AWS Cloud SME
- Location:
Canada—Remote - Pay Rate: $120/hr
- Contract Length: 45 Days
We at Raise are hiring an AWS Cloud SME for one of our top clients. After establishing themselves as an industry leader, they’re now expanding their team to meet rising demand. We’re hiring right now; if you’re interested, apply below for your chance to join a great place to work.
Responsibilities:
AWS Landing Zone & Governance
- Design and implement AWS Landing Zone (single-region—Toronto)
- Configure AWS Organizations, OUs, and Service Control Policies (SCPs)
- Establish governance standards (tagging, naming, cost management)
- Enable baseline services (Cloud Trail, Config, Guard Duty)
Networking & VPC Architecture
- Design and implement VPC architecture (CIDR, subnetting, AZ distribution)
- Configure:
- Public and private subnets
- Route tables, NAT Gateway, IGW
- Implement VPC Endpoints (S3, Glue, STS)
- Define and enforce:
- Security Groups
- Network ACLs
- Ensure secure connectivity between AWS and Splunk Cloud
Identity & Access Management
- Integrate AWS IAM with Microsoft Entra (SAML/SSO)
- Design RBAC model aligned with least privilege principles
- Create IAM roles/policies for:
- Splunk Federated Search
- AWS Glue
- S3 access
- Enforce MFA and conditional access policies
Data Services Configuration (S3 & Glue)
- Design and configure Amazon S3 buckets:
- Data ingestion
- Federated datasets
Implement:
- Encryption (SSE-KMS)
- Lifecycle policies
- Access controls
- Configure AWS Glue:
- Data Catalog
- Crawlers
- Tables
- Ensure Glue integration with Splunk FS
Splunk Federated Search Integration
- Configure AWS-side integration for Splunk Federated Search
- Enable secure connectivity between Splunk and AWS services
- Validate federated queries across S3 datasets
- Support index mapping and access control configuration
Security, Compliance & Policies
- Implement:
- Encryption in transit and at rest
- IAM governance policies
- Enable audit logging and monitoring (Cloud Trail, Config)
- Ensure compliance with VIA Rail security standards
- Perform security validation and risk assessment
Monitoring & Observability
- Configure Cloud Watch monitoring and alerting
- Integrate AWS logs into Splunk for centralized observability
- Create dashboards for:
- S3 usage
- Glue jobs
- IAM activity
Testing & Validation
- Perform:
- Connectivity validation (Splunk ↔ S3 ↔ Glue)
- IAM and access validation
- Execute performance and security testing
- Support client sign-off activities
Documentation & Knowledge Transfer
- Produce architecture and configuration documentation
- Deliver operational runbooks
- Conduct knowledge transfer sessions for VIA Rail teams
Required Skills & Expertise
Core AWS Expertise
- Strong hands-on experience with:
- VPC, Subnets, Routing, NAT, IGW
- AWS Organizations and Landing Zone design
- IAM roles, policies, and federation
- Experience with:
- Amazon S3 (security, lifecycle, encryption)
- AWS Glue (Data Catalog, Crawlers, ETL basics)
- Knowledge of:
- Cloud Watch, Cloud Trail, AWS Config
Networking & Security
- Deep understanding of:
- TCP/IP, CIDR, subnetting
- Firewall rules, security groups, NACLs
- Experience implementing:
- Private connectivity (VPC endpoints, Private Link)
- Secure hybrid/cloud architectures
- Knowledge of encryption standards (TLS, KMS)
Identity & Federation
- Hands-on experience integrating AWS with Microsoft Entra
- Expertise in:
- SAML 2.0 federation
- RBAC design
- MFA and conditional access
Splunk & Data Integration (Preferred)
- Experience working with Splunk Cloud Platform
- Understanding of:
- Splunk Federated Search architecture
- Data lake integrations (S3-based analytics)
- Familiarity with log ingestion and query optimization
Dev Ops & Automation (Good to Have)
- Experience with:
- Infrastructure as Code (Terraform, Cloud Formation)
- CI/CD pipelines
- Automation of AWS provisioning and configurations
Compliance & Governance
- Experience with:
- Enterprise cloud governance models
- Policy enforcement (SCPs, IAM policies)
- Understanding of regulatory and audit requirements
Soft Skills & Consulting Capability
- Strong stakeholder communication (technical + business)
- Ability to translate requirements into architecture and implementation
- Experience working in client-facing consulting roles
- Documentation and presentation skills (SOW, HLD/LLD)
Experience Requirements
- 8+ years of IT experience
- 4–6+ years of hands-on AWS experience
- Experience delivering…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: