Cloud Security & DevSecOps Consultant (AWS)
<p><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:16pt;"><span style="line-height:115%;">Cloud Security & DevSecOps Consultant (AWS)</span></span></b></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance is looking for an Cloud Security & DevSecOps Consultant (AWS) to join our team as a full-time employee in our work remotely. This person is responsible for the end-to-end planning, building, and deploying of software systems. He/she will be able to drive the programming of well-constructed, testable code. </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">As an Cloud Security & DevSecOps Consultant (AWS) you will implement technical solutions as part of a team for customer engagements. This role requires strong teamwork, communication, patience and organization skills needed to drive customer success. </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">At Vertical Relevance we deliver with excellence through teamwork, automating everything, constantly learning and taking ownership for the outcomes our customers experience. Are you ready to join the team? </span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Key Responsibilities</b></span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Cloud Strategy & Advisory</b></span></span></span></p><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Partner with customers to shape their cloud adoption journey, providing both technical and strategic guidance</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design, plan, and implement secure cloud architectures aligned with business and compliance requirements</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Serve as a trusted advisor and deep technical resource to customers</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security Architecture & Automation</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and implement automated security and compliance solutions in AWS</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop and maintain Infrastructure-as-Code (IaC) solutions using Terraform</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build and operate CI/CD pipelines (GitHub Actions, Jenkins, CircleCI) for security automation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop Python-based automation for provisioning, compliance enforcement, and remediation</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Governance, Risk & Compliance</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement AWS Control Tower guardrails and Service Control Policies (SCPs)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Configure AWS Config rules with automated remediation workflows</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop and enforce policy-as-code frameworks (preventative, detective, responsive controls)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Align implementations with industry standards such as CIS AWS Foundations</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security Monitoring & Analytics</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and deploy centralized security monitoring and analytics frameworks</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement AWS-native security services, including:</span></span></span></span><ul style="list-style-type:circle;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Security Hub (centralized findings aggregation)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">GuardDuty (threat detection)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Macie (sensitive data discovery)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Inspector (vulnerability management)</span></span></span></span></li></ul></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Enable observability and auditing via CloudTrail, VPC Flow Logs, and CloudWatch</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Platform Engineering & Framework Development</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build self-service account provisioning frameworks using CI/CD pipelines</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop scalable landing zone and account baseline architectures</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create reusable Terraform modules and automation frameworks</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design reference architectures and implementation playbooks</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Customer Enablement & Thought Leadership</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create high-quality technical content (playbooks, runbooks, white papers, reference architecture)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Translate customer needs into actionable solutions and measurable outcomes</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Contribute to blogs, case studies, and internal knowledge sharing</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Provide feedback to influence product roadmaps and service enhancements</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Sample Engagement Activities</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop self-service AWS account provisioning frameworks with automated pipelines</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement security baselines and SCPs aligned to compliance requirements</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build policy-as-code frameworks for automated governance enforcement</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and deploy centralized security analytics dashboards</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create playbooks and runbooks with supporting code examples</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement enterprise-scale security controls and monitoring solutions</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Required Qualifications</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Proven experience architecting and operating AWS-based security and compliance solutions</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Hands-on experience with Terraform for infrastructure and security control implementation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Strong knowledge of AWS Control Tower, Organizations, and Service Control Policies (SCPs)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience configuring AWS Config rules and automated remediation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience building CI/CD pipelines (GitHub Actions, Jenkins, or CircleCI)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Proficiency in Python for automation and scripting</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience working in customer-facing technical roles</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Must be authorized to work in the United States without sponsorship</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Preferred Qualifications</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">AWS Security Specialty certification</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience with AWS Outposts environments</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience supporting large-scale enterprise cloud migrations</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Technical Environment</b></span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Core Technologies</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">AWS (Control Tower, Config, Organizations, Security Hub, GuardDuty, Macie, Inspector)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Terraform (Infrastructure as Code)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">CI/CD (GitHub Actions, Jenkins, CircleCI)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Python (automation and scripting)</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>AWS Services</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Compute:</b> EC2, Lambda, EKS, ECS</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Storage:</b> S3</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Networking:</b> VPC, Route53, API Gateway, Direct Connect</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security:</b> IAM, KMS, Secrets Manager, WAF, Shield, Firewall Manager</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Governance:</b> CloudTrail, CloudWatch, Systems Manager, Service Catalog</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Tools & Platforms</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Git, GitLab, Jenkins</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vault, Splunk</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Security tools: OWASP, Palo Alto, Trend Micro, Aqua, Twistlock, Fortify</span></span></span></span></li></ul><p><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance was founded to help business leaders drive value through the design and delivery of effective transformation programs across people, processes, and systems. Our mission is to help firms at any stage of their journey develop custom solutions for success and growth. We provide a full range of services from strategy and design through to implementation and training. Our collective industry expertise is our greatest asset - our professionals have an average of 20+ years’ experience within Financial Services, across Wealth Management, Asset Management, Insurance, and Banking. Within our Customer Experience practice, we add complementary industry expertise (technology and media) synergizing the most relevant and successful customer trends. We focus wholly on your success by first rigorously assessing your business and technology challenges, and then right-sizing solutions that provide a meaningful ROI. With our industry experts hitting the ground running and focusing on nimble, quality delivery, we can see rapid, tangible improvements with our clients in productivity and effectiveness. When it makes sense for your company, we leverage our product partnerships in the areas of CRM, Sales Acceleration, Predictive Analytics, Digital Knowledge Management, and Cloud Transformation. </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. </span></span></span><br> </p>