Cloud Security and Infrastructure Engineer

Chamber Cardio

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on experience in AWS cloud security and infrastructure engineering.
  • Proficient in AWS security services like GuardDuty, Security Hub, and IAM policy design.
  • Familiar with multi-account governance and modern infrastructure (ECS, EKS, Lambda).
  • Knowledgeable about compliance standards including CIS, HIPAA, and HITRUST.
  • Must be a US citizen.

Responsibilities

  • Design and enforce security architectures and controls across multiple AWS accounts.
  • Automate detection and response pipelines using AI tools for quick remediation.
  • Maintain CI/CD pipelines and automation frameworks in collaboration with engineering.
  • Lead initiatives to integrate security reviews and threat modeling into workflows.
  • Own and enhance AWS security compliance, including HIPAA programs.
  • Make informed architectural decisions while balancing security with cost and reliability.
  • Document and analyze workflows, identifying gaps and prioritizing actions.

Benefits

  • Flexible remote work options primarily working ET or CT hours.
  • Opportunity for occasional travel to practice sites or Chamber offices.
  • A culture fostering low ego, empathy, courage, ownership, and grit.
Full Job Description
Role Overview

We're looking for a Cloud Security and Infrastructure Engineer to build and mature Chamber's AWS security program and cloud infrastructure. This role owns cloud security architecture, detection and response, HIPAA compliance, and infrastructure decisions that keep our platform secure, reliable, and scalable.

This is a role for someone who moves work forward without waiting for perfect conditions, brings clarity to ambiguous situations, and follows through. We have live production infrastructure and active patient data running through it today, and the security posture protecting it needs to hold up and keep improving.

Key Responsibilities
  • Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts.
  • Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation.
  • Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team.
  • Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle.
  • Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs.
  • Shape cloud architecture decisions - balancing security, cost, and reliability - around zero-trust and defense-in-depth principles.
  • Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities.

What You'll Achieve in Your First 90 Days
  • Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog).
  • Identify automation opportunities and standardize AWS account deployment using Control Tower.
  • Validate SIEM logging ingestion and flag gaps.
  • Evaluate next-gen vulnerability scanners and build a comparison scorecard.

Requirements
  • 5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production - ideally including building a security program from scratch.
  • Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design.
  • Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda).
  • Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected).
  • US Citizenship is required.

Chamber Values
  • Low Ego: We stay grounded, curious, and open to feedback.
  • Empathy: We build trust through compassion and thoughtful communication.
  • Courage: We take action, think critically, and challenge ideas respectfully.
  • Ownership: We follow through with integrity and hold ourselves to high standards.
  • Grit: We push through ambiguity, move with urgency, and solve problems with horsepower and heart.

Location:

Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required.

Similar Jobs

More Jobs at Chamber Cardio

More Information Technology Jobs

Find similar Cloud Security and Infrastructure Engineer jobs: