AWS IAM/Platform Engineer

ICONMA, LLC

  • Raleigh, NC
  • 2 days ago
  • Remote
  • $62.86 Per Hour

Highlights

Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring. Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.

Numbers & Facts

LocationRaleigh, NC (
Remote
)
Salary$62.86 Per Hour

Description

Our Client, an IT Services and Consultant company, is looking for an AWS IAM/Platform Engineer for their Raleigh, NC/Remote location.
 
Responsibilities:

  • Design, implement, and manage AWS IAM and IAM Identity Center solutions across enterprise multi-account AWS environments.
  • Develop IAM policies, permission boundaries, trust relationships, RBAC, permission sets, and least-privilege access models.
  • Manage AWS Organizations governance including SCPs, RCPs, tag policies, backup policies, guardrails, and account lifecycle controls.
  • Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring.
  • Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
  • Support governance-as-code and IAM automation through Git, CI/CD pipelines, CloudFormation, CDK, or Terraform with automated validation.
  • Deep expertise in AWS IAM, IAM Identity Center, AWS Organizations, Control Tower, IAM policy language, evaluation logic, cross-account access, and permission boundaries.
  • Hands-on experience with AWS Config, GuardDuty, CloudTrail, Security Hub, compliance monitoring, and remediation automation.
  • Strong Python development skills with AWS Lambda, Step Functions, EventBridge, Boto3, APIs, and event-driven automation frameworks.
  • Experience with Git-based source control, CI/CD pipelines, version-controlled policies, permission sets, and governance configurations.
 
Requirements:
  • Preferred Qualifications / Certifications
  • Experience implementing enterprise AWS Landing Zones, account vending, onboarding, and governance automation across AWS Organizations.
  • Hands-on IAM Identity Center permission set management and account assignment automation through CI/CD pipelines.
  • Familiarity with Terraform, CloudFormation, AWS CDK, GitOps approaches, compliance frameworks, and identity governance patterns.
  • Preferred certifications:
  • AWS Solutions Architect Associate/Professional, AWS Security Specialty, AWS DevOps Engineer Professional.
  • Soft Skills
  • Strong problem-solving, independent ownership, stakeholder communication, and ability to translate security and governance requirements into scalable AWS solutions.
  • Years of Experience:
  • 14.00 Years of Experience
 
Why Should You Apply?

 

Similar Jobs