AWS Cloud Security Architect

System One Holdings, LLC

$130K — $155K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of IT experience with a strong focus on cybersecurity and cloud security.
  • 5+ years as a cybersecurity architect, specifically in cloud roles.
  • 5+ years of hands-on AWS cloud security experience, particularly in enterprise environments.
  • Solid understanding of AWS security services and best practices for cloud security.
  • Familiar with cybersecurity frameworks like NIST, FedRAMP, and FIPS.

Responsibilities

  • Provide security architecture guidance for AWS cloud and hybrid environments.
  • Collaborate with teams to securely migrate workloads to AWS and other platforms.
  • Define and maintain cloud security patterns and standards.
  • Conduct threat modeling and risk assessments for diverse solutions.
  • Support secure AI and GenAI integrations, ensuring compliance and data protection.
  • Evaluate security frameworks against solutions deployed in the enterprise.
  • Communicate security risks effectively to stakeholders across technical and business domains.

Benefits

  • Hybrid work model with three days onsite and two days remote.
  • Engagement in cutting-edge cybersecurity initiatives, especially in cloud and AI.
  • Opportunities for professional development in cloud security certifications and technologies.
Full Job Description
Job Title: AWS Cloud Security Architect
Duration: Full-Time Hire / Permanent Role
Location: Knoxville, TN or Columbia SC or Lafayette, LA or Birmingham, AL
Work Mode:
Hybrid - 3days onsite - 2 days remote

Position Description
?
Systemone is seeking an experienced AWS Cloud Security Architect to support enterprise cybersecurity initiatives across cloud, hybrid, application, infrastructure, and emerging AI environments within the financial services industry.

This role will focus heavily on AWS cloud security while also supporting Azure, GCP, on premises, and hybrid environments. The Cloud Security Architect will establish and apply security architecture patterns, guardrails, and controls that enable secure cloud adoption and help enterprise technology teams meet cybersecurity, regulatory, and risk management requirements.

Your future duties and responsibilities
?
The position will partner closely with cybersecurity, enterprise and portfolio architecture, application development, infrastructure engineering, cloud engineering, data security, compliance, risk, and operations teams. Responsibilities include security architecture reviews, threat modeling, cloud migration security, control definition, risk assessments, and security guidance for enterprise technology initiatives.

The role will also support the secure adoption of AI and Generative AI (GenAI) capabilities, including LLM integrations, retrieval augmented generation (RAG), enterprise AI platforms, AI guardrails, data protection, model access controls, observability, logging, and human oversight.

Key Responsibilities

  • Provide security architecture guidance for enterprise applications, AWS cloud environments, hybrid infrastructure, cybersecurity platforms, APIs, containers, data solutions, and AI enabled applications.
  • Partner with application and engineering teams to securely migrate workloads from on premises environments to AWS and other approved cloud platforms.
  • Define and maintain cloud security patterns, standards, guardrails, security requirements, reference architectures, and implementation guidance.
  • Conduct security architecture reviews, threat modeling, and risk assessments for cloud native, hybrid, API, container, third party, and AI/GenAI solutions.
  • Define appropriate security controls and recommend remediation or compensating controls when security gaps are identified.
  • Support secure AI/GenAI adoption, including LLM integrations, RAG implementations, prompt security, data protection, access controls, monitoring, logging, and human in the loop safeguards.
  • Support AI governance and risk management processes, including security reviews, monitoring requirements, incident escalation, and lifecycle controls.
  • Assess solutions against applicable security frameworks and standards, including NIST, FedRAMP, and FIPS.
  • Provide security guidance during technology evaluations, architecture reviews, security exceptions, and path to production activities.
  • Work with cybersecurity engineering and operations teams on security capabilities involving SIEM, network security, endpoint security, data protection, and security configuration.
  • Communicate security risks, requirements, and recommendations clearly to both technical teams and business stakeholders.


Required qualifications to be successful in this role
  • 8+ years of overall IT experience, including significant cybersecurity and cloud security experience.
  • 5+ years of cybersecurity architecture experience in roles such as Information Security Architect, Cloud Security Architect, or Infrastructure Security Architect.
  • 5+ years of hands on AWS cloud security experience, including securing enterprise workloads and cloud migrations.
  • Strong knowledge of AWS security services, controls, IAM, networking, logging, monitoring, data protection, and cloud security best practices.
  • Experience securing enterprise cloud and hybrid environments and performing security architecture reviews.
  • Experience with threat modeling, security risk assessments, control gap analysis, and remediation planning.
  • Knowledge of cybersecurity and compliance frameworks such as NIST, FedRAMP, and FIPS.
  • Experience defining and applying security standards, patterns, guardrails, and technical security controls.
  • Working knowledge of AI/GenAI security, including prompt injection, data leakage, model access controls, AI guardrails, observability, approved model usage, and human oversight.
  • Understanding of security considerations for LLMs, RAG solutions, APIs, containers, and enterprise data integrations.
  • Ability to work effectively with application developers, cloud and infrastructure engineers, cybersecurity teams, enterprise architecture, compliance, risk, and business stakeholders.
  • Strong written and verbal communication skills with the ability to explain technical security risks and requirements clearly.
  • Strong organizational, coordination, and stakeholder management skills.
  • CISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification is preferred.
  • AWS Certified Security - Specialty, Azure AZ 500, or another relevant cloud security certification is preferred.


Desired Skillset:
  • Security experience across Azure and/or GCP in addition to AWS.
  • AI/GenAI security, AI governance, or AI risk management experience.
  • Container and workload security experience covering build time and runtime controls.
  • API security experience, including enterprise API gateways.
  • Security engineering experience with SIEM, firewalls, endpoint/host security, or security configuration management.
  • Experience with AI enabled cybersecurity capabilities such as security analysis, vulnerability prioritization, detection support, secure code review, or workflow automation.
  • CISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification.
  • AWS Certified Security - Specialty, Azure Security Engineer Associate (AZ 500), or comparable cloud security certification.


Education:
  • Bachelor's degree in Computer Science, Information Systems, or a related field.?


Ref: #404-IT Pittsburgh

Similar Jobs

More Jobs at System One Holdings, LLC

More Information Technology Jobs

Find similar AWS Cloud Security Architect jobs: