AWS Cloud Security Engineer- Remote

Boston Medical Center (BMC)

United States

On-site

USD 90,000 - 130,000

Full time

10 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Boston Medical Center Health System (BMCHS) is seeking an AWS Cloud Security Engineer to lead the development and management of our public cloud security strategy. You will collaborate with infrastructure, application, and partner teams to ensure compliant, secure, and cost-effective AWS solutions.

The role requires hands-on security expertise in AWS services, incident response, and knowledge transfer to engineers, with a focus on HIPAA/NIST guidance and strong communication skills.

Qualifications

  • 3+ years of information security in a public cloud (AWS, Azure, GCP).
  • Strong AWS expertise required and relevant certifications preferred.
  • Healthcare domain knowledge and HIPAA-related exposure is a plus.

Responsibilities

  • Design, manage, and implement cloud security policies and projects.
  • Provide architectural security guidance for public cloud environments.
  • Review designs and provide security feedback on changes.
  • Communicate technical data to audiences with varying levels of knowledge.
  • Collaborate with internal security and infrastructure teams to remediate issues.
  • Operate cloud firewall, DLP, and vulnerability tooling.
  • Support incident response and follow playbooks.
  • Research new security technologies and run PoC tests.
  • Document security standards and processes.
  • Contribute to secure design decisions for new tech.
  • Coordinate remediation of vulnerabilities in cloud environments.
  • Educate workforce on security topics and mentor junior engineers.

Skills

AWS GuardDuty
Security Hub
Macie
IAM / SSO
CloudWatch
CloudFront / WAF
Terraform
CloudFormation
Python scripting
Networking (VPC, SG, NACLs)

Education

Bachelor's degree in Computer Science or related

Tools

Terraform
CloudFormation
Azure AD / ADFS

Job description

Position Summary
The AWS Cloud Security Engineer role at Boston Medical Center Health System (BMCHS) is responsible for the development, management, and ongoing support of our public cloud information security strategy. This role will collaborate closely with infrastructure, application, and other internal and partner teams to achieve organizational goals in the public cloud, while promoting and maintaining strong adherence to and enforcement of security policies and best practices. The AWS Cloud Security Engineer II will provide value and be a primary source of knowledge in building secure, compliant, and cost-effective AWS solutions. Team members in this role will administer, maintain, and ensure that AWS and 3rd party security technologies are highly available, actionable, and can support the critical needs of the business. Strong communication skills and the ability to build/maintain/grow new relationships will ensure you can execute effectively in this role.

Position Summary
The AWS Cloud Security Engineer role at Boston Medical Center Health System (BMCHS) is responsible for the development, management, and ongoing support of our public cloud information security strategy. This role will collaborate closely with infrastructure, application, and other internal and partner teams to achieve organizational goals in the public cloud, while promoting and maintaining strong adherence to and enforcement of security policies and best practices. The AWS Cloud Security Engineer II will provide value and be a primary source of knowledge in building secure, compliant, and cost-effective AWS solutions. Team members in this role will administer, maintain, and ensure that AWS and 3rd party security technologies are highly available, actionable, and can support the critical needs of the business. Strong communication skills and the ability to build/maintain/grow new relationships will ensure you can execute effectively in this role.

Position: AWS Cloud Security Engineer
Department: Information Technology
Schedule: Full Time
Essential Responsibilities / Duties

  • Design, manage, support, and implement cloud security policies, services, and projects.
  • Provide architectural security guidance in compliance with industry standards (HIPAA, NIST, CIS) for public cloud environments.
  • Review and provide security-significant feedback on designs and proposed changes submitted by others within the organization.
  • Frequently communicate and present technical data to audiences with varying levels of technical knowledge.
  • Frequently communicate with and present to upper management.
  • Manage cloud firewall, DLP, and vulnerability scanning technology.
  • Support L1 in resolving cloud-security related issues and follow/improve documented Incident Response playbooks
  • Research new technology and assist in proof-of-concept testing.
  • Document security standards and processes.
  • Work with other internal BMC Security / infrastructure teams to remediate vulnerabilities and other security issues.
  • Contribute to design decisions for new technology or existing technology being used in a new way.
  • Coordinate findings remediation of known vulnerabilities within the organization’s cloud presence.
  • Assist in the education of the workforce on security topics through training and awareness opportunities.
  • Provide less experienced security engineers with feedback and guidance on projects and skills development.

(The above statements in this job description are intended to depict the general nature and level of work assigned to the employee(s) in this job. The above is not intended to represent an exhaustive list of accountable duties and responsibilities required).

Education
Bachelor’s degree in Computer Science, Engineering, or related discipline; equivalent experience acceptable.

JOB REQUIREMENTS
Bachelor’s degree in Computer Science, Engineering, or related discipline; equivalent experience acceptable.

Certificates, Licenses, Registrations Required

  • CCSP, CISSP, CEH, Security+, or other security related certifications preferred

Experience

  • 3+ years of experience managing information security in a public cloud environment (AWS, Azure, GCP). Strong, demonstrated AWS expertise required
  • 4+ years of experiences in information security
  • 7+ years of experience in IT (information technology), preferentially with development, network, or systems administration experience
  • Healthcare domain knowledge and working in regulated environments is a plus (HIPAA, HITRUST, SOC2, PCI-DSS)
  • AWS Certifications, Architect Associate or Professional required. Security or Advanced Networking level specialty certs are a plus

Knowledge And Skills

  • Expert-level knowledge of AWS GuardDuty, Security Hub, Macie, Inspector, Trusted Advisor
  • Knowledge of Edge protection technologies such as AWS Shield, WAF, CloudFront
  • Strong working understanding of Identity and Access Management (IAM) and SSO Integration via Active Directory (Azure AD / ADFS)
  • Experience working in organizations with top level Control Tower or Landing Zone Accelerator (SCP’s, Guardrails, Config Rules, etc.)
  • Experience with monitoring systems such as CloudWatch / VPC Flow Logs and other industry standard visibility platforms (Splunk, DataDog, Dynatrace, New Relic, etc.)
  • Experience with Logging and log monitoring (CloudWatch and CloudTrail) both for security and compliance efforts
  • Proficiency with one or more scripting languages (python, json, yaml, bash, etc.)
  • Proficiency with Infrastructure as Code (IaC), including CloudFormation and/or Terraform
  • Understanding of CI/CD on AWS platform
  • Expert knowledge of AWS network and security features (VPC, Security Groups, NACLs, ALB/NLB, Transit Gateway, etc.)
  • Experience supporting applications with native services and serverless architecture (Lambda) on AWS platform
  • Strong understanding of high availability solutioning (multi-AZ / regions, Backup) and how security fits into this model
  • Demonstrated history of moving mission-critical applications from the datacenter to AWS
  • Ability to effectively adapt to rapidly changing technology and apply it to business needs

Compensation Range
$89,500.00- $130,000.00
This range offers an estimate based on the minimum job qualifications. However, our approach to determining base pay is comprehensive, and a broad range of factors is considered when making an offer. This includes education, experience, skills, and certifications/licensures as they directly relate to position requirements; as well as business/organizational needs, internal equity, and market-competitiveness. In addition, BMCHS offers generous total compensation that includes, but is not limited to, benefits (medical, dental, vision, pharmacy), discretionary annual bonuses and merit increases, Flexible Spending Accounts, 403(b) savings matches, paid time off, career advancement opportunities, and resources to support employee and family well-being.

NOTE: This range is based on Boston-area data, and is subject to modification based on geographic location.

Equal Opportunity Employer/Disabled/Veterans

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AWS Cloud Security Engineer- Remote
AWS Cloud Security Engineer- Remote

Roslindale • Northern (KY)

Remote
USD 90,000 - 130,000
AWS Cloud Security Engineer | Secure Cloud Architect
AWS Cloud Security Engineer | Secure Cloud Architect

Roslindale • Northern (KY)

Hybrid
USD 90,000 - 130,000
Senior AWS Cloud Security Engineer
Senior AWS Cloud Security Engineer

Boston Medical Center (BMC) • United States

On-site
USD 90,000 - 130,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Healthmark Group • United States

Remote
USD 150,000 - 210,000
IT Cloud Security Architect
IT Cloud Security Architect

Hackensack Meridian Health • Woodbridge Township (NJ)

On-site
USD 140,000 - 172,000
Client Services Analyst, Field Services
Client Services Analyst, Field Services

Boston Medical Center, Corp. • Northern (KY)

On-site
USD 49,000 - 68,000
Medical benefits
Discretionary annual bonuses
Paid time off
+2
VP, Chief Compliance Officer
VP, Chief Compliance Officer

Boston Medical Center (BMC) • Boston (MA)

On-site
USD 321,000 - 370,000
AWS Healthcare Cloud Architect/Engineer
AWS Healthcare Cloud Architect/Engineer

Optimum Healthcare IT • United States

On-site
USD 140,000 - 190,000
Client Services Analyst, Field Services
Client Services Analyst, Field Services

St. Elizabeth's Medical Center • Boston (MA)

On-site
USD 49,000 - 68,000
Quality and Patient Safety Specialist
Quality and Patient Safety Specialist

Boston Medical Center • Boston (MA)

On-site
USD 78,000 - 113,000
Medical benefits
Dental benefits
Vision benefits
+2