumAgileBamboo+7Technology - AS
Incident Response Analyst
NewApex Systems
Plano, TX🇺🇸Hybrid13 hours agoScrumTableauAgile+2Technology - AS
Site Reliability Engineer
NewApex Systems
Hartford, CT🇺🇸Hybrid13 hours agoLoad BalancingAzureDNS+4Technology - AS
Senior UI Engineer
NewApex Systems
Colorado Springs, CO🇺🇸On-site13 hours agoDockerFigmaSelenium+17Technology - AS
Site Reliability Engineer Leader
NewApex Systems
Hartford, CT🇺🇸On-site13 hours agoLoad BalancingAzureDNS+1Technology