Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring. Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
Numbers & Facts
Location
Raleigh, NC (Remote)
Salary
$62.86 Per Hour
Description
Our Client, an IT Services and Consultant company, is looking for an AWS IAM/Platform Engineer for their Raleigh, NC/Remote location.
Responsibilities:
Design, implement, and manage AWS IAM and IAM Identity Center solutions across enterprise multi-account AWS environments.
Develop IAM policies, permission boundaries, trust relationships, RBAC, permission sets, and least-privilege access models.
Manage AWS Organizations governance including SCPs, RCPs, tag policies, backup policies, guardrails, and account lifecycle controls.
Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring.
Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
Support governance-as-code and IAM automation through Git, CI/CD pipelines, CloudFormation, CDK, or Terraform with automated validation.
Deep expertise in AWS IAM, IAM Identity Center, AWS Organizations, Control Tower, IAM policy language, evaluation logic, cross-account access, and permission boundaries.
Hands-on experience with AWS Config, GuardDuty, CloudTrail, Security Hub, compliance monitoring, and remediation automation.
Strong Python development skills with AWS Lambda, Step Functions, EventBridge, Boto3, APIs, and event-driven automation frameworks.
Experience with Git-based source control, CI/CD pipelines, version-controlled policies, permission sets, and governance configurations.
Requirements:
Preferred Qualifications / Certifications
Experience implementing enterprise AWS Landing Zones, account vending, onboarding, and governance automation across AWS Organizations.
Hands-on IAM Identity Center permission set management and account assignment automation through CI/CD pipelines.
Familiarity with Terraform, CloudFormation, AWS CDK, GitOps approaches, compliance frameworks, and identity governance patterns.
Strong problem-solving, independent ownership, stakeholder communication, and ability to translate security and governance requirements into scalable AWS solutions.