AWS Cloud Infrastructure Architect with IRS MBI Clearance

Jobgether

España

A distancia

EUR 130.000 - 148.000

Jornada completa

Hace 6 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Transforma esta oferta en una entrevista — un currículum y una carta de presentación creados pensando en lo que quiere el empleador.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Fully remote position
Full-time employment
Opportunity for complex AWS cloud work

Descripción de la vacante

Jobgether, on behalf of a partner company, seeks an AWS Cloud Infrastructure Architect with IRS MBI Clearance, based in Spain. The role designs and manages secure, scalable AWS cloud infrastructure across complex multi-account environments.

The candidate will shape governance, networking, IAM, and security strategies, while driving infrastructure automation and cost optimization. Remote work and leadership responsibilities are included.

Formación

  • 5+ years in cloud architecture with hands-on AWS experience.
  • Deep knowledge of AWS Organizations, multi-account governance, and FedRAMP.
  • Proven design and deployment of Landing Zone architectures.
  • Experience with AWS GovCloud (US) environments.
  • Strong IAM design, least-privilege access, and identity federation.
  • Proficiency with IaC tools (CloudFormation, Terraform, CDK).

Responsabilidades

  • Design and implement AWS account structures with AWS Organizations.
  • Deploy and manage AWS Control Tower for governance.
  • Create Landing Zone architectures for secure multi-account environments.
  • Architect multi-region VPCs and hybrid networking (VPN, Direct Connect, Transit Gateway).
  • Manage DNS via Route 53 and GovCloud networking.
  • Develop security policies and monitoring using AWS Security Hub, GuardDuty, Config, CloudTrail.
  • Build infrastructure as code and maintain architecture docs.
  • Provide technical leadership and disaster recovery planning.

Conocimientos

AWS cloud architecture
Multi-account governance
IAM and security governance
Networking (VPC, VPN, Direct Connect,
Infrastructure as code (CloudFormation
Cost optimization & DR planning
Security monitoring & incident

Herramientas

AWS Control Tower
Landing Zone Architecture
GovCloud (US)
Route 53

Descripción del empleo

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an AWS Cloud Infrastructure Architect with IRS MBI Clearance based in Spain.

This role is responsible for designing and managing secure, scalable AWS cloud infrastructure across complex multi-account environments.
You will shape cloud architecture spanning account governance, networking, identity and access management, security, and compliance.
The position requires hands‑on expertise with AWS Organizations, Control Tower, Landing Zone Architecture, and GovCloud environments.
You will help establish resilient cloud foundations while supporting stringent regulatory and security requirements, including FedRAMP.
Working closely with engineering and security teams, you will provide architectural guidance and help drive infrastructure best practices.
The role also includes infrastructure automation, cost optimization, disaster recovery, and technical documentation.
This is an opportunity to make a direct impact on the reliability, security, and scalability of a mission‑critical cloud environment.

Accountabilities:
  • Design and implement AWS account structures using AWS Organizations, including Organizational Units aligned with business and technical requirements.
  • Establish account governance policies, standards, consolidated billing, and cost allocation strategies.
  • Deploy and manage AWS Control Tower for automated account provisioning, governance, and organizational controls.
  • Design and implement Landing Zone Architecture for secure, scalable, multi-account AWS environments.
  • Architect and deploy multi‑region VPC environments, including subnets, route tables, network ACLs, and network segmentation strategies.
  • Configure and manage Site‑to‑Site VPN, Client VPN, AWS Direct Connect, and Transit Gateway connectivity.
  • Design hybrid and multi‑VPC networking solutions and manage DNS through Amazon Route 53.
  • Architect network solutions for AWS GovCloud environments.
  • Design and implement IAM policies, roles, permission boundaries, identity federation, and organization‑level Service Control Policies.
  • Establish least‑privilege access models and MFA requirements while maintaining IAM governance and compliance frameworks.
  • Develop and implement organization‑wide security policies, monitoring, and incident response procedures.
  • Configure and manage AWS Security Hub, GuardDuty, AWS Config, CloudTrail, WAF, and Shield.
  • Implement encryption strategies for data at rest and in transit and support vulnerability management and security assessments.
  • Maintain security and compliance controls aligned with SOC 2, ISO 27001, HIPAA, FedRAMP, and other applicable frameworks.
  • Design and maintain security architectures for AWS GovCloud regions.
  • Build infrastructure as code using CloudFormation, Terraform, or CDK.
  • Maintain comprehensive architecture documentation, diagrams, standards, and technical guidance.
  • Provide technical leadership and mentorship to engineering teams on AWS architecture and cloud best practices.
  • Participate in disaster recovery planning, testing, and resilience initiatives.
  • Identify opportunities to optimize AWS costs, resource utilization, and overall infrastructure efficiency.
Requirements:
  • 5+ years of experience in cloud architecture, including at least 3 years of hands‑on AWS experience.
  • Deep understanding of AWS Organizations, multi‑account architectures, and cloud governance strategies.
  • Hands‑on experience deploying and managing AWS Control Tower for account orchestration and governance.
  • Proven experience designing and implementing AWS Landing Zone Architecture.
  • Experience working with AWS GovCloud (US) environments.
  • Strong knowledge of FedRAMP requirements, security controls, and authorization processes.
  • Expert‑level understanding of AWS networking services, including VPC, VPN, Direct Connect, and Transit Gateway.
  • Strong expertise in IAM policy design, permission management, identity federation, and least‑privilege architectures.
  • Demonstrated experience implementing cloud security best practices and compliance frameworks.
  • Proficiency with infrastructure as code technologies such as CloudFormation, Terraform, and/or AWS CDK.
  • Experience with AWS security and monitoring services, including Security Hub, GuardDuty, Config, and CloudTrail.
  • Strong understanding of encryption, security monitoring, vulnerability management, and incident response.
  • Ability to translate complex infrastructure and security requirements into scalable architectural solutions.
  • Strong technical communication, documentation, problem‑solving, and mentoring skills.
  • IRS MBI clearance is required.
  • AWS Certified Solutions Architect – Professional is preferred.
  • AWS Certified Security – Specialty and AWS Certified Advanced Networking – Specialty certifications are preferred.
  • Additional AWS certifications are a plus.
Benefits:
  • Annual salary of $150,000–$170,000.
  • Fully remote position.
  • Full‑time employment.
  • Opportunity to work on complex AWS cloud architecture and multi‑account environments.
  • Exposure to AWS GovCloud, FedRAMP, cloud security, governance, and compliance initiatives.
  • Opportunity to provide technical leadership and influence cloud infrastructure strategy.
  • Work involving modern AWS automation, infrastructure as code, networking, and security technologies.
Data Privacy Notice:

By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre‑contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Remote Senior AWS Cloud Architect – GovCloud & FedRAMP
Remote Senior AWS Cloud Architect – GovCloud & FedRAMP

Jobgether • España

A distancia
EUR 130.000 - 148.000
Fully remote position
Full-time employment
Opportunity for complex AWS cloud work
AWS Cloud Architect (m/f/d)
AWS Cloud Architect (m/f/d)

T-Systems Iberia • Barcelona

Híbrido
EUR 90.000 - 130.000
Hybrid work model
Coursera training access
Weekly language classes
AWS Architect
AWS Architect

SoftwareOne • Madrid

Híbrido
EUR 70.000 - 110.000
AWS Enterprise Greenfield Account Manager, Enterprise Iberia
AWS Enterprise Greenfield Account Manager, Enterprise Iberia

Amazon • Madrid

Presencial
EUR 90.000 - 130.000
Senior Architect, Data Centre Design Engineering
Senior Architect, Data Centre Design Engineering

Amazon Web Services (AWS) • Madrid

Presencial
EUR 120.000 - 170.000
AWS Enterprise Account Manager
AWS Enterprise Account Manager

Amazon Web Services (AWS) • Barcelona

Presencial
EUR 90.000 - 140.000
Cloud & Devops Engineer (Aws)
Cloud & Devops Engineer (Aws)

Keyrus • Las Palmas de Gran Canaria

Presencial
EUR 80.000 - 120.000
Meal allowance 10.20/day
Flexible benefits plan
Private medical insurance
+1
Sr. Delivery Consultant - Database, Professional Services, AWS Professional Services at Amazon Web Services
Sr. Delivery Consultant - Database, Professional Services, AWS Professional Services at Amazon Web Services

Amazon Web Services • Madrid

Presencial
EUR 85.000 - 120.000
AWS Consultant
AWS Consultant

SoftwareOne • Madrid

Presencial
EUR 65.000 - 90.000
AWS Enterprise Account Manager
AWS Enterprise Account Manager

Amazon Web Services (AWS) • Madrid

Presencial
EUR 90.000 - 130.000