Design and implement security architecture for AWS landing zones supporting internet and intranet workloads.
Translate GCC guardrails and compliance into practical cloud security controls.
Collaborate with Cloud Architects to embed security policies, IAM, encryption, logging, monitoring, and incident response.
Integrate security checks into infrastructure CI/CD pipelines (DevSecOps).
Conduct threat modeling, risk assessments, and security reviews for new services.
Implement AWS and third-party security tools (GuardDuty, Config, Security Hub, CloudTrail, WAF).
Guide engineers and operations as the security authority during design and build phases.
Support security audits, compliance assessments, and landing zone security posture.
Requirements:
CAT2A clearance eligibility.
7+ years in security architecture, strong AWS cloud security expertise.
Deep knowledge of GCC guardrails, compliance, and regulated environments.
Hands-on experience with AWS security services (IAM, KMS, CloudTrail, GuardDuty, WAF, Security Hub).
Skilled in Terraform, IaC security, and DevSecOps pipeline security integration.
Experience with CIS benchmark hardening Levels 1/2/3.
Strong understanding of network security, zero trust, IAM, encryption, and incident response.
Experience in Agile delivery and embedding security early in development cycles.
If Interested You can apply : hemlata@ssquad.com