AWS Cloud Engineer

Insight Global

Saint Paul (MN)

On-site

USD 120,000 - 170,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Insight Global is seeking an experienced AWS Cloud Engineer to join a Security Green Team. The role focuses on translating vulnerability findings into automated remediation, codifying fixes as infrastructure as code, and hardening baselines against CIS benchmarks.

You will design policy enforcement, automate patch and image lifecycle management, and build hardened CI/CD pipelines with development teams. The engineer will coordinate server patching, prepare for container and Kubernetes workloads,

Qualifications

  • 5-10 years of hands-on cloud engineering with deep AWS expertise.
  • Proven experience hardening cloud environments to CIS Benchmarks for AWS.
  • Track record establishing policies and guardrails across a hyperscaler (policy-as-code, continuous compliance).
  • Strong CI/CD experience, building and hardening pipelines with development teams.
  • Advanced automation and Infrastructure as Code, primarily Terraform.
  • AWS Systems Manager Patch Manager and patch/lifecycle coordination.
  • AWS identity and security services: IAM, security groups, KMS/Secrets Manager, logging and monitoring.
  • Proficiency in Python and Bash for automation and reporting; Ansible for patch orchestration.

Responsibilities

  • Assess the current AWS and cloud environment to identify hardening and config gaps.
  • Validate guardrails meet CIS benchmarks across the AWS estate.
  • Design and implement policy enforcement and guardrails via policy-as-code and continuous compliance.
  • Codify fixes and standards as Infrastructure as Code (Terraform).
  • Build and harden CI/CD pipelines with development teams and security gates.
  • Prepare environment for forthcoming container and Kubernetes workloads.
  • Coordinate server patching and lifecycle management with platform and Linux teams.
  • Maintain dashboards and reporting on security posture and cloud risk.

Skills

AWS
Terraform
CI/CD
Python
Bash
Ansible
Kubernetes
Security tooling
IAM/KMS
Guardrails

Tools

Terraform
Ansible
Kubernetes

Job description

Job Description

Insight Global is seeking an experienced AWS Cloud Engineer to join a Security Green Team, translating vulnerability and misconfiguration findings into durable, automated remediation embedded into how cloud infrastructure is built and maintained. Moving beyond reactive, manual patching, this hands‑on engineer will own the remediation pipeline for the AWS estate and codifying fixes as infrastructure as code, automating patch and image lifecycle management, hardening baselines against CIS benchmarks, and enforcing policy‑as‑code guardrails. Architects set strategic direction; the engineer executes against it, bringing the AWS depth needed to harden an environment where internal AWS experience is currently limited.

Key Responsibilities:
  • Assess the current AWS and broader cloud environment to identify hardening and configuration gaps.

  • Validate that guardrails are in place and meet CIS benchmarks across the AWS estate.

  • Design and implement policy enforcement and guardrails across AWS via policy‑as‑code and continuous compliance scanning.

  • Codify fixes and standards as Infrastructure as Code (Terraform) so misconfigurations do not reappear downstream.

  • Build and harden CI/CD pipelines with development teams, integrating security and policy gates.

  • Prepare the environment for forthcoming container and Kubernetes workloads as the Kubernetes platform team engages.

  • Coordinate server patching and lifecycle management with the platform and Linux teams.

  • Maintain dashboards and reporting on security posture, remediation velocity, and cloud risk.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Skills and Requirements
  • 5-10 years of hands‑on cloud engineering, with deep expertise in Amazon Web Services (AWS).

  • Proven experience hardening cloud environments to CIS Benchmarks for AWS.

  • Track record establishing policies and guardrails across a hyperscaler (Service Control Policies, policy‑as‑code, continuous compliance).

  • Strong CI/CD command, building and hardening pipelines in partnership with development teams.

  • Advanced automation and Infrastructure as Code, primarily Terraform.

  • AWS Systems Manager Patch Manager, coordinating server patching with the platform team.

  • AWS identity and security services: IAM, security groups, KMS/Secrets Manager, logging and monitoring.

  • Proficiency in Python and Bash for automation and reporting. - Ansible for configuration management and patch orchestration.

  • Hyperscaler certifications (AWS, Google Cloud, and/or Azure).

  • HashiCorp Terraform Associate or equivalent IaC certification.

  • CSPM and vulnerability tooling (Security Command Center, Security Hub, Wiz, Prisma Cloud, Tenable, or Qualys).

  • Container and image scanning (Trivy, Aqua, Artifact Registry / ECR) and Kubernetes hardening.

  • Knowledge of the security “color wheel” model and Green / Purple Team frameworks.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GCP Cloud Engineer
GCP Cloud Engineer

Insight Global • Saint Paul (MN)

On-site
USD 140,000 - 180,000
AWS Cloud Engineer - LATAM
AWS Cloud Engineer - LATAM

Insight Global • San Diego (CA)

On-site
USD 120,000 - 180,000
AWS Cloud Architect
AWS Cloud Architect

Kastech Software Solutions Group • United States

On-site
USD 140,000 - 210,000
Cloud Engineer
Cloud Engineer

Gotham Technology Group • United States

On-site
USD 120,000 - 160,000
AWS Solution architect
AWS Solution architect

Russell Tobin • Alpharetta (GA)

On-site
USD 120,000 - 150,000
Comprehensive healthcare coverage
401(k)-retirement savings
Life & disability insurance
Principal Cloud Development Security and Operations Engineer
Principal Cloud Development Security and Operations Engineer

Scorpion Therapeutics • Village of Tarrytown (NY)

On-site
USD 150,000 - 190,000
Security Engineer
Security Engineer

Enterprise Engineering Inc. (EEI) • New York (NY)

On-site
USD 120,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Cloud Security Engineering Manager
Cloud Security Engineering Manager

CIBR Warriors • United States

On-site
USD 140,000 - 210,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Vets Hired • Vienna (VA)

On-site
USD 140,000 - 180,000