More jobs:
AWS Cloud Security/IAM Lead
Job in
Minneapolis, Hennepin County, Minnesota, 55400, USA
Listed on 2026-06-03
Listing for:
Tata Consultancy Services Limited
Full Time
position Listed on 2026-06-03
Job specializations:
-
IT/Tech
Cybersecurity, Security Manager
Job Description & How to Apply Below
Overview
Minneapolis, MN | 8 - 12 years of experience
AWS Cloud Security / IAM Lead
Responsibilities- Own the design and implementation of enterprise-wide AWS IAM strategy across multi-account environments.
- Define and enforce least-privilege access models, including role-based and attribute-based controls.
- Lead integration of AWS IAM with enterprise identity providers (Azure AD/Okta), ensuring secure SSO and federation.
- Establish and maintain IAM governance processes, including access reviews, certification, and audit readiness.
- Monitor and respond to security alerts across AWS using tools such as Guard Duty, Security Hub, and Cloud Watch.
- Investigate and remediate IAM-related security risks, misconfigurations, and access issues.
- Oversee logging and monitoring strategy using Cloud Trail, Config, and centralized SIEM integrations.
- Collaborate with Sec Ops teams to ensure timely incident response and root cause analysis.
- Manage user access lifecycle (provisioning, deprovisioning, entitlement reviews) across AWS environments.
- Ensure compliance with regulatory and enterprise security standards (NIST, CIS benchmarks, etc.).
- Conduct periodic access audits and enforce remediation of policy violations.
- Support internal and external audits by providing IAM evidence and controls documentation.
- Define and implement security guardrails using AWS Organizations, SCPs, and automation frameworks.
- Partner with platform and application teams to embed security-by-design principles.
- Drive adoption of policy-as-code and automated compliance checks in CI/CD pipelines.
- Provide architectural guidance for secure onboarding of new workloads and services on AWS.
- 8–12 years of experience in cloud security, IAM, or infrastructure security engineering, preferably within BFSI or regulated enterprises.
- Strong hands-on expertise in AWS security services, including AWS IAM (roles, policies, permission boundaries, SCPs), AWS Organizations & multi-account governance, AWS Identity Center (SSO), Cloud Trail, Config, Guard Duty, Security Hub.
- Deep understanding of IAM design and governance, including RBAC/ABAC, identity lifecycle management (joiner/mover/leaver).
- Experience integrating AWS IAM with enterprise identity providers such as Okta or similar IdP platforms.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×