The AWS cloud security architect will lead the design and development of the AWS security architectures for protecting PII/PCI data deployed into different types of cloud and cloud/hybrid systems. This position will directly contribute to the overall global enterprise cloud architecture and lead the security vision and strategy around cloud-based applications, across all types of IAAS/PAAS/SAAS.
KEY ACCOUNTABILITIES
Familiarity with compliance & security standards across the enterprise IT landscape
Deep understanding of enterprise risk management methods and techniques
Proven experience building security reference architecture for all-in cloud deployments and hybrid scenarios
Good understanding and working knowledge on AWS identity & Access management tools such as IAM, SSO, Cognito, AWS organization, AWS Directory services etc.
Good understanding and working knowledge on AWS Security tools such as Security hub, Guard duty, Inspector, AWS Config and Cloud trail.
Good understanding and working knowledge on AWS Data protection tools such as AWS KMS, Cloud HSM, AWS Certificate manager and Amazon Macie.
Good understanding and working knowledge on AWS infrastructure protection tools such as AWS WAF, Shield and AWS Firewall manager.
Significant technical expertise in cloud computing technologies, scripting languages (Python, RoR etc.), integrating 3rd party monitoring tools, encryption tools and best practices, and forensics.
Working knowledge of cloud computing technologies and workload transition challenges
Demonstrated ability to think strategically about business, product, and technical challenges
Experience building enterprise security strategy for driving the program's evolution to meet new requirements
An understanding of secure internet protocols and AWS mechanisms to implement them
The ability to make tradeoff decisions with regard to cost, security and deployment complexity given a set of application requirements
Good understanding of security operations and risk management.
Good understanding of security controls for workloads on AWS.
Good understanding of design and implement a scalable authorization and authentication systems to access AWS resources
Working knowledge on design and implement a secure network infrastructure
Hands-on technical expertise in Security architecture, automation, integration and deployment (DevOps)