Decision rights
Independent on design and build within standards; proposes guardrails and reference patterns; escalates enterprise-wide changes.
5+ years AWS security automation and DevOps
Required
5
Strong with AWS CDK and CloudFormation; working proficiency in Terraform
Required
CI/CD authoring in GitHub Actions and Azure DevOps
Required
Proficient in Python and Bash, with PowerShell for Windows automation
Required
Able to read Java and C# to integrate and tune SAST/SCA
Required
Practical knowledge of CJIS and NIST 800-53 control families and how to automate checks and evidence
Required
EKS/ECS/Lambda hardening patterns
Nice to have
OPA/Conftest, Checkov, Trivy, Inspector, CodeQL or equivalent
Nice to have
Basic Azure security automation for future phases
Nice to have