Cloud Security and Infrastructure Engineer

Chamber Cardio

$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on AWS cloud security and infrastructure engineering experience in production environments.
  • Deep understanding of AWS security services and IAM policy design.
  • Experience with multi-account AWS governance and container/serverless infrastructure.
  • Familiarity with security frameworks such as CIS and compliance standards like HIPAA.
  • US Citizenship is required.

Responsibilities

  • Design and enforce least-privilege IAM architectures and cloud security controls across AWS accounts.
  • Build automated detection and response pipelines using AI tools.
  • Maintain CI/CD pipelines and automation frameworks.
  • Lead cross-functional security initiatives and embed security reviews into development processes.
  • Own vulnerability management and ensure HIPAA compliance programs are implemented.
  • Shape cloud architecture decisions by considering security, cost, and reliability.
  • Review and document workflows for care programs, identifying gaps and priorities.

Benefits

  • Remote work opportunity with flexibility to work EST or CST hours.
  • Opportunity for occasional travel to practice sites or Chamber offices.
Full Job Description
Role Overview

We're looking for a Cloud Security and Infrastructure Engineer to build and mature Chamber's AWS security program and cloud infrastructure. This role owns cloud security architecture, detection and response, HIPAA compliance, and infrastructure decisions that keep our platform secure, reliable, and scalable.

This is a role for someone who moves work forward without waiting for perfect conditions, brings clarity to ambiguous situations, and follows through. We have live production infrastructure and active patient data running through it today, and the security posture protecting it needs to hold up and keep improving.

Key Responsibilities
  • Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts.
  • Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation.
  • Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team.
  • Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle.
  • Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs.
  • Shape cloud architecture decisions - balancing security, cost, and reliability - around zero-trust and defense-in-depth principles.
  • Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities.

What You'll Achieve in Your First 90 Days
  • Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog).
  • Identify automation opportunities and standardize AWS account deployment using Control Tower.
  • Validate SIEM logging ingestion and flag gaps.
  • Evaluate next-gen vulnerability scanners and build a comparison scorecard.

Requirements
  • 5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production - ideally including building a security program from scratch.
  • Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design.
  • Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda).
  • Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected).
  • US Citizenship is required.

Chamber Values
  • Low Ego: We stay grounded, curious, and open to feedback.
  • Empathy: We build trust through compassion and thoughtful communication.
  • Courage: We take action, think critically, and challenge ideas respectfully.
  • Ownership: We follow through with integrity and hold ourselves to high standards.
  • Grit: We push through ambiguity, move with urgency, and solve problems with horsepower and heart.

Location:

Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required.

Similar Jobs

More Jobs at Chamber Cardio

More Information Technology Jobs

Find similar Cloud Security and Infrastructure Engineer jobs: