AWS Cloud Security Engineer- Remote
Kalispell, Flathead County, Montana, 59901, USA
Listed on 2026-06-04
-
IT/Tech
Cybersecurity, Cloud Computing
POSITION SUMMARY
The AWS Cloud Security Engineer role at Boston Medical Center Health System (BMCHS) is responsible for the development, management, and ongoing support of our public cloud information security strategy. The engineer collaborates closely with infrastructure, application, and partner teams to achieve organizational goals in the public cloud, while promoting and maintaining strong adherence to and enforcement of security policies and best practices.
The AWS Cloud Security Engineer II will provide value as a primary source of knowledge in building secure, compliant, and cost‑effective AWS solutions. Team members administer, maintain, and ensure that AWS and third‑party security technologies are highly available, actionable, and can support the critical needs of the business. Strong communication skills and the ability to build, maintain, and grow new relationships are essential.
RESPONSIBILITIES / DUTIES
- Design, manage, support, and implement cloud security policies, services, and projects.
- Provide architectural security guidance in compliance with industry standards (HIPAA, NIST, CIS) for public cloud environments.
- Review and provide security‑significant feedback on designs and proposed changes submitted by others within the organization.
- Frequently communicate and present technical data to audiences with varying levels of technical knowledge.
- Communicate with and present to upper management.
- Manage cloud firewall, DLP, and vulnerability scanning technology.
- Support Level1 in resolving cloud‑security related issues and follow/improve documented Incident Response playbooks.
- Research new technology and assist in proof‑of‑concept testing.
- Document security standards and processes.
- Work with internal BMC Security and infrastructure teams to remediate vulnerabilities and other security issues.
- Contribute to design decisions for new or existing technology being used in a new way.
- Coordinate remediation of known vulnerabilities within the organization’s cloud presence.
- Assist in the education of the workforce on security topics through training and awareness opportunities.
- Provide less experienced security engineers with feedback and guidance on projects and skills development.
Education: Bachelor’s degree in Computer Science, Engineering, or related discipline; equivalent experience acceptable.
Certificates, Licenses, Registrations
Required:
CCSP, CISSP, CEH, Security+, or other security related certifications preferred.
Experience:
- 3+ years managing information security in a public cloud environment (AWS, Azure, GCP).
- 4+ years of experience in information security.
- 7+ years of experience in IT (information technology), preferentially with development, network, or systems administration experience.
- Healthcare domain knowledge and working in regulated environments (HIPAA, HITRUST, SOC2, PCI‑DSS) is a plus.
- AWS Certifications – Architect Associate or Professional required.
- Security or Advanced Networking level specialty certs are a plus.
Knowledge and
Skills:
- Expert‑level knowledge of AWS Guard Duty, Security Hub, Macie, Inspector, Trusted Advisor.
- Knowledge of Edge protection technologies such as AWS Shield, WAF, Cloud Front.
- Strong working understanding of Identity and Access Management (IAM) and SSO integration via Active Directory (Azure AD / ADFS).
- Experience with Control Tower or Landing Zone Accelerator (SCPs, Guardrails, Config Rules, etc.).
- Experience with monitoring systems such as Cloud Watch, VPC Flow Logs and industry standard visibility platforms (Splunk, Data Dog, Dynatrace, New Relic, etc.).
- Experience with logging and log monitoring (Cloud Watch and Cloud Trail) for security and compliance.
- Proficiency with scripting languages (Python, JSON, YAML, Bash).
- Proficiency with Infrastructure as Code (IaC), including Cloud Formation and/or Terraform.
- Understanding of CI/CD on AWS platform.
- Expert knowledge of AWS network and security features (VPC, Security Groups, NACLs, ALB/NLB, Transit Gateway, etc.).
- Experience supporting applications with native services and serverless architecture (Lambda) on AWS platform.
- Strong understanding of high availability solutioning (multi‑AZ/regions,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).