Talent.com
Cloud Security Architect
Cloud Security ArchitectRecutify Inc. • Markham, Ontario, Canada
Cloud Security Architect

Cloud Security Architect

Recutify Inc. • Markham, Ontario, Canada
Il y a plus de 30 jours
Type de contrat
  • Temps plein
Description de poste

Position : Cloud Security Architect

Location : MarkhamON

Position : Full time / Subcon

Mode : Hybrid (Mandatorily need to visit office 3 days a week)

Need 10 Years Profile only.

Job Details :

Top Capability skills required

1. AWS architect

2. AWS security SME

3. IT security background

Senior AWS Cloud Security Architect

The Senior AWS Cloud Security Architect is responsible for designing implementing and governing secure compliant and resilient AWS environments across multi-account cloud infrastructures.

You will lead the architecture and automation of identity data protection threat detection and network segmentation controls across the AWS ecosystem.

Key Responsibilities :

  • Design and implement secure landing zones using AWS Control Tower AWS Organizations and Service Control Policies (SCPs).
  • Define multi-account security guardrails for shared services workloads and sandbox environments.
  • Create reference architectures covering security zones network segmentation and cross-account communication (PrivateLink AWS WAN).
  • Lead threat modelling and risk assessments for new workloads and services (Lambda ECS EC2 S3 RDS DynamoDB etc.).
  • Develop security-by-design templates integrated into Infrastructure as Code (IaC) pipelines.
  • Partner with compliance teams to maintain continuous alignment with CIS Benchmarks and organizational risk frameworks.
  • Implement federated access and single sign-on with AWS IAM Identity Center (AWS SSO) Okta and Azure AD.
  • Manage cross-account roles STS trust policies and temporary credentials for developers and third parties.
  • Automate secret and credential rotation with AWS Secrets Manager and AWS Systems Manager Parameter Store.
  • Enforce encryption at rest using AWS KMS CloudHSM and envelope encryption patterns.
  • Ensure encryption in transit (TLS 1.2 / 1.3) across internal and public endpoints.
  • Manage key rotation cross-region replication and HSM-based root of trust.
  • Implement S3 Object Lock Macie for data discovery and classification and Access Points for fine-grained data access.
  • Implement PrivateLink AWS WAN and Route 53 Resolver endpoints for service-to-service isolation.
  • Configure Web Application Firewall (WAF) and AWS Shield Advanced for DDoS mitigation.
  • Enforce egress control through Cloud NAT AWS Gateway Load Balancer (GWLB) or custom proxies.
  • Deploy and integrate AWS Security Hub GuardDuty Macie and Inspector for proactive threat detection.
  • Configure Amazon Detective for forensic investigation and anomaly correlation.
  • Integrate findings into SIEM / SOAR platforms such as FortiSOAR or Azure Sentinel.
  • Automate response playbooks with AWS Step Functions Lambda and SNS alerts.
  • Implement AWS Config rules and Conformance Packs to enforce compliance (e.g. CIS AWS Foundations Benchmark).
  • Use AWS Artifact for vendor assurance and control documentation.
  • Manage compliance dashboards via Security Hub Trusted Advisor and Control Tower drift detection.

Core AWS Security & Supporting Services

Identity & Access Management : IAM IAM Identity Center (SSO) AWS Organizations Access Analyzer Cognito Resource Access Manager (RAM) Directory Service.

Encryption & Key Management : KMS CloudHSM Secrets Manager SSM Parameter Store Certificate Manager (ACM) Private CA.

Network & Perimeter Security : Network Firewall WAF Shield (Standard & Advanced) PrivateLink AWS WAN Route 53 Resolver Network LoadBalancer Application LoadBalancer.

Threat Detection & Monitoring : GuardDuty Detective Security Hub Inspector Macie CloudTrail Config CloudWatch CloudWatch Logs CloudWatch Metrics.

Compliance & Governance : Audit Manager Artifact Control Tower Trusted Advisor Config Conformance Packs Service Catalog Organizations SCPs.

Data Protection : S3 Object Lock Macie Lake Formation DLP integrations S3 Access Points.

Vulnerability & Posture Management : Inspector (EC2 ECR Lambda) Trusted Advisor Config Security Hub.

Application & Container Security : ECR image scanning ECS task IAM roles Lambda least privilege Secrets Manager API Gateway authorization.

Incident Response & Automation : Step Functions Lambda Systems Manager Automation SNS CloudWatch Alarms EventBridge Rules.

Required Skills and Experience

  • 8 years in cybersecurity with 4 years in AWS cloud security architecture.
  • Deep understanding of AWS Well-Architected Framework (Security Pillar).
  • Preferred Certifications

  • AWS Certified Security Specialty
  • AWS Certified Solutions Architect Professional
  • CISSP / CISM / CCSP / GCSA / GIAC Cloud Security Automation
  • Key Skills

    APIs,Pegasystems,Spring,SOAP,.NET,Hybris,Solution Architecture,Service-Oriented Architecture,Adobe Experience Manager,J2EE,Java,Oracle

    Employment Type : Full Time

    Experience : years

    Vacancy : 1

    Créer une alerte emploi pour cette recherche

    Architect Cloud • Markham, Ontario, Canada

    Offres similaires
    Senior Solution Architect — Enterprise Cloud & Security

    Senior Solution Architect — Enterprise Cloud & Security

    Manulife Financial • Toronto
    Temps plein
    A leading financial service provider in Toronto is seeking a Solution Architect with over 7 years of experience.This role involves collaborating with IT professionals to implement cross-platform so...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Cloud Solution Architect - Infrastructure

    Cloud Solution Architect - Infrastructure

    Forhyre • Toronto, ON, Canada
    Temps plein
    We are looking for a Cloud Solution Architect - Infrastructure to design the structure of our clients IT systems and oversee programs to ensure the proper architecture is implemented.In this role, ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Oracle Cloud Application Security Manager — Hybrid Canada

    Oracle Cloud Application Security Manager — Hybrid Canada

    Deloitte Canada • Toronto
    Temps plein
    Deloitte Canada seeks a Manager in the Cyber Risk practice to lead Application Security projects.This role involves overseeing project risk management, supervising teams, and ensuring compliance wi...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Senior Cloud Security Architect

    Senior Cloud Security Architect

    Scotiabank • Toronto, Canada
    Temps plein
    A leading bank in the Americas is seeking a Principal Cloud Security Engineer in Toronto.The role involves leading the design and development of cloud security patterns and ensuring alignment with ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Azure Cloud Engineer – Landing Zones & Security Lead

    Azure Cloud Engineer – Landing Zones & Security Lead

    TTEC Digital • Toronto
    Temps plein
    A leading cloud consulting company in Ontario is seeking a Senior Cloud Engineer specializing in Microsoft Azure.This critical role involves designing and hardening cloud solutions, automating infr...Voir plus
    Dernière mise à jour : il y a 7 jours • Offre sponsorisée
    Senior Security Engineer : Cloud & Platform Security

    Senior Security Engineer : Cloud & Platform Security

    Sentry.io • Toronto
    Temps plein
    A leading software monitoring company in Toronto is seeking a Senior Security Engineer to enhance its cloud application security. You will lead initiatives to tackle critical security challenges, co...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Senior DevSecOps Engineer — Cloud Security & IaC (Hybrid)

    Senior DevSecOps Engineer — Cloud Security & IaC (Hybrid)

    OceanMD • Toronto
    Temps plein
    A leading healthcare technology firm in Toronto is seeking a DevSecOps Engineer to enhance security across AWS environments. You will lead security initiatives, design secure infrastructure, and ens...Voir plus
    Dernière mise à jour : il y a 7 jours • Offre sponsorisée
    Cloud Security Architect

    Cloud Security Architect

    Sopra Steria • Toronto, ON, Canada
    Temps plein
    Sopra Steria is a European leader in consulting, digital services, and software development, supporting its clients in their digital transformation through innovative and collaborative solutions.Wi...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Senior Azure Cloud Architect (MSP)

    Senior Azure Cloud Architect (MSP)

    Venture Computers of Canada Inc. • Markham, ON, Canada
    Temps plein
    We are seeking a Senior Azure Architect to join our Toronto-based Managed Service Provider team.In this role, you will lead the design, implementation, and management of Azure cloud environments fo...Voir plus
    Dernière mise à jour : il y a 16 jours • Offre sponsorisée
    Solution Architect- Cloud and Security

    Solution Architect- Cloud and Security

    Delpath • Toronto, Canada
    Temps plein
    Location : Hybrid - Toronto and Scarborough (3–4 days onsite).Contract Duration : 6 months with high possibility of extension & conversion to FTE Hiring Manager : Information Security Senior Manager R...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Senior Network Architect - Cloud Edge & Security

    Senior Network Architect - Cloud Edge & Security

    Dayforce US, Inc. • Toronto
    Temps plein
    A global HCM company in Toronto is seeking a Senior Network Engineer to enhance their cloud network infrastructure.The role involves providing strategic leadership for network systems, troubleshoot...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Strategic Enterprise Architect — Cloud, Data & Security

    Strategic Enterprise Architect — Cloud, Data & Security

    KPMG Canada • Toronto, Canada
    Temps plein
    KPMG Canada seeks a Technology Enterprise Architect to enhance enterprise systems design and integration.The role requires collaboration across various domains including security, data management, ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Cloud Solutions Architect - Orchestrator Infrastructure

    Cloud Solutions Architect - Orchestrator Infrastructure

    Hire DigITalent • Toronto, ON, Canada
    Temps plein
    Hybrid – 2-3 days per week in the Toronto office.Only candidates whose experience closely matches the requirements will be contacted. Based in Toronto and embedded in Canada's thriving AI ...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    Senior Network Engineering Lead — Security & Cloud (Hybrid)

    Senior Network Engineering Lead — Security & Cloud (Hybrid)

    Ontario Teachers' Pension Plan • Toronto
    Temps plein
    A leading pension fund in Toronto is seeking a senior Engineering Lead for Network.This role involves overseeing network strategy, managing new security technologies, and collaborating with teams t...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Cloud Architect

    Cloud Architect

    Starboard Recruitment • Toronto, ON, Canada
    Temps plein
    Follow Starboard Recruitment on LinkedIn for ongoing job opportunities, market updates and advice : .Starboard Recruitment, on behalf of our client, is searching for an experienced Cloud Architect.Op...Voir plus
    Dernière mise à jour : il y a plus de 30 jours • Offre sponsorisée
    AI & Cloud Security Architect Lead

    AI & Cloud Security Architect Lead

    Société Financière Manuvie • Toronto
    Temps plein
    A leading financial services firm in Toronto is seeking a Lead Security Architect to design and implement robust security strategies. You will shape the global security posture, ensuring alignment w...Voir plus
    Dernière mise à jour : il y a 16 jours • Offre sponsorisée
    Hybrid Splunk Security Architect - Cloud SIEM Lead

    Hybrid Splunk Security Architect - Cloud SIEM Lead

    Foilcon • Toronto
    Temps plein
    Foilcon is seeking a Technology Architect specializing in Splunk Security to join their team.This hybrid contract role involves developing and managing technical architectural solutions for Splunk ...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    Manulife Insurance Malaysia • Toronto
    Temps plein
    Nous utilisons des • •pour fournir des statistiques qui nous aident à vous offrir la meilleure expérience sur note site.Vous y trouverez des renseignements sur les témoins, ou vous pouvez les désac...Voir plus
    Dernière mise à jour : il y a 18 jours • Offre sponsorisée