> Markdown version of [/jobs/ext/2653929-aws-security-engineer-intl-india](https://www.wearedevelopers.com/jobs/ext/2653929-aws-security-engineer-intl-india). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AWS Security Engineer - INTL India - **Company:** Insight Global - **Location:** Arlington, VA, United States - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Github, Identity and Access Management, OpenID, TypeScript, AWS Cdk, Cloud Platform System, Delivery Pipeline, Software Security, Infrastructure Automation Frameworks - **Published:** August 4, 2026 - **Apply:** https://www.juju.com/job/00000000glosbn ## About the Role * Extensive hands-on experience developing and deploying infrastructure using AWS CDK (TypeScript) * Experience building and maintaining deployment pipelines using GitHub Actions * Experience implementing and securing OIDC-based authentication between GitHub Actions and AWS for CDK deployments (including working with security teams to evaluate risks, implement mitigations, and enforce deployment security controls) * Strong understanding of AWS IAM roles, policies, policy conditions, and least-privilege access models * Experience implementing or supporting AWS Permission Boundaries, with an understanding of how they interact with IAM policies and AWS Service Control Policies (SCPs) * Experience working within AWS Control Tower-managed environments and multi-account AWS architectures * Experience partnering with application teams and security teams to design, review, and implement cloud security controls and deployment guardrails N/A ## Description We are looking to hire an AWS Cloud Security Engineer to support a platform hardening initiative focused on strengthening the security posture of AWS CDK deployments. This role will primarily focus on AWS CDK (TypeScript) development while partnering closely with application teams and security stakeholders to gather requirements, identify gaps, and implement secure deployment practices across a multi-account AWS environment. The ideal candidate will help drive the effort from planning through implementation, working across engineering and security teams to enhance deployment controls, governance, and overall platform security., * AWS CDK (TypeScript) - Develop and support secure AWS CDK solutions (majority of the role) * GitHub Actions - Build and maintain GitHub Actions pipelines supporting AWS CDK deployments. * GitHub Security - Support and enhance GitHub-to-AWS OIDC connectivity, partnering with security teams to implement deployment security controls and policy restrictions for AWS CDK deployments. * Least-Privilege Access Controls - Implement and maintain IAM roles, policies, and policy conditions in support of least-privilege access models. * AWS Permission Boundaries & SCPs - Implement Permission Boundaries and support governance controls utilizing AWS Service Control Policies (SCPs). * AWS Control Tower - Support and maintain secure deployment practices across AWS Control Tower-managed, multi-account environments. * Requirements & Planning - Partner with application teams to understand requirements, identify gaps, define technical tasks, and drive implementation efforts. * Project Leadership - Serve as a senior technical resource, leading discussions, coordinating with stakeholders, and driving the project from planning through implementation. ## Related Videos - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [Building Reliable Serverless Applications with AWS CDK and Testing](https://www.wearedevelopers.com/videos/812-building-reliable-serverless-applications-with-aws-cdk-and-testing) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) - [The power of Cloud Development Kit (CDK): How to get the most out of it](https://www.wearedevelopers.com/videos/740-the-power-of-cloud-development-kit-cdk-how-to-get-the-most-out-of-it) ## Related Articles - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters)