
Cloud Specialist – Security SSR
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Argentina.
• Design and implement comprehensive security architectures utilizing IAM, VPC, and data encryption both in transit and at rest.
• Manage network and perimeter security through AWS VPC, Security Groups, AWS WAF, AWS Shield, and AWS Network Firewall.
• Optimize secure content delivery with Amazon CloudFront and implement secure APIs using Amazon API Gateway.
• Deploy and manage EC2 instances, optimizing costs and performance with Spot Instances and Reserved Instances.
• Configure serverless solutions with AWS Lambda and design for high availability, disaster recovery, and fault tolerance.
• Design scalable architectures using Elastic Load Balancing and Auto Scaling Groups.
• Develop infrastructure as code modules and templates using Terraform and CloudFormation.
• Integrate security into CI/CD pipelines using AWS CodePipeline, static analysis, vulnerability scanning, and penetration testing.
• Conduct threat modeling and risk assessments, educating development and DevOps teams.
• Automate security policies and incident responses using AWS Lambda and AWS Systems Manager.
• Configure metrics, alarms, logging, and traceability with CloudWatch and AWS X-Ray.
• Evaluate regulatory requirements such as HIPAA, PCI DSS, and SOC 2, ensuring AWS compliance.
• Continuously audit environments with CloudTrail, AWS Config, and AWS Security Hub.
• Generate compliance reports, remediate security gaps, and participate in application design sessions.
• Create Runbooks, architecture diagrams, and post-mortem reports with root cause analysis.
• Active certification: AWS Certified Security - Specialty (mandatory due to client contract).
• Hands-on experience configuring and managing AWS Control Tower and AWS Organizations.
• Demonstrated ability to create and apply SCPs (Service Control Policies) and RCPs (Resource Control Policies).
• Advanced proficiency in AWS IAM Identity Center and trust policies.
• Implementation of the principle of Least Privilege at scale.
• Operational experience with AWS Security Hub, GuardDuty, and Inspector, including prioritization and remediation of findings.
• Advanced configuration of AWS WAF, AWS Network Firewall, and management of Security Groups/NACLs with a strict segmentation approach.
• Expert use of AWS KMS, CMKs, key rotation, key access policies, and AWS Certificate Manager.
• Experience working with Backlogs (Jira/Azure DevOps), participating in Dailies, and executing Security Epics.
• Ability to create Runbooks and architecture diagrams in Lucidchart/Visio.
• Capability to program automated remediations using Boto3/Lambda; Python is the preferred language.
• Experience in Terraform or CloudFormation for deploying security Guardrails.
• Knowledge of CIS Benchmarks, NIST, or ISO 27001 as applied to AWS.
• SIEM Integration with Splunk, QRadar, or Datadog.
• Assertive communication skills with development teams.
• Proactive focus on the security pillar of the AWS Well-Architected Framework.
• Ability to write incident reports with root cause analysis.
• 100% remote and flexible work arrangement from anywhere in the world.
• Full coverage for AWS certifications.
• Free learning platforms to enhance your knowledge.
• 15 business days per year to recharge and continue growing.
• Birthday off.
• Paid days off according to the national holiday calendar of your residing country.
• Special gifts to celebrate the most important moments in your life.
• Extended parental leave.
Reli Group
ASRC Federal
Kyndryl
HomeServe USA
Get handpicked remote jobs straight to your inbox weekly.