Resource 1, Inc. is seeking an AWS Cloud Security Engineer for a remote contract role focused on AWS security hardening and remediation for a globally distributed platform. The role involves implementing AWS security tooling, tightening IAM and S3 permissions, and collaborating with security and development teams to ensure platform security without service disruption.
Responsibilities:
- Remediate penetration testing findings and perform security hardening across AWS
- Use of AWS Security Services such as GuardDuty, Inspector, Security Hub, and AWS Config
- Tighten IAM roles, policies, and permissions to follow least-privilege practices
- Review and remediate S3 permissions and other data access controls
- Apply OS and service patching to operating environments with minimal customer impact
- Collaborate with development teams to remediate impacted packages and deploy fixes
- Work with external security tooling and partners (e.g., Rapid7 ) to triage and resolve issues
Requirements:
- Solid experience in cloud/security engineering and ability to work independently
- Deep, recent hands-on AWS expertise at scale (ideally production environments supporting large number of devices/users)
- AWS security services: GuardDuty, Inspector, Security Hub, and AWS Config
- AWS Secrets management and rotation
- Strong knowledge of IAM design, roles, policies, and access controls
- Experience securing S3, VPC/network controls, security groups, etc
- Experience with containerized workloads and Kubernetes (EKS) and EC2/Linux administration
- Practical Terraform experience for infrastructure as code
- Experience with Rapid7 or similar commercial security tooling
- Hands-on experience with IoT or large device fleets
- Familiarity with GitHub Actions or other CI/CD tooling
- Experience using Gen AI tools to augment cloud engineering workflows