Primary Skill: AWS Config
Key Responsibilities
Code automated, programmatic remediation workflows to immediately neutralize misconfigured or exposed cloud assets.
Author custom configuration rules and advanced compliance scripts to continually audit the cloud environment.
Serve as the Tier 3 escalation point for complex cloud infrastructure vulnerabilities or active security incidents.
Core AWS & Technical Stack
AWS Lambda (Python, Go, or Node.js), AWS Event Bridge, AWS Config Rules, and complex IAM policy writing.
Ideal candidate profile
- AWS Security Engineer or Cloud Security Engineer with strong AWS experience.
- Hands-on development using AWS Lambda, preferably Python, with Go or Node.js also relevant.
- Strong experience with AWS EventBridge for event-driven security/remediation workflows.
- Deep knowledge of AWS Config Rules and ability to create custom compliance/configuration rules.
- Strong AWS IAM expertise, including writing and troubleshooting complex IAM policies.
- Experience building automated remediation for misconfigured, vulnerable, or exposed AWS resources.
- Ability to investigate and resolve complex cloud security vulnerabilities and incidents as a Tier 3 escalation resource.
- Strong understanding of AWS security architecture, cloud misconfigurations, compliance, and incident response.
- Comfortable writing production-quality code/scripts rather than being limited to security monitoring or administration.