Principal Cloud Security and Compliance Engineer
Salary undisclosed
Checking job availability...
Original
Simplified
Required Qualifications
- 10+ years of hands-on experience in cybersecurity, cloud security, and compliance, with at least 5 years in AWS security.
- Expert-level knowledge of AWS security services, architecture, and best practices.
- Deep understanding of compliance frameworks (e.g., SOC 2, ISO 27001, NIST, FedRAMP, PCI-DSS, HIPAA).
- Experience with AWS IAM, VPC security, AWS WAF, KMS, CloudTrail, Config, Security Hub, Macie, and GuardDuty.
- Proficiency in SIEM solutions, security automation, and cloud-native security tools.
- Hands-on experience with IaC security (Terraform, CloudFormation), container security (EKS, ECS), and serverless security.
- Strong background in DevSecOps, securing CI/CD pipelines, and integrating security into cloud-native development.
- Expertise in identity & access management (IAM), RBAC, MFA, and Zero Trust security models.
- Experience with incident response, threat detection, and forensic analysis in AWS.
- Proficient in scripting and automation (Python, Bash, or PowerShell).
- Strong communication skills with the ability to influence technical and non-technical stakeholders.
Preferred Qualifications
- AWS Certified Security Specialty or AWS Certified Solutions Architect Professional certification.
- Experience in multi-cloud security (AWS, Azure, Google Cloud Platform) is a plus.
- Familiarity with security risk management frameworks (e.g., MITRE ATT&CK, OWASP, CIS Benchmarks).
- Knowledge of AI/ML security, API security, and data protection strategies.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job