Our client, is seeking a Senior AWS Cloud Security Consultant to design and enforce enterprise cloud security controls within a highly regulated environment. This role will focus on AWS security architecture, governance, policy-as-code, data perimeter controls, and preventing data exfiltration.
The ideal candidate will have strong hands-on experience with AWS IAM, AWS Organizations, SCPs/RCPs, Open Policy Agent (OPA), and Rego. You will evaluate AWS services before production adoption, perform API-level threat modeling, identify security risks, and develop preventive guardrails and least-privilege access controls. Experience working in financial services, banking, capital markets, or another highly regulated environment is strongly preferred.
Key Skills
The ideal candidate will have strong hands-on experience with AWS IAM, AWS Organizations, SCPs/RCPs, Open Policy Agent (OPA), and Rego. You will evaluate AWS services before production adoption, perform API-level threat modeling, identify security risks, and develop preventive guardrails and least-privilege access controls. Experience working in financial services, banking, capital markets, or another highly regulated environment is strongly preferred.
Key Skills
- 8+ years of Cloud Engineering, Cloud Security, or Infrastructure Security experience
- Deep AWS Security Architecture and Governance experience
- AWS IAM, AWS Organizations, SCPs, RCPs
- Open Policy Agent (OPA) and Rego policy development
- Policy-as-Code, policy testing, and validation
- API-level threat modeling
- Data Perimeter Architecture and Data Exfiltration Prevention
- Least Privilege and Enterprise Security Guardrails
- Terraform / Infrastructure-as-Code
- CI/CD and GitHub Actions
- CloudWatch, CloudTrail, VPC Flow Logs
- Amazon EKS security and governance
Nice to Have: Kivera.io, Cloudflare One, Regal, Checkov, Conftest, Policy Sentry, Cloudsplaining, OIDC federation, and experience with regulated industries.
Learn more about this Employer on their Career Site
