Video
Onsite
Preferred Onsite If Possible
No H1
Overview: We are seeking a very Senior AWS Cloud Security Engineer with extensive experience in migrating large-scale systems to the AWS Cloud environment. The ideal candidate will have profound knowledge of security standards such as IRS Pub 1075, PII, and NIST frameworks, along with hands-on expertise in AWS services like CloudWatch, CloudTrail, GuardDuty, and Security Hub. An AWS Solutions Architect certification is highly desirable for this role.
Responsibilities
- Analyze user requirements and procedures to migrate, modify, and support existing systems.
- Review system-wide capabilities and workflows to efficiently manage and secure very large systems for the AIRS Service Center.
- Provide primary operational support and engineering for the AWS public cloud platform.
- Debug and optimize systems, automate routine tasks, and maintain infrastructure environments within AWS.
- Plan, design, and implement workload migrations from on-premises to AWS Cloud.
- Configure and monitor AWS services including CloudWatch, CloudTrail, GuardDuty, Security Hub, Systems Manager, Network Firewall, WAF, Security Group, Tagging, Network ACL’s, and Routing Tables.
- Set up and maintain Gateway Load Balancer, Internet Gateway, and VPCs across different Availability Zones.
- Implement backup solutions using AWS native services (EC2 instances, FSX Servers, S3 storage types, AMI, etc.) and Infrastructure as Code tools like Cloud Formation and Terraform.
- Design, develop, and maintain Executive Level dashboards for system utilization, health, and cost.
- Maintain security using tools like AWS Guard, IAM, CrowdStrike, and Tenable.
- Harden environments to meet compliance requirements (e.g., Pub 1075, PII, NIST frameworks).
- Collaborate with IT resources and vendors to resolve application and infrastructure issues.
- Document technical aspects related to AWS environments including storage, backups, and patching.
- Participate in the evaluation and adoption of new technologies while adhering to departmental IT and security standards.
- Communicate effectively with management, co-workers, AMS, and business partners.
- Perform other duties as assigned.
Required Skills
- Hands-on experience migrating/implementing applications on AWS Cloud platforms: 4+ years
- AWS web environment design and build experience (e.g., EC2, ELB, Systems Manager, FSX, SES, SNS, S3): 4+ years
- Experience with AWS security solutions (e.g., WAF, Network Firewall, Security Group, Network ACL’s, Gateway Load Balancer): 4+ years
- Proficiency with Internet Gateway, AWS Guard, SecurityHub, and GuardDuty: 4+ years
- Experience with high-volume, mission-critical applications and their dependencies: 4+ years
- Infrastructure to Code scripting using Cloud Formation, Terraform, or similar tools: 4+ years
- Monitoring, maintenance, and support of AWS environments using CloudWatch and CloudTrail: 4+ years
- Configuration experience with CrowdStrike and Tenable: 2+ years
- Knowledge of AWS network-level logging configuration and management: 4+ years
- Configuration and maintenance of AWS dashboards: 4+ years
- Broad IT experience including Networking, DB Systems, Security, DevOps, Backup, DR, and modern development methodologies: 4+ years
- Design and implementation of common shared services across enterprise applications: 4+ years
- Strong analytical skills and ability to resolve complex IT problems: 4+ years
- Microsoft Windows Server System Administrator experience: Required
- Experience with GenTax architecture and application maintenance: Desired
- Familiarity with industry security standards and best practices (PUB1075, FIPS, CIS, NIST, PII): Highly desired
- Excellent communication skills (both oral and written): Highly desired
- Availability to provide 24-hour support: Highly desired
- Experience using Incident Management software solutions like Jira: Highly desired
- AWS Solutions Architect certification: Highly desired