> Markdown version of [/jobs/ext/2307694-aws-cloud-security-architect](https://www.wearedevelopers.com/jobs/ext/2307694-aws-cloud-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AWS Cloud Security Architect - **Company:** Cgi Inc. - **Location:** Knoxville, TN, United States - **Experience:** Expert - **Salary:** $123,800.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Configuration Management, Code Review, Cyber Security, Information Systems, Information Technology Consulting, Information Leak Prevention, Data Security, Data Systems, Federal Information Processing Standards (FIPS), Identity and Access Management, Internet Security, Information Systems Security Architecture Professional, Network Security, Secure Coding, Security Information and Event Management, Software Engineering, Working Model 2D, Enterprise Data Management, Data Logging, Data Processing, Google Cloud, Enterprise Software Applications, Large Language Models, Software Security, Model Validation, Generative AI, HybridCloud, Firewalls (Computer Science), AI Platforms, Information Technology, Cloud Migration, Api Gateway, Human in the Loop, Cisco - **Published:** August 30, 2026 - **Apply:** https://www.careerbuilder.com/job-details/aws-cloud-security-architect--77bcc723-c639-4e14-9a36-4b5f2111e40a ## About the Role 8+ years of overall IT experience, including significant cybersecurity and cloud security experience. . 5+ years of cybersecurity architecture experience in roles such as Information Security Architect, Cloud Security Architect, or Infrastructure Security Architect. . 5+ years of hands on AWS cloud security experience, including securing enterprise workloads and cloud migrations. . Strong knowledge of AWS security services, controls, IAM, networking, logging, monitoring, data protection, and cloud security best practices. . Experience securing enterprise cloud and hybrid environments and performing security architecture reviews. . Experience with threat modeling, security risk assessments, control gap analysis, and remediation planning. . Knowledge of cybersecurity and compliance frameworks such as NIST, FedRAMP, and FIPS. . Experience defining and applying security standards, patterns, guardrails, and technical security controls. . Working knowledge of AI/GenAI security, including prompt injection, data leakage, model access controls, AI guardrails, observability, approved model usage, and human oversight. . Understanding of security considerations for LLMs, RAG solutions, APIs, containers, and enterprise data integrations. . Ability to work effectively with application developers, cloud and infrastructure engineers, cybersecurity teams, enterprise architecture, compliance, risk, and business stakeholders. . Strong written and verbal communication skills with the ability to explain technical security risks and requirements clearly. . Strong organizational, coordination, and stakeholder management skills. . CISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification is preferred. . AWS Certified Security - Specialty, Azure AZ 500, or another relevant cloud security certification is preferred. Desired Skillset: . Security experience across Azure and/or GCP in addition to AWS. . AI/GenAI security, AI governance, or AI risk management experience. . Container and workload security experience covering build time and runtime controls. . API security experience, including enterprise API gateways. . Security engineering experience with SIEM, firewalls, endpoint/host security, or security configuration management. . Experience with AI enabled cybersecurity capabilities such as security analysis, vulnerability prioritization, detection support, secure code review, or workflow automation. . CISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification. . AWS Certified Security - Specialty, Azure Security Engineer Associate (AZ 500), or comparable cloud security certification. Education: Bachelor''s degree in Computer Science, Information Systems, or a related field., * Amazon Web Services Cloud * Artificial Intelligence * Communication * Network * Security Architecture * Stakeholder management, Access Control, Amazon Web Services (AWS), Application Programming Interface (API), Artificial Intelligence (AI), Automation, Background Investigation, Banking Services, Best Practices, Business Services, CCSP - Cisco Certified Security Professional, CGI (Common Gateway Interface), CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Applications, Cloud Architecture, Cloud Computing, Code Reviews, Communication Skills, Computer Science, Computer Security, Configuration Management, Cookies, Customer Relations, Data Modeling, Data Processing, Endpoint Security, Engineering, Enterprise Applications, Enterprise Architecture, Enterprise Data Integration, Enterprise Protection, Establish Priorities, FMLA (Family and Medical Leave Act of 1993), Federal Information Processing Standards (FIPS), Financial Services, Firewalls, GCP (Good Clinical Practices), GIAC - Global Information Assurance Certification, Gap Analysis, Hybrid Cloud, Information Architecture, Information Technology & Information Systems, Information Technology Consulting, Information/Data Security (InfoSec), Injections, Internet Security, Microsoft Windows Azure, Model Review, Network Security, Operations Security (OPSEC), Organizational Skills, Presentation/Verbal Skills, Protective Services, Regulations, Risk, Risk Analysis, Risk Management, Security Analysis, Security Architecture, Security Clearance, Security Information and Event Management (SIEM), Security Monitoring, Software Development, Software Engineering, Technology Analysis, Threat Modeling, Threat and risk analysis (TRA), U.S. National Institute of Standards and Technology (NIST), Writing Skills, YouTube ## Description CGI is seeking an experienced AWS Cloud Security Architect to support enterprise cybersecurity initiatives across cloud, hybrid, application, infrastructure, and emerging AI environments within the financial services industry. This role will focus heavily on AWS cloud security while also supporting Azure, GCP, on premises, and hybrid environments. The Cloud Security Architect will establish and apply security architecture patterns, guardrails, and controls that enable secure cloud adoption and help enterprise technology teams meet cybersecurity, regulatory, and risk management requirements. We partner with 15 of the top 20 banks globally, and our top 10 banking clients have worked with us for an average of 26 years!. This role is located at a client site in either Knoxville, TN, Columbia SC or Lafayette, LA or Birmingham, AL. A hybrid working model is acceptable., This role will focus heavily on AWS cloud security while also supporting Azure, GCP, on premises, and hybrid environments. The Cloud Security Architect will establish and apply security architecture patterns, guardrails, and controls that enable secure cloud adoption and help enterprise technology teams meet cybersecurity, regulatory, and risk management requirements. The position will partner closely with cybersecurity, enterprise and portfolio architecture, application development, infrastructure engineering, cloud engineering, data security, compliance, risk, and operations teams. Responsibilities include security architecture reviews, threat modeling, cloud migration security, control definition, risk assessments, and security guidance for enterprise technology initiatives. The role will also support the secure adoption of AI and Generative AI (GenAI) capabilities, including LLM integrations, retrieval augmented generation (RAG), enterprise AI platforms, AI guardrails, data protection, model access controls, observability, logging, and human oversight. Key Responsibilities . Provide security architecture guidance for enterprise applications, AWS cloud environments, hybrid infrastructure, cybersecurity platforms, APIs, containers, data solutions, and AI enabled applications. . Partner with application and engineering teams to securely migrate workloads from on premises environments to AWS and other approved cloud platforms. . Define and maintain cloud security patterns, standards, guardrails, security requirements, reference architectures, and implementation guidance. . Conduct security architecture reviews, threat modeling, and risk assessments for cloud native, hybrid, API, container, third party, and AI/GenAI solutions. . Define appropriate security controls and recommend remediation or compensating controls when security gaps are identified. . Support secure AI/GenAI adoption, including LLM integrations, RAG implementations, prompt security, data protection, access controls, monitoring, logging, and human in the loop safeguards. . Support AI governance and risk management processes, including security reviews, monitoring requirements, incident escalation, and lifecycle controls. . Assess solutions against applicable security frameworks and standards, including NIST, FedRAMP, and FIPS. . Provide security guidance during technology evaluations, architecture reviews, security exceptions, and path to production activities. . Work with cybersecurity engineering and operations teams on security capabilities involving SIEM, network security, endpoint security, data protection, and security configuration. . Communicate security risks, requirements, and recommendations clearly to both technical teams and business stakeholders. ## Related Videos - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [20 billion requests a week: Upgrading Twilio's API gateway at scale](https://www.wearedevelopers.com/videos/100234-20-billion-requests-a-week-upgrading-twilio-s-api-gateway-at-scale) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)