Overview
We are seeking a skilled Cloud Security Engineer with active SC clearance to join a long-term contract focused on enhancing security within a cloud delivery program. In this hands-on role, the contractor will work to embed security controls into AWS infrastructure and CI/CD delivery pipelines, collaborating closely with teams to ensure a robust security framework is implemented.
Responsibilities
- Build and deploy secure AWS infrastructure using Terraform.
- Implement security controls as code across IAM, network segmentation, encryption, and logging.
- Configure and maintain AWS security guardrails including Service Control Policies, AWS Config, Security Hub, and GuardDuty.
- Integrate security testing into GitHub Actions pipelines, including SAST and IaC scanning.
- Triage security findings and support vulnerability management.
- Develop security automation and tooling using Python and TypeScript.
- Produce control evidence for security assurance activities.
- Maintain sprint artefacts in Jira and documentation in Confluence.
Requirements
- Strong hands-on experience with AWS security services and identity management.
- Proficiency in Terraform for production environments, including module design.
- Experience with Python and TypeScript development.
- Familiarity with GitHub Actions and pipeline security tooling.
- Knowledge of cloud security controls and secure-by-design principles.
- Active SC clearance at the time of mobilization.