AWS Cloud Security

6 days ago


Charlotte, NC, United States Eclaro Full time
AWS Cloud Security & Compliance Engineer
Job Number: 25-05501

Pursue excellence in your career ECLARO is seeking an AWS Cloud Security & Compliance Engineer Solutions professional for our client in Charlotte, NC.

Our client is an innovative financial technology company transforming digital banking and payments. If you're driven by technology and excited to shape the future of finance, this is the perfect opportunity to grow your career with a forward-thinking team

Position Overview:
  • We are a fast-growing Payment Service Provider operating a mission-critical platform on AWS Cloud. Processing millions of transactions daily, we prioritize security, compliance, and operational resilience.
  • As we scale globally, we are strengthening our cloud security posture to meet ISO 27001 and SOC 1 / 2 standards.
  • Seeking an experienced AWS Cloud Security & Compliance Engineer to own the security and governance of our AWS infrastructure.
  • Will design, implement, and maintain controls that ensure least-privilege access, data protection, auditability, and continuous compliance with ISO 27001 and SOC 1 / 2 requirements.
  • This is a hands-on role combining cloud architecture, IAM governance, security automation, and compliance documentation.

Responsibilities:
  • AWS Security & Access Management:
    • Design and enforce IAM policies, roles, and SCPs using the principle of least privilege.
    • Implement AWS Organizations, Control Tower, and GuardDuty, Security Hub, Config, and CloudTrail for centralized governance.
    • Manage MFA, SSO (AWS IAM Identity Center), and just-in-time access workflows.
    • Conduct regular privilege access reviews and automate user / role lifecycle management.
  • Compliance & Data Governance:
    • Lead ISO 27001 and SOC 1 / 2 control implementation (e.g., A.9, A.12, SC-13, PI-7).
    • Own risk assessments, control evidence collection, and audit preparation.
    • Develop and maintain data classification, encryption (KMS, SSE), and data residency policies.
    • Ensure PCI DSS alignment for payment data flows (in-scope systems).
  • Security Automation & Monitoring:
    • Build Infrastructure as Code (IaC) security using Terraform or similar tools.
    • Automate compliance checks via AWS Config Rules, Security Hub, and custom Lambda scripts.
    • Respond to and triage findings from GuardDuty, Inspector, Macie, and third-party scanners.
  • Documentation & Reporting:
    • Maintain System Security Plan (SSP), Risk Register, and control matrices.
    • Prepare audit-ready evidence (logs, configs, access reports).
    • Train engineering teams on secure AWS practices.

Required Qualifications:
  • 10+ years in cloud infrastructure; 5+ years in cloud security; 3+ years focused on AWS.
  • Hands-on experience with:
    • AWS IAM, Organizations, SCPs, KMS, CloudTrail, Config, Security Hub.
    • Terraform / CloudFormation for secure infrastructure.
    • ISO 27001 and SOC 2 control frameworks.
  • Active AWS certifications: Security Specialty or Solutions Architect Professional.
  • Experience supporting external audits (SOC 2 Type II, ISO 27001).
  • Strong understanding of encryption at rest / transit, network security (VPC, NACLs, WAF), and secrets management.

Salary: $170,000.00 - $225,000.00 / Year

If interested, you may contact:
Eric McAuley
Eric.McAuley@eclaro.com
(980) 360-1322

Equal Opportunity Employer: ECLARO values diversity and does not discriminate based on Race, Color, Religion, Sex, Sexual Orientation, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status, in compliance with all applicable laws.

  • Charlotte, NC, United States ShiftCode Analytics Full time

    Interview : Video Visa : USC, GC, GC EAD, H4, L2 This is hybrid from day-1 ( need local candidates ) Description : The Cloud Platform Team is seeking an innovative and passionate individual who can assist in the design, implementation, testing, support and debugging of cloud-based applications and infrastructure. The candidate should have hands on...


  • Charlotte, NC, United States ShiftCode Analytics Full time

    Interview : Video Visa : USC, GC, GC EAD, H4, L2 This is hybrid from day-1 ( need local candidates ) Description : The Cloud Platform Team is seeking an innovative and passionate individual who can assist in the design, implementation, testing, support and debugging of cloud-based applications and infrastructure. The candidate should have hands on...


  • Charlotte, NC, United States ShiftCode Analytics Full time

    Interview : Video Visa : USC, GC, GC EAD, H4, L2 This is hybrid from day-1 ( need local candidates ) Description : The Cloud Platform Team is seeking an innovative and passionate individual who can assist in the design, implementation, testing, support and debugging of cloud-based applications and infrastructure. The candidate should have hands on...

  • Sr. AWS Cloud Engineer

    11 hours ago


    Charlotte, NC, United States ShiftCode Analytics Full time

    Interview : Video Visa : USC, GC, GC EAD, H4, L2 This is hybrid from day-1 ( need local candidates ) Description : The Cloud Platform Team is seeking an innovative and passionate individual who can assist in the design, implementation, testing, support and debugging of cloud-based applications and infrastructure. The candidate should have hands on...


  • Charlotte, NC, United States Concord IT Systems Full time

    Job Title : Cloud Security Engineer Duration : Long Term Location : Charlotte, NC Job Description :- Experience with DevOps/devsecops Experience with scripting languages (e.g., Python, Java, Perl) Threat Modeling & Data Encryption exp 2+ Years in Cloud (Azure/AWS/GCP) - multiple cloud exp is a Big Plus Experience working in Networking and with Unix / Linux...


  • Charlotte, NC, United States Concord IT Systems Full time

    Job Title : Cloud Security Engineer Duration : Long Term Location : Charlotte, NC Job Description :- Experience with DevOps/devsecops Experience with scripting languages (e.g., Python, Java, Perl) Threat Modeling & Data Encryption exp 2+ Years in Cloud (Azure/AWS/GCP) - multiple cloud exp is a Big Plus Experience working in Networking and with Unix / Linux...


  • Charlotte, NC, United States Concord IT Systems Full time

    Job Title : Cloud Security Engineer Duration : Long Term Location : Charlotte, NC Job Description :- Experience with DevOps/devsecops Experience with scripting languages (e.g., Python, Java, Perl) Threat Modeling & Data Encryption exp 2+ Years in Cloud (Azure/AWS/GCP) - multiple cloud exp is a Big Plus Experience working in Networking and with Unix / Linux...


  • Charlotte, NC, United States Concord IT Systems Full time

    Job Title : Cloud Security Engineer Duration : Long Term Location : Charlotte, NC Job Description :- Experience with DevOps/devsecops Experience with scripting languages (e.g., Python, Java, Perl) Threat Modeling & Data Encryption exp 2+ Years in Cloud (Azure/AWS/GCP) - multiple cloud exp is a Big Plus Experience working in Networking and with Unix / Linux...


  • Charlotte, NC, United States SysMind Tech Full time

    Job Title: Technology Lead | Data On Cloud - Platform | AWS Work Location & Reporting Address: Charlotte, NC 28202 (onsite) market rate Contract duration: 12 months Target Start Date: 21 Nov 2025 Does this position require Visa independent candidates only? Yes Job Description: Seeking an innovative and passionate AWS API Developer with strong technical...


  • Charlotte, NC, United States SysMind Tech Full time

    Job Title: Technology Lead | Data On Cloud - Platform | AWS Work Location & Reporting Address: Charlotte, NC 28202 (onsite) market rate Contract duration: 12 months Target Start Date: 21 Nov 2025 Does this position require Visa independent candidates only? Yes Job Description: Seeking an innovative and passionate AWS API Developer with strong technical...