AWS Security Assurance Services LLC

Technology

Security&ComplianceEngineerII

$159–202k Austin, Texas, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“Security & Compliance Engineer II at AWS Security Assurance Services LLC. Skills: Security Assurance, Compliance Engineering, Cloud Security, Policy-as-code. Lead threat modeling. Lead security design reviews”

What You'll Achieve.

Establish scalable security solutions; Drive business outcomes; Deliver bar-raising security outcomes; Automate compliance in cloud

Industry & Context.

Technology
Problems you'll solve

Troubleshooting systems issues; Analyzing logs; Root cause analysis

Eligibility Requirements

Travel as needed, US government security clearance

What They're Looking For.

Must Have

3+ years programming Python, 2+ years scripting experience, 2+ years troubleshooting systems issues, Knowledge of networking protocols, Experience applying threat modeling, Experience conveying complex technical concepts, Demonstrated ability to write code, Demonstrated ability to lead investigations

Nice to Have

2+ years threat modeling experience, 1+ years CI/CD experience, US government security clearance, 5+ years technical specialist, 3+ years secure coding experience, 3+ years software development experience, 3+ years cloud security engineering experience, Experience deploying SCPs, Experience writing policy-as-code, Experience with AWS Control Tower, Working knowledge of compliance framework, Experience producing audit-ready evidence, Spec-driven AI agentic design experience, Model Context Protocol experience, AWS Solutions Architect certification, AWS Security Specialty certification, CISSP certification

What You'll Do.

Lead security design reviews

Lead architecture reviews

Identify and mitigate risks

Design preventive controls

Design detective controls

Design proactive controls

Implement Service Control Policies

Implement Resource Control Policies

Implement policy-as-code

Implement automated remediation workflows

Build secure-by-design controls

Build Infrastructure-as-Code controls

Apply AWS security best practices

Build continuous compliance monitoring

Build automated evidence collection

Build visualization pipelines

Build reporting pipelines

Build remediation pipelines

Integrate custom controls

Drive emerging-edge ideas

Propose implementation paths

Propose go/no-go gates

Apply systematic approaches

Propose compensating controls

Help develop technical content

Identify cross-team patterns

Identify improvements

Travel to customer sites

How You'll Work.

Team & Collaboration

Cross-team patterns; Customer sites

Communication Scope

Conveying technical concepts

Process & Methodology

Roadmap planning

Full Job Description

- Lead threat modeling, security design reviews, and architecture reviews for customer engagements; identify and mitigate risks across systems and applications. - Design and implement custom preventive, detective, and proactive controls — Service Control Policies (SCPs), Resource Control Policies (RCPs), policy-as-code (cfn-guard, OPA Rego, Cedar), and automated remediation workflows. - Build secure-by-design Infrastructure-as-Code controls for Landing Zones, AWS Control Tower customizations, Zero-Trust architectures, and AI/ML workloads. - Apply AWS security best practices for authentication and authorization, data handling, least privilege, encryption, micro-segmentation, tagging strategy, and API/MCP integration. - Write and review IaC, scripts, enforcements and detections in Python, Terraform, AWS CDK, CloudFormation, and Rego. - Build continuous compliance monitoring, automated evidence collection, visualization, reporting, and remediation pipelines that hold up in audit. - Integrate custom controls with AWS-native and third-party security and compliance tooling. - Drive emerging-edge ideas into prototyping end-to-end to inform new security and compliance solutions and products. - Identify risks and edge cases; propose implementation paths and go/no-go gates. - Apply systematic approaches to risk identification; propose compensating controls when direct remediation isn’t possible. - Help develop technical content - Identify cross-team patterns, gaps, improvements. - Travel to customer sites as needed. About the team The AWS Security Assurance Services team, within AWS Support, leverages the expertise and ingenuity of our builders to establish scalable security solutions for both internal and external customers that drive business outcomes. Our goal of securing the world’s workloads requires reliable delivery of bar-raising security outcomes and investment in security mechanisms and automation on behalf of our customers. AWS Security Assurance Services LLC, a PC

Free ATS check

Applying for this Security & Compliance Engineer II role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

ANONYMOUS · UNFILTERED

What do employees actually say about AWS Security Assurance Services LLC?

Real rants from real employees. Read before you apply.

Read Company Rants →