> Markdown version of [/jobs/ext/2228099-cloud-security-consultant](https://www.wearedevelopers.com/jobs/ext/2228099-cloud-security-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Consultant - **Company:** Staffxpert Llc - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Network Security, Zero Trust Network Access, Software Vulnerability Management, Scripting, Infrastructure Automation Frameworks, Devsecops, Security Orchestration, Automation & Response - **Published:** August 25, 2026 - **Apply:** https://www.dice.com/job-detail/2992cec6-3b79-4623-a240-aace08efdda0 ## About the Role * 5+ years of hands-on AWS security experience. * Experience designing and implementing secure, scalable AWS cloud architectures. * Strong knowledge of federal cybersecurity requirements and frameworks, including NIST Cybersecurity Framework, NIST SP 800-53, and applicable OMB guidance. * Strong understanding of IAM, cloud security, security architecture, network security, security operations, DevSecOps, vulnerability management, Zero Trust, and data protection. * Hands-on experience with AWS security services, security engineering, scripting, and Infrastructure-as-Code. * Strong analytical, troubleshooting, and problem-solving skills. * Ability to independently address complex security challenges. * Excellent communication and technical consulting skills. * Strong attention to detail and ability to work independently. Preferred Qualifications * AWS Certified Security - Specialty certification strongly preferred. * AWS Certified Solutions Architect - Associate or Professional certification. * Experience supporting federal or government cloud security environments. * Experience developing security automation and assessment tooling. * Experience providing security advisory services to engineering and technical teams. ## Description The ideal candidate will have strong hands-on AWS security experience and expertise in cloud security architecture, federal cybersecurity frameworks, DevSecOps, IAM, security engineering, and Infrastructure-as-Code. This role will provide security guidance, conduct cloud infrastructure assessments, and help engineering teams implement secure and compliant AWS solutions., * Conduct security reviews of AWS cloud infrastructure and Infrastructure-as-Code (IaC). * Evaluate cloud environments against security standards, policies, and best practices. * Assess compliance with the AWS Well-Architected Framework Security Pillar. * Identify, document, and remediate security misconfigurations and compliance gaps. * Implement AWS security controls and security hardening measures. * Develop and maintain AWS security configuration standards, guides, and playbooks. * Create and maintain security posture dashboards and reporting. * Provide technical security consultation to engineering and development teams. * Support DevSecOps, vulnerability management, IAM, network security, data protection, and Zero Trust initiatives. * Identify opportunities to automate security assessments and improve security tooling. * Conduct security awareness and training sessions for engineering teams. * Present security findings, risks, and recommendations to technical stakeholders. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)