×
Register Here to Apply for Jobs or Post Jobs. X

AWS Cloud Security ​/ IAM Engineer Jobs

Job in Washington, District of Columbia, 20032, USA
Listing for: Clearance Jobs
Full Time position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    AWS, Cybersecurity, Cloud Computing: Infrastructure & Operations, Information Security & Data Protection
Job Description & How to Apply Below

AWS Cloud Security / IAM Engineer

Position Summary:

We are seeking an experienced AWS Cloud Security / IAM Engineer to design, implement, automate, and secure cloud infrastructure within a Federal AWS environment. This is not a traditional enterprise IAM role centered on administering large Okta, SailPoint, Ping, or Cyber Ark environments. The position is primarily focused on securing the AWS operating platform, with AWS Identity and Access Management (IAM) serving as a critical component of the overall cloud security architecture.

The ideal candidate is a hands-on AWS engineer who has experience building and securing AWS environments, implementing least-privilege access, automating infrastructure and security controls, and integrating security into Dev Sec Ops  and CI/CD workflows.

Key Responsibilities:

  • Design, implement, and maintain secure AWS cloud infrastructure supporting Federal workloads.
  • Design and manage AWS IAM roles, policies, permissions, and access controls using least-privilege principles.
  • Implement secure authentication and authorization patterns for users, workloads, applications, and AWS services.
  • Support multi-account AWS environments, including cross-account access and centralized security controls.
  • Implement and maintain AWS Organizations, organizational units (OUs), and Service Control Policies (SCPs) where applicable.
  • Design IAM permissions boundaries, role-based access controls, and workload/service roles.
  • Review IAM policies and remediate excessive, unused, or improperly configured permissions.
  • Automate cloud infrastructure and security configuration using Terraform, Cloud Formation, Ansible, or similar Infrastructure as Code technologies.
  • Integrate AWS infrastructure and security controls into CI/CD and Dev Sec Ops  pipelines.
  • Develop automation using Python, Bash, Power Shell, AWS CLI, or Boto
    3.
  • Configure, monitor, and remediate findings from AWS-native security services such as Security Hub, Guard Duty, Cloud Trail, AWS Config, Inspector, IAM Access Analyzer, KMS, and Secrets Manager.
  • Secure AWS networking and infrastructure components including VPCs, security groups, EC2, S3, Lambda, and related AWS services.
  • Support containerized workloads and Amazon EKS/Kubernetes environments where applicable.
  • Implement security controls consistent with Zero Trust and least-privilege principles.
  • Support cloud security hardening, vulnerability remediation, logging, monitoring, and continuous compliance.
  • Work closely with cloud engineering, Dev Sec Ops , cybersecurity, and application teams to integrate security throughout the cloud environment.
  • Support Federal security requirements and frameworks such as NIST 800-53, RMF, FedRAMP, DISA STIGs, and FISMA, as applicable.

Required Qualifications:

  • 8+ years of experience in cloud engineering, cybersecurity engineering, Dev Sec Ops , systems engineering, or related infrastructure roles.
  • Strong hands-on experience with Amazon Web Services (AWS).
  • Demonstrated experience securing production AWS environments.
  • Hands-on experience with AWS IAM, including: IAM roles IAM policies Least-privilege access Cross-account access Role-based access Workload/service identities
  • Experience with AWS infrastructure services such as EC2, VPC, S3, Lambda, Security Groups, Route 53, or similar services.
  • Experience with Infrastructure as Code using Terraform and/or Cloud Formation.
  • Experience with CI/CD pipelines and Dev Sec Ops  practices.
  • Experience automating infrastructure or security tasks using Python, Bash, Power Shell, AWS CLI, or similar scripting technologies.
  • Understanding of cloud security concepts including Zero Trust, least privilege, encryption, logging, monitoring, and vulnerability management.
  • Experience supporting secure or regulated environments.

Preferred Qualifications:

  • AWS Gov Cloud experience.
  • AWS Organizations and Service Control Policies (SCPs).
  • IAM Identity Center.
  • IAM Access Analyzer.
  • AWS Security Hub.
  • Amazon Guard Duty.
  • AWS Config.
  • AWS Cloud Trail.
  • Amazon Inspector.
  • AWS KMS.
  • AWS Secrets Manager.
  • Amazon EKS/Kubernetes and Docker.
  • Git Lab CI/CD, Jenkins, or Git Hub Actions.
  • Ansible.
  • Experience with NIST 800-53, RMF, FedRAMP, DISA STIGs, or similar Federal security frameworks.
  • AWS certifications such as: AWS Certified Security – Specialty AWS Certified Solutions Architect AWS Certified Dev Ops Engineer
  • Security certifications such as CISSP, Security+, CASP+/SecurityX, or equivalent.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary