AWS IAM/Platform Engineer

Iconma LLC

  • Raleigh, NC
  • 11 days ago

    Highlights

    Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring. Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.

    Numbers & Facts

    LocationRaleigh, NC

    Description

    Our Client, an IT Services and Consultant company, is looking for an AWS IAM/Platform Engineer for their Raleigh, NC/Remote location.

    Responsibilities:

    • Design, implement, and manage AWS IAM and IAM Identity Center solutions across enterprise multi-account AWS environments.
    • Develop IAM policies, permission boundaries, trust relationships, RBAC, permission sets, and least-privilege access models.
    • Manage AWS Organizations governance including SCPs, RCPs, tag policies, backup policies, guardrails, and account lifecycle controls.
    • Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring.
    • Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
    • Support governance-as-code and IAM automation through Git, CI/CD pipelines, CloudFormation, CDK, or Terraform with automated validation.
    • Deep expertise in AWS IAM, IAM Identity Center, AWS Organizations, Control Tower, IAM policy language, evaluation logic, cross-account access, and permission boundaries.
    • Hands-on experience with AWS Config, GuardDuty, CloudTrail, Security Hub, compliance monitoring, and remediation automation.
    • Strong Python development skills with AWS Lambda, Step Functions, EventBridge, Boto3, APIs, and event-driven automation frameworks.
    • Experience with Git-based source control, CI/CD pipelines, version-controlled policies, permission sets, and governance configurations.

    Requirements:

    • Preferred Qualifications / Certifications
    • Experience implementing enterprise AWS Landing Zones, account vending, onboarding, and governance automation across AWS Organizations.
    • Hands-on IAM Identity Center permission set management and account assignment automation through CI/CD pipelines.
    • Familiarity with Terraform, CloudFormation, AWS CDK, GitOps approaches, compliance frameworks, and identity governance patterns.
    • Preferred certifications:
    • AWS Solutions Architect Associate/Professional, AWS Security Specialty, AWS DevOps Engineer Professional.
    • Soft Skills
    • Strong problem-solving, independent ownership, stakeholder communication, and ability to translate security and governance requirements into scalable AWS solutions.
    • Years of Experience:
    • 14.00 Years of Experience

    Why Should You Apply?

    • Health Benefits
    • Referral Program
    • Excellent growth and advancement opportunities

    Similar Jobs

    See more jobs