AWS Security Assurance Services LLC
Technology
Security&ComplianceEngineerII
Neural analysis suggests this role is
optimal for Mid candidates.
“Security & Compliance Engineer II at AWS Security Assurance Services LLC. Skills: Security Assurance, Compliance Engineering, Cloud Security, Policy-as-code. Lead threat modeling. Lead security design reviews”
What You'll Achieve.
Establish scalable security solutions; Drive business outcomes; Deliver bar-raising security outcomes; Automate compliance in cloud
Industry & Context.
Troubleshooting systems issues; Analyzing logs; Root cause analysis
Travel as needed, US government security clearance
What They're Looking For.
Must Have
3+ years programming Python, 2+ years scripting experience, 2+ years troubleshooting systems issues, Knowledge of networking protocols, Experience applying threat modeling, Experience conveying complex technical concepts, Demonstrated ability to write code, Demonstrated ability to lead investigations
Nice to Have
2+ years threat modeling experience, 1+ years CI/CD experience, US government security clearance, 5+ years technical specialist, 3+ years secure coding experience, 3+ years software development experience, 3+ years cloud security engineering experience, Experience deploying SCPs, Experience writing policy-as-code, Experience with AWS Control Tower, Working knowledge of compliance framework, Experience producing audit-ready evidence, Spec-driven AI agentic design experience, Model Context Protocol experience, AWS Solutions Architect certification, AWS Security Specialty certification, CISSP certification
What You'll Do.
Lead security design reviews
Lead architecture reviews
Identify and mitigate risks
Design preventive controls
Design detective controls
Design proactive controls
Implement Service Control Policies
Implement Resource Control Policies
Implement policy-as-code
Implement automated remediation workflows
Build secure-by-design controls
Build Infrastructure-as-Code controls
Apply AWS security best practices
Build continuous compliance monitoring
Build automated evidence collection
Build visualization pipelines
Build reporting pipelines
Build remediation pipelines
Integrate custom controls
Drive emerging-edge ideas
Propose implementation paths
Propose go/no-go gates
Apply systematic approaches
Propose compensating controls
Help develop technical content
Identify cross-team patterns
Identify improvements
Travel to customer sites
How You'll Work.
Team & Collaboration
Cross-team patterns; Customer sites
Communication Scope
Conveying technical concepts
Process & Methodology
Roadmap planning
Full Job Description
- Lead threat modeling, security design reviews, and architecture reviews for customer engagements; identify and mitigate risks across systems and applications. - Design and implement custom preventive, detective, and proactive controls — Service Control Policies (SCPs), Resource Control Policies (RCPs), policy-as-code (cfn-guard, OPA Rego, Cedar), and automated remediation workflows. - Build secure-by-design Infrastructure-as-Code controls for Landing Zones, AWS Control Tower customizations, Zero-Trust architectures, and AI/ML workloads. - Apply AWS security best practices for authentication and authorization, data handling, least privilege, encryption, micro-segmentation, tagging strategy, and API/MCP integration. - Write and review IaC, scripts, enforcements and detections in Python, Terraform, AWS CDK, CloudFormation, and Rego. - Build continuous compliance monitoring, automated evidence collection, visualization, reporting, and remediation pipelines that hold up in audit. - Integrate custom controls with AWS-native and third-party security and compliance tooling. - Drive emerging-edge ideas into prototyping end-to-end to inform new security and compliance solutions and products. - Identify risks and edge cases; propose implementation paths and go/no-go gates. - Apply systematic approaches to risk identification; propose compensating controls when direct remediation isn’t possible. - Help develop technical content - Identify cross-team patterns, gaps, improvements. - Travel to customer sites as needed. About the team The AWS Security Assurance Services team, within AWS Support, leverages the expertise and ingenuity of our builders to establish scalable security solutions for both internal and external customers that drive business outcomes. Our goal of securing the world’s workloads requires reliable delivery of bar-raising security outcomes and investment in security mechanisms and automation on behalf of our customers. AWS Security Assurance Services LLC, a PC
Applying for this Security & Compliance Engineer II role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about AWS Security Assurance Services LLC?
Real rants from real employees. Read before you apply.