> Markdown version of [/jobs/ext/2632182-sr-aws-engineer-hybrid](https://www.wearedevelopers.com/jobs/ext/2632182-sr-aws-engineer-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr AWS Engineer - Hybrid - **Company:** Genesis10 - **Location:** Columbus, OH, United States - **Experience:** Expert - **Salary:** $124,800.0 - $145,600.0 - **Contract:** Temporary to permanent - **Skills:** Java (Programming Language), Microsoft Windows, Amazon Web Services, Amazon Elastic Compute Cloud, Amazon S3, Bash Shell, Software as a Service, Cloud Computing, Cloud Engineering, Code Review, Continuous Integration, Linux, Disaster Recovery, Federal Information Processing Standards (FIPS), Identity and Access Management, Python (Programming Language), Microsoft Office, Microsoft SQL Server, Network Segmentation, OpenID, Performance Tuning, Windows PowerShell, Role-Based Access Control, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, SonarQube, Systems Integration, Private Cloud Environment, Scripting, Okta, System Availability, Amazon Virtual Private Cloud (VPC), Backend, Gitlab, Amazon Relational Database Service, Gitlab-ci, Information Technology, Nessus, Cloudwatch, Terraform, Devsecops, Qualys, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** August 11, 2026 - **Apply:** https://www.careerjet.com/job/us43f84a8501b931e2bb649c1b1335ca16/eaa ## About the Role * Bachelor's degree in computer science or related field (preferred) * Relevant certifications strongly preferred: AWS Solutions Architect - Professional, AWS Security Specialty, AWS DevOps Engineer, CISSP or similar * 8+ years of experience in software or cloud engineering, including 5+ years designing and operating workloads on AWS * Deep expertise with AWS core services: VPC, IAM, ECS/EKS, Lambda, RDS, S3, KMS, CloudWatch, Security Hub, and Control Tower * Strong background in Infrastructure as Code (IaC) using Terraform-modules, state management, and CI-driven deployments * Experience provisioning, tuning, and maintaining AWS RDS (SQL Server) * Solid foundation in both Linux and Microsoft Windows operating systems * Direct experience supporting at least one FedRAMP Moderate (or higher) authorized system, including audit preparation and evidence submission * Working knowledge of FedRAMP Moderate, NIST SP 800-53 Rev 5, and NIST SP 800-37 * Experience mapping security controls, maintaining SSPs, POA&Ms, and delivering continuous monitoring artifacts * Hands-on experience with security tools such as Elastic Cloud SIEM, Qualys Cloud WAS, SonarQube, Nessus, and AWS GuardDuty * Ability to translate regulatory requirements into technical safeguards * Proficiency in GitLab CI/CD, including runners, pipelines, and GitOps workflows * Experience building security gates into CI/CD processes (SAST, DAST, vulnerability scans, Terraform automation) * Automation-first mindset with fluency in at least one backend language (Python, Go, or Java) and scripting (Bash or PowerShell) * Experience integrating and managing SSO solutions with Okta and Entra (SAML/OIDC, SCIM, MFA, RBAC policy design) * Familiarity with fine-grained access control across AWS and SaaS platforms * At least two (2) years of experience mentoring or leading engineers * Strong communication skills-able to clearly explain technical issues to both technical and non-technical audiences * Excellent documentation skills (e.g., policies, procedures, architecture diagrams, audit artifacts) * Excellent organizational skills and attention to detail * Strong analytical and problem-solving abilities * Proficiency with Microsoft Office Suite or similar tools * Must be eligible to obtain a government security clearance ## Description The Senior AWS Engineer serves as the technical lead for a FedRAMP Authorized (Moderate FISMA) cloud environment supporting a SaaS platform. This role involves translating security controls into infrastructure-as-code, maintaining and evolving a Terraform-managed AWS stack, and implementing a robust DevSecOps toolchain. This is a hands-on leadership position requiring close collaboration across Compliance, Infrastructure, Development, and Product teams, as well as mentorship of a Junior AWS Engineer. Key Responsibilities: * Designs and implements secure, highly available AWS environments using Terraform-emphasizing VPC (Virtual Private Cloud) design, IAM (Identity Access Management) least privilege, FIPS encryption, and network segmentation * Provisions, tunes, and maintains AWS RDS (SQL Server) with a focus on performance, backups, and high availability * Develops and maintains CI/CD pipelines in GitLab, integrating SAST (SonarQube), DAST (Qualys), vulnerability scanning (Nessus), and Terraform automation * Translates FedRAMP/NIST 800-53 Rev 5 security controls into technical safeguards; remediates findings and supports continuous ATO (Authority to Operate) * Integrates SSO (Single Sign-On) and RBAC (Role-Based Access Control) using Okta and Entra across AWS, GitLab, Elastic Cloud, and related SaaS platforms * Operate Elastic Cloud SIEM and AWS GuardDuty; respond to alerts, coordinate incident response, and lead postmortem analysis * Mentors and supports the Junior AWS Engineer; conducts code reviews and champions DevSecOps culture * Defines SLIs (Service Level Indicators)/SLOs (Service Level Objectives), implements disaster recovery and backup strategies, and leads service improvement initiatives * Collaborates with stakeholders to convert regulatory and product needs into secure cloud capabilities; articulates security posture to leadership and clients * Participates in a rotating 24x7 on-call support schedule * Performs other related duties as assigned ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Remote Driving on Plant Grounds with State-of-the-Art Cloud Technologies](https://www.wearedevelopers.com/videos/251-remote-driving-on-plant-grounds-with-state-of-the-art-cloud-technologies) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)