Responsibilities
- Secure cloud environments by managing internal endpoints and VPC firewalls.
- Configure and maintain AWS Security Groups tailored to application and environment requirements.
- Administer Role-Based Access Control and Identity Access Management in AWS.
- Develop, review, and enforce access policies and entitlements for AWS services.
- Automate security configuration using AWS-native and third-party deployment tools.
- Enforce governance through AWS Service Control Policies as part of infrastructure guardrails.
- Operate an automated AMI factory for image generation and validation.
- Deploy and maintain serverless architectures with secure configurations in AWS.
- Manage network components including NACLs, transit gateways, peering connections, Direct Connect, and security groups.
- Identify and resolve vulnerabilities in infrastructure and applications.
- Maintain AWS IAM permissions aligned with role-based access needs.
- Strengthen security for eCommerce systems using encryption, scanning, and access controls.
- Design and maintain CI/CD pipelines with integrated security tools and deployment strategies like canary and blue-green.
- Administer Linux operating systems and oversee their vulnerability lifecycle.
- Work with security, DevOps, and engineering teams to define platform security requirements.
- Coordinate with external security vendors to validate control effectiveness and policy adherence.
- Troubleshoot complex security issues in cloud and eCommerce platforms.
- Lead technical initiatives from inception to completion as the primary point of contact.
- Maintain OS-level security by applying patches and updates to Linux systems.
- Address container-level vulnerabilities through timely patching and updates.
- Implement monitoring and logging solutions using AWS and external tools.