Boston Medical Center (BMC) Logo

Boston Medical Center (BMC)

AWS Cloud Security Engineer- Remote

Posted Yesterday
Remote
Hiring Remotely in USA
90K-130K Annually
Senior level
Remote
Hiring Remotely in USA
90K-130K Annually
Senior level
Designs, implements, and manages AWS cloud security policies, architecture, and technologies. The role oversees firewalls, DLP, vulnerability scanning, monitoring, logging, IAM, incident response, compliance, and remediation. It provides security guidance for AWS solutions, supports migrations of mission-critical applications, researches new technologies, documents standards, presents to varied audiences, and mentors less experienced engineers. The position requires strong AWS expertise, infrastructure-as-code proficiency, knowledge of regulated healthcare environments, and experience securing highly available cloud and serverless architectures.
The summary above was generated by AI

POSITION SUMMARY:

The AWS Cloud Security Engineer role at Boston Medical Center Health System (BMCHS) is responsible for the development, management, and ongoing support of our public cloud information security strategy. This role will collaborate closely with infrastructure, application, and other internal and partner teams to achieve organizational goals in the public cloud, while promoting and maintaining strong adherence to and enforcement of security policies and best practices. The AWS Cloud Security Engineer II will provide value and be a primary source of knowledge in building secure, compliant, and cost-effective AWS solutions. Team members in this role will administer, maintain, and ensure that AWS and 3rd party security technologies are highly available, actionable, and can support the critical needs of the business. Strong communication skills and the ability to build/maintain/grow new relationships will ensure you can execute effectively in this role.

Position: AWS Cloud Security Engineer       

Department: Information Technology

Schedule: Full Time

ESSENTIAL RESPONSIBILITIES / DUTIES:

  • Design, manage, support, and implement cloud security policies, services, and projects.
  • Provide architectural security guidance in compliance with industry standards (HIPAA, NIST, CIS) for public cloud environments.
  • Review and provide security-significant feedback on designs and proposed changes submitted by others within the organization.
  • Frequently communicate and present technical data to audiences with varying levels of technical knowledge.
  • Frequently communicate with and present to upper management.
  • Manage cloud firewall, DLP, and vulnerability scanning technology.
  • Support L1 in resolving cloud-security related issues and follow/improve documented Incident Response playbooks
  • Research new technology and assist in proof-of-concept testing.
  • Document security standards and processes.
  • Work with other internal BMC Security / infrastructure teams to remediate vulnerabilities and other security issues.
  • Contribute to design decisions for new technology or existing technology being used in a new way.
  • Coordinate findings remediation of known vulnerabilities within the organization’s cloud presence.
  • Assist in the education of the workforce on security topics through training and awareness opportunities.
  • Provide less experienced security engineers with feedback and guidance on projects and skills development. 

 (The above statements in this job description are intended to depict the general nature and level of work assigned to the employee(s) in this job.  The above is not intended to represent an exhaustive list of accountable duties and responsibilities required).

JOB REQUIREMENTS

EDUCATION:

Bachelor’s degree in Computer Science, Engineering, or related discipline; equivalent experience acceptable.

CERTIFICATES, LICENSES, REGISTRATIONS REQUIRED:

  • CCSP, CISSP, CEH, Security+, or other security related certifications preferred

EXPERIENCE:

  • 3+ years of experience managing information security in a public cloud environment (AWS, Azure, GCP). Strong, demonstrated AWS expertise required
  • 4+ years of experiences in information security
  • 7+ years of experience in IT (information technology), preferentially with development, network, or systems administration experience
  • Healthcare domain knowledge and working in regulated environments is a plus (HIPAA, HITRUST, SOC2, PCI-DSS)
  • AWS Certifications, Architect Associate or Professional required. Security or Advanced Networking level specialty certs are a plus

KNOWLEDGE AND SKILLS:

  • Expert-level knowledge of AWS GuardDuty, Security Hub, Macie, Inspector, Trusted Advisor
  • Knowledge of Edge protection technologies such as AWS Shield, WAF, CloudFront
  • Strong working understanding of Identity and Access Management (IAM) and SSO Integration via Active Directory (Azure AD / ADFS)
  • Experience working in organizations with top level Control Tower or Landing Zone Accelerator (SCP’s, Guardrails, Config Rules, etc.)
  • Experience with monitoring systems such as CloudWatch / VPC Flow Logs and other industry standard visibility platforms (Splunk, DataDog, Dynatrace, New Relic, etc.)
  • Experience with Logging and log monitoring (CloudWatch and CloudTrail) both for security and compliance efforts
  • Proficiency with one or more scripting languages (python, json, yaml, bash, etc.)
  • Proficiency with Infrastructure as Code (IaC), including CloudFormation and/or Terraform
  • Understanding of CI/CD on AWS platform
  • Expert knowledge of AWS network and security features (VPC, Security Groups, NACLs, ALB/NLB, Transit Gateway, etc.)
  • Experience supporting applications with native services and serverless architecture (Lambda) on AWS platform
  • Strong understanding of high availability solutioning (multi-AZ / regions, Backup) and how security fits into this model
  • Demonstrated history of moving mission-critical applications from the datacenter to AWS
  • Ability to effectively adapt to rapidly changing technology and apply it to business needs

Compensation Range:

$89,500.00- $130,000.00

This range offers an estimate based on the minimum job qualifications. However, our approach to determining base pay is comprehensive, and a broad range of factors is considered when making an offer. This includes education, experience, skills, and certifications/licensures as they directly relate to position requirements; as well as business/organizational needs, internal equity, and market-competitiveness. In addition, BMCHS offers generous total compensation that includes, but is not limited to, benefits (medical, dental, vision, pharmacy), discretionary annual bonuses and merit increases, Flexible Spending Accounts, 403(b) savings matches, paid time off, career advancement opportunities, and resources to support employee and family well-being. 

NOTE: This range is based on Boston-area data, and is subject to modification based on geographic location.

Equal Opportunity Employer/Disabled/Veterans

According to the FTC, there has been a rise in employment offer scams. Our current job openings are listed on our website and applications are received only through our website. We do not ask or require downloads of any applications, or “apps” job offers are not extended over text messages or social media platforms. We do not ask individuals to purchase equipment for or prior to employment. 

Similar Jobs

One Month Ago
Remote
2 Locations
Mid level
Mid level
Cloud
Manage and optimize cloud security posture across GCP and AWS, triage and remediate alerts/vulnerabilities, harden Kubernetes environments, implement secure baselines and guardrails, support secure AI/LLM integrations, produce compliance evidence, and participate in cloud incident response.
Top Skills: Admission ControllersAWSBashCi/CdCloud ArmorCloud LoggingCloudFormationContainer Image ScanningContainer Supply Chain SecurityEncryptionGCPGcp Security Command CenterGkeGrok)IamJavaScriptKmsKubernetesLlms (ChatgptNetwork PoliciesPod Security ControlsPythonRbacRuntime SecuritySecrets ManagementTerraform
20 Minutes Ago
Remote or Hybrid
USA
41K-83K Annually
Mid level
41K-83K Annually
Mid level
Machine Learning • Payments • Security • Software • Financial Services
Provides enterprise technology support through phone, ticketing, and potentially chat channels. Troubleshoots hardware, software, network, access, and application issues; manages incidents and escalations; documents resolutions in ServiceNow or similar ITSM tools; analyzes trends and operations data; supports knowledge management, training, process improvement, and automation; and coaches junior analysts while maintaining customer service, security, and confidentiality standards.
Top Skills: Call Center TechnologiesHardware InfrastructureItsmNetworkingServicenow
20 Minutes Ago
Remote or Hybrid
USA
86K-173K Annually
Senior level
86K-173K Annually
Senior level
Machine Learning • Payments • Security • Software • Financial Services
Leads the design, automation, deployment, monitoring, and security of Azure cloud infrastructure. Builds Infrastructure as Code with Terraform, Bicep, or ARM templates; manages CI/CD pipelines through Azure DevOps and GitHub; and implements monitoring, logging, alerting, incident response, patching, and vulnerability management. Collaborates with engineering, development, architecture, security, and incident management teams to improve system reliability, scalability, performance, and cost efficiency.
Top Skills: Arm TemplatesAzureAzure DevopsAzure MonitorBashBicepCi/CdElastic StackElk StackGithub ActionsGithub EnterpriseInfrastructure As CodeKubernetesPowershellTerraform

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account