- Company Name
- With Intelligence
- Job Title
- AWS Security Engineer Contract
- Job Description
-
**Job Title:** AWS Security Engineer (Contract)
**Role Summary:**
Lead remediation of AWS and application vulnerabilities across the cloud environment. Collaborate with developers, data engineers, and the AWS Security Lead to validate findings, prioritize risk, implement secure fixes, and strengthen security controls while embedding security into CI/CD pipelines.
**Expectations:**
- Deliver timely, effective remediation of cloud and workload vulnerabilities.
- Communicate clear guidance, runbooks, and dashboards to technical and non‑technical stakeholders.
- Maintain alignment with AWS security controls, internal risk policies, and compliance requirements.
**Key Responsibilities:**
- Own end‑to‑end vulnerability remediation: confirm findings, assess impact, prioritize actions, track to closure.
- Partner with developers and data engineers to implement secure fixes in code, IaC, containers, and serverless workloads.
- Ensure remediation aligns with AWS security controls, Well‑Architected Framework, and compliance frameworks (CIS AWS Foundations, NIST/ISO).
- Automate and improve vulnerability management processes: scanning coverage, SLAs, exception handling, evidence capture.
- Embed security into CI/CD and SDLC: shift‑left reviews, secure coding guidance, dependency management, pipeline guardrails.
- Configure, tune, and operate AWS security services (GuardDuty, Security Hub, Inspector, Config, IAM Access Analyzer).
- Produce remediation guidance, runbooks, and reporting dashboards for stakeholders.
- Support incident response and post‑remediation validation for high‑risk findings.
**Required Skills:**
- Deep, hands‑on AWS security expertise: IAM, networking, compute, storage, serverless, and managed data services.
- Strong knowledge of AWS Well‑Architected Security Pillar, CIS AWS Foundations, NIST/ISO controls.
- Proven experience implementing AWS security controls: IAM least privilege, VPCT segmentation, encryption, logging, threat detection.
- Expertise in DevSecOps & Maturity: CI/CD, SDLC, vulnerability lifecycle (triage, prioritization, remediation).
- Secure remediation across OS/package CVEs, container images, third‑party libraries, serverless runtimes, cloud misconfigurations.
- IaC experience: Terraform & CloudFormation, secure review & remediation.
- Automation scripting: Python, Bash.
- Familiarity with container & serverless security tools and vulnerability scanners: Inspector, Security Hub, Snyk, Trivy, Dependabot, Prisma/Tenable/Qualys.
- Excellent communication: concise documentation, stakeholder updates, guidance.
**Required Education & Certifications**
- AWS Security Specialty or equivalent (preferred).
- AWS Solutions Architect certification (desired).
- Minimum bachelor’s degree in Computer Science, Information Security, or related field (optional).
---