GuidePoint Security logo

AWS Cloud Security Architect- Remote (Anywhere in the U.S.)

GuidePoint Security

AWS Cloud Security Architect- Remote (Anywhere in the U.S.) Join to apply for the AWS Cloud Security Architect- Remote (Anywhere in the U.S.) role at GuidePoint Security AWS Cloud Security Architect- Remote (Anywhere in the U.S.) Join to apply for the AWS Cloud Security Architect- Remote (Anywhere in the U.S.) role at GuidePoint Security Get AI-powered advice on this job and more exclusive features. Direct message the job poster from GuidePoint Security ***No third parties or firms. This is a direct perm role only. GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk . We are seeking a highly skilled Cloud Security Architect with deep expertise in AWS to lead the design, assessment, and governance of secure cloud environments for our clients. This role is central to delivering security consulting engagements, including architecture design, risk assessments, compliance mapping, and cloud-native control implementation. The ideal candidate will combine technical excellence in AWS and multi-cloud platforms with strong client advisory skills, helping organizations enhance their security posture, implement scalable guardrails, and adopt modern DevSecOps and CNAPP practices. This position also involves mentoring junior staff, contributing to internal methodologies, and supporting pre-sales and solutioning efforts within a fast-growing consultancy environmen t. Roles and Responsibiliti es:Design secure cloud architectures and reference models for AWS and multi-cloud environme ntsConduct in-de p th cloud security assessments to identify security misconfigurations, architecture and cloud operations risks, and compliance g apsAdvise clients on AWS identity and access management strategies including IAM roles, policies, federation, and ABAC/RBAC mod elsDevelop and implement cloud governance strategies including tagging taxonomies, policy enforcement with SCPs, RCPs, DPs, and Policy as Code patte rnsPerform threat modeling and risk assessments for cloud-native applications and worklo adsGuide secure implementation of Infrastructure as Code with Terraform, CloudFormation, and AWS CDKIntegrate security controls into client CI/CD pipelines and DevOps workfl owsUnderstanding of CNAPP (CSPM, CIEM, and CWPP) tooling and how it may supplement and/or replace cloud-native soluti onsWork with internal pre-sales teams in identifying use-cases and opportunities for third-party security tooling (e.g., CNAPP, Secrets Management, data security, cloud detection and response, NHI, et c.)Map cloud security controls to regulatory frameworks like PCI, SOC 2, HITRUST, NIST, ISO 27001, e tc.Assist clients with continuous compliance and audit readiness in cloud environme ntsPrepare and present client deliverables such as security roadmaps, process improvements, gap analyses, architecture diagrams, cloud security strategies, and custom deliverables based on the needs of the cli entLead AWS security workshops, technical interviews, and stakeholder briefi ngsContribute to internal methodologies, templates, and reusable assessment framewo rksMentor junior consultants and support knowledge sharing within the consulta ncyAssist with scoping and pre-sales activities including proposals and statements of work (SO Ws) Experience & Technical Profici encyMinimum of 5 years of designing AWS architecture and operating AWS workloads in medium to large AWS environm entsAWS knowledge must include networking, data security, identity and access management, and automation, and extensive hands-on with Amazon’s cloud-native security tooling serv icesStrong knowledge of IAM patterns (RBAC, ABAC), federated access, permission boundaries, SCPs, and RCPsProficiency in Infrastructure as Code (Terraform, CloudFormation) and secure coding pract icesExperience with CIEM, CSPM, or CWPP t oolsSkilled in threat modeling, risk analysis, and mapping controls to frameworks (e.g., NIST, CIS, MITRE ATT& ;CK)Development knowledge or experience with Infrastructure as Code (IaC), such as Terraform, CloudFormation, or CDKWorking knowledge with the Cloud Security Alliance (CSA) Cloud Control Matrix ( CCM)Familiarity with DevSecOps practices and integrating security into CI/CD pipel inesScripting or automation skills (e.g., Python, Bash, or PowerSh ell) Leadership and Collabor ationAbility to lead technical workshops, discovery sessions, and architecture reviews with cl ientsComfortable advising both technical and non-technical stakeholders on cloud security str ategySkilled in producing high-quality deliverables and communicating complex concepts cl earlyExperience mentoring junior staff or guiding cross-functional teams on cloud security best prac ticesCollaborative mindset with a strong consulting presence and client service orient ation Education & Certific ationsBachelor’s or equivalent experience in Cybersecurity, Computer Science, Engineering, or related field.Preferred certifica tions:CISSP, CCSP , CCSKAWS Cloud certifications: AWS Certified Security – Specialty, AWS Certified Solutions Architect – Profes sionalOther CSP Certifications: Microsoft Certified: Azure Security Engineer Associate, Google Professional Cloud Security En gineerOngoing commitment to professional development and staying current with cloud and security trends and certifica tions. We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your appli cation. Why Gui dePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 c ustomers.Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opp ortunity.This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in th e nation. Some add ed perks….Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/famil y options)Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of fa mily plans12 corporate holidays and a Flexible Time Off (FT O) programHealthy mobile phone and home internet allowanceEligibility for retirement plan after 2 months at open ***No third parties or firms. This is a direct perm role only. GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk . We are seeking a highly skilled Cloud Security Architect with deep expertise in AWS to lead the design, assessment, and governance of secure cloud environments for our clients. This role is central to delivering security consulting engagements, including architecture design, risk assessments, compliance mapping, and cloud-native control implementation. The ideal candidate will combine technical excellence in AWS and multi-cloud platforms with strong client advisory skills, helping organizations enhance their security posture, implement scalable guardrails, and adopt modern DevSecOps and CNAPP practices. This position also involves mentoring junior staff, contributing to internal methodologies, and supporting pre-sales and solutioning efforts within a fast-growing consultancy environmen t. Roles and Responsibiliti es:Design secure cloud architectures and reference models for AWS and multi-cloud environme ntsConduct in-de p th cloud security assessments to identify security misconfigurations, architecture and cloud operations risks, and compliance g apsAdvise clients on AWS identity and access management strategies including IAM roles, policies, federation, and ABAC/RBAC mod elsDevelop and implement cloud governance strategies including tagging taxonomies, policy enforcement with SCPs, RCPs, DPs, and Policy as Code patte rnsPerform threat modeling and risk assessments for cloud-native applications and worklo adsGuide secure implementation of Infrastructure as Code with Terraform, CloudFormation, and AWS CDKIntegrate security controls into client CI/CD pipelines and DevOps workfl owsUnderstanding of CNAPP (CSPM, CIEM, and CWPP) tooling and how it may supplement and/or replace cloud-native soluti onsWork with internal pre-sales teams in identifying use-cases and opportunities for third-party security tooling (e.g., CNAPP, Secrets Management, data security, cloud detection and response, NHI, et c.)Map cloud security controls to regulatory frameworks like PCI, SOC 2, HITRUST, NIST, ISO 27001, e tc.Assist clients with continuous compliance and audit readiness in cloud environme ntsPrepare and present client deliverables such as security roadmaps, process improvements, gap analyses, architecture diagrams, cloud security strategies, and custom deliverables based on the needs of the cli entLead AWS security workshops, technical interviews, and stakeholder briefi ngsContribute to internal methodologies, templates, and reusable assessment framewo rksMentor junior consultants and support knowledge sharing within the consulta ncyAssist with scoping and pre-sales activities including proposals and statements of work (SO Ws) Experience & Technical Profici encyMinimum of 5 years of designing AWS architecture and operating AWS workloads in medium to large AWS environm entsAWS knowledge must include networking, data security, identity and access management, and automation, and extensive hands-on with Amazon’s cloud-native security tooling serv icesStrong knowledge of IAM patterns (RBAC, ABAC), federated access, permission boundaries, SCPs, and RCPsProficiency in Infrastructure as Code (Terraform, CloudFormation) and secure coding pract icesExperience with CIEM, CSPM, or CWPP t oolsSkilled in threat modeling, risk analysis, and mapping controls to frameworks (e.g., NIST, CIS, MITRE ATT& ;CK)Development knowledge or experience with Infrastructure as Code (IaC), such as Terraform, CloudFormation, or CDKWorking knowledge with the Cloud Security Alliance (CSA) Cloud Control Matrix ( CCM)Familiarity with DevSecOps practices and integrating security into CI/CD pipel inesScripting or automation skills (e.g., Python, Bash, or PowerSh ell) Leadership and Collabor ationAbility to lead technical workshops, discovery sessions, and architecture reviews with cl ientsComfortable advising both technical and non-technical stakeholders on cloud security str ategySkilled in producing high-quality deliverables and communicating complex concepts cl earlyExperience mentoring junior staff or guiding cross-functional teams on cloud security best prac ticesCollaborative mindset with a strong consulting presence and client service orient ation Education & Certific ationsBachelor’s or equivalent experience in Cybersecurity, Computer Science, Engineering, or related field.Preferred certifica tions:CISSP, CCSP , CCSKAWS Cloud certifications: AWS Certified Security – Specialty, AWS Certified Solutions Architect – Profes sionalOther CSP Certifications: Microsoft Certified: Azure Security Engineer Associate, Google Professional Cloud Security En gineerOngoing commitment to professional development and staying current with cloud and security trends and certifica tions. We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your appli cation. Why Gui dePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 c ustomers.Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opp ortunity.This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in th e nation. Some add ed perks….Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/famil y options)Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of fa mily plans12 corporate holidays and a Flexible Time Off (FT O) programHealthy mobile phone and home internet allowanceEligibility for retirement plan after 2 months at open enrollmentPet Bene fit Option Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function Job function Information Technology Industries IT Services and IT Consulting Referrals increase your chances of interviewing at GuidePoint Security by 2x Inferred from the description for this job Medical insurance Vision insurance 401(k) Paid maternity leave Paid paternity leave Disability insurance Get notified about new Security Architect jobs in United States . United States $302,515.00-$355,900.00 1 hour ago United States $121,000.00-$140,000.00 2 weeks ago Strategic Consultant, Diplomatic Security United States $70,500.00-$146,500.00 2 weeks ago Ohio, United States $225,000.00-$300,000.00 2 weeks ago Dublin, OH $114,000.00-$200,000.00 1 week ago AWS Security Engineer, Information System Security Officer (ISSO) United States $80,000.00-$128,000.00 2 weeks ago United States $91,600.00-$190,400.00 1 week ago United States $90,000.00-$120,000.00 2 weeks ago United States $91,600.00-$190,400.00 2 weeks ago IT Cybersecurity Architect, FCH - IT - SECURITY AWS Cloud Security Architect- Remote (Anywhere in the U.S.) United States $161,700.00-$338,500.00 2 weeks ago Lead Security Analyst, Policy Controls & Risk Remediation United States $9,208.38-$14,413.11 1 day ago Sr. Microsoft Security Consultant (SME) - Remote United States $161,700.00-$338,500.00 2 weeks ago Senior Cyber Security Principal (Remote) Texas, United States $60.00-$65.00 2 weeks ago Deployable Industrial Security Analyst - GUAM United States $67,200.00-$100,800.00 1 hour ago Security Consultant - Identity Management North Carolina, United States $110,000.00-$145,000.00 1 week ago United States $210,000.00-$300,000.00 6 days ago United States $210,000.00-$300,000.00 6 days ago North Carolina, United States $130,000.00-$153,900.00 1 day ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr

Job Type

Job Type
Full Time
Salary Range
USD 302,515 - 355,900 yearly
Location
New York, NY

Share this job: