Infinitive · 2 days ago
AWS Service Adoption Risk Consultant
Infinitive is a data & AI consultancy that enables global brands to deliver results through insights, innovation, and efficiency. They are seeking a Cloud & AWS Service Adoption Risk Consultant to support clients in evaluating the security, compliance, operational, and business risks associated with onboarding and scaling new cloud and SaaS services.
AdvertisingInformation TechnologyInternetMarketing
Responsibilities
Leverage hands-on experience with AWS services (IAM, EC2, S3, VPC, Lambda, CloudTrail, KMS) to evaluate the security posture of proposed cloud architectures
Understand the inherent risks associated with specific AWS service types and SaaS integrations (API-driven workflows, cross-account roles, data residency)
Identify misconfigurations within AWS environments and explain how they deviate from the AWS Well-Architected Framework or introduce enterprise risk
Apply secure-by-design principles and control frameworks to new cloud services to ensure they are resilient and compliant before deployment
Develop or refine cloud/SaaS adoption frameworks, risk scoring models, and tiering methodologies specifically for AWS environments
Ensure adoption decisions align with enterprise policies (e.g., authentication standards, encryption requirements, data retention)
Partner with Enterprise Architecture to confirm alignment with security patterns and AWS-specific integration standards
Facilitate risk review meetings across InfoSec, Legal, Procurement, Privacy, and Architecture
Translate complex AWS technical findings into clear business impact and decision options for non-technical stakeholders
Qualification
Required
4+ years of experience in cloud security, third-party risk, SaaS vendor evaluations, or cybersecurity consulting
Hands-on Experience: Direct experience configuring, managing, or auditing AWS services (e.g., managing IAM policies, S3 bucket permissions, or VPC security groups)
AWS Certification: Must hold at least one active AWS Certification (e.g., AWS Certified Solutions Architect – Associate or AWS Certified Security – Specialty)
Documentation Literacy: Experience reviewing vendor security documentation (SOC reports, CAIQ/CSA, ISO 27001, FedRAMP packages) and mapping them to cloud controls
Communication: Strong stakeholder facilitation skills—able to synthesize and present risk recommendations clearly to leadership
Preferred
Experience working within regulated industries (Financial Services, Healthcare, or Public Sector)
Advanced understanding of frameworks such as NIST CSF, ISO 27001, SOC, or CSA CCM/STAR
Additional certifications such as CCSK, CCSP, CISA, or CRISC
Prior consulting experience or experience with Infrastructure as Code (IaC) risk reviews (e.g., Terraform or CloudFormation templates)