ChamberCardio - Cloud Security and Infrastructure Engineer
Requirements
• 5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production — ideally including building a security program from scratch. • Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design. • Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda). • Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected). • Low Ego: We stay grounded, curious, and open to feedback. • Empathy: We build trust through compassion and thoughtful communication. • Courage: We take action, think critically, and challenge ideas respectfully. • Ownership: We follow through with integrity and hold ourselves to high standards. • Grit: We push through ambiguity, move with urgency, and solve problems with horsepower and heart. • Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required.
Responsibilities
• Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts. • Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation. • Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team. • Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle. • Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs. • Shape cloud architecture decisions — balancing security, cost, and reliability — around zero-trust and defense-in-depth principles. • Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities. • What You’ll Achieve in Your First 90 Days • Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog). • Identify automation opportunities and standardize AWS account deployment using Control Tower. • Validate SIEM logging ingestion and flag gaps. • Evaluate next-gen vulnerability scanners and build a comparison scorecard.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT