Cloud Security and Infrastructure Engineer

Chamber Cardio

$120K — $140K *
US-AnywhereRemote in New York, NY
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of AWS cloud security and infrastructure experience in production environments
  • Proficient in AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector)
  • Experience in multi-account AWS governance and container/serverless infrastructure
  • Familiarity with security frameworks like CIS, HIPAA, HITRUST
  • US Citizenship required

Responsibilities

  • Design and enforce least-privilege IAM architectures and cloud security controls across AWS accounts
  • Build automated detection and response pipelines using AI tools for rapid remediation
  • Maintain CI/CD pipelines and automation frameworks with the engineering team
  • Lead cross-functional security initiatives integrating security reviews into development lifecycles
  • Manage vulnerability and HIPAA compliance programs, and monitor AWS security posture
  • Shape cloud architecture decisions focusing on security, cost, and reliability
  • Document workflows and gaps for active care programs

Benefits

  • Remote work opportunity with flexible hours in ET or CT
  • Potential for periodic travel to practice sites or Chamber offices
  • Focus on building AWS security programs with significant impact on patient data security
  • Engagement in live production environments with immediate security needs
  • Opportunity to identify automation solutions and enhance operational efficiencies
Full Job Description
Role Overview

We're looking for a Cloud Security and Infrastructure Engineer to build and mature Chamber's AWS security program and cloud infrastructure. This role owns cloud security architecture, detection and response, HIPAA compliance, and infrastructure decisions that keep our platform secure, reliable, and scalable.

This is a role for someone who moves work forward without waiting for perfect conditions, brings clarity to ambiguous situations, and follows through. We have live production infrastructure and active patient data running through it today, and the security posture protecting it needs to hold up and keep improving.

Key Responsibilities
  • Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts.
  • Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation.
  • Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team.
  • Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle.
  • Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs.
  • Shape cloud architecture decisions - balancing security, cost, and reliability - around zero-trust and defense-in-depth principles.
  • Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities.

What You'll Achieve in Your First 90 Days
  • Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog).
  • Identify automation opportunities and standardize AWS account deployment using Control Tower.
  • Validate SIEM logging ingestion and flag gaps.
  • Evaluate next-gen vulnerability scanners and build a comparison scorecard.

Requirements
  • 5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production - ideally including building a security program from scratch.
  • Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design.
  • Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda).
  • Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected).
  • US Citizenship is required.

Location:

Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required.

Similar Jobs

More Jobs at Chamber Cardio

More Information Technology Jobs

Find similar Cloud Security and Infrastructure Engineer jobs: