14 дней назад
AWS Identity Security Engineer
50 - 58CAD
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
AWS Identity Security Engineer (AWS/IAM): Implementing and maintaining secure access controls, hardened cloud infrastructure, and automated security operations across AWS environments with an accent on IAM governance, EC2 hardening, and infrastructure as code. Focus on automating security remediation, troubleshooting cross-account permissions, integrating compliance controls into CI/CD pipelines, and protecting cloud resources.
Location: Remote within Canada
Compensation: $50–$58 CAD per hour; 3-month, full-time contract, 40 hours per week.
Company
is an identity and access management professional services firm delivering workforce IAM, consumer IAM, identity governance, privileged access management, and cloud security solutions across North America.
What you will do
- Configure and maintain AWS IAM roles, policies, permission boundaries, federated access, permission sets, and cross-account access.
- Implement least-privilege controls and investigate excessive permissions, inactive credentials, policy issues, and privileged access risks.
- Harden Linux and Windows Server workloads on Amazon EC2, including operating system permissions, firewalls, logging, endpoint controls, patching, and vulnerability remediation.
- Build and maintain hardened AMIs and automate security operations using AWS Systems Manager, Python, Bash, and/or PowerShell.
- Deploy secure, repeatable infrastructure with Terraform and/or AWS CloudFormation and integrate security and compliance checks into CI/CD pipelines.
- Collaborate with infrastructure, identity, security, and application teams while supporting audits, incident troubleshooting, documentation, testing, and change management.
Requirements
- 3–5 years of hands-on experience administering and securing AWS environments.
- Strong knowledge of AWS IAM policy evaluation, roles, trust relationships, temporary credentials, permission boundaries, and cross-account access.
- Experience administering and hardening Linux and/or Windows Server workloads on Amazon EC2.
- Hands-on experience with AWS Systems Manager, including patch management, remote administration, automation, and compliance monitoring.
- Proficiency in at least one of Python, Bash, or PowerShell, plus experience with Terraform and/or AWS CloudFormation.
- Experience integrating AWS access controls with IGA platforms such as Saviynt, with strong cloud networking, security, troubleshooting, and communication skills.
Nice to have
- Experience with AWS Organizations, Service Control Policies, and multi-account AWS environments.
- Familiarity with CloudTrail, AWS Config, IAM Access Analyzer, Amazon Inspector, and AWS Security Hub.
- Experience with EC2 Image Builder, Packer, secrets management, credential vaulting, PAM, DevSecOps, or CI/CD security controls.
- AWS certifications such as AWS Certified Security – Specialty, AWS Certified Solutions Architect, or AWS Certified SysOps Administrator.
- Previous consulting experience.
Culture & Benefits
- Remote work within Canada on a full-time, 3-month contract.
- Opportunities to work on digital identity projects across North America.
- Focus on learning, career growth, respect, inclusion, equal opportunity, and work-life balance.
- Accommodation support is available during recruitment and assessment for candidates with disabilities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →