Infrastructure Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

TechDoQuest · 12 hours ago

Infrastructure Engineer

TechDoQuest is seeking an experienced AWS Cloud Security & Compliance Engineer to own the security and governance of their AWS infrastructure. This role involves designing, implementing, and maintaining controls for data protection, auditability, and compliance with ISO 27001 and SOC 1/2 requirements.

Cloud ComputingConsultingInformation TechnologyOutsourcingProfessional ServicesSoftware
check
H1B Sponsor Likelynote
Hiring Manager
Dharmita Kaithwas
linkedin

Responsibilities

Design and enforce IAM policies, roles, and SCPs using the principle of least privilege
Implement AWS Organizations, Control Tower, and GuardDuty, Security Hub, Config, and CloudTrail for centralized governance
Manage MFA, SSO (AWS IAM Identity Center), and just-in-time access workflows
Conduct regular privilege access reviews and automate user/role lifecycle management
Lead ISO 27001 and SOC 1/2 control implementation (e.g., A.9, A.12, SC-13, PI-7)
Own risk assessments, control evidence collection, and audit preparation
Develop and maintain data classification, encryption (KMS, SSE), and data residency policies
Ensure PCI DSS alignment for payment data flows (in-scope systems)
Build Infrastructure as Code (IaC) security using Terraform or similar tools
Automate compliance checks via AWS Config Rules, Security Hub, and custom Lambda scripts
Respond to and triage findings from GuardDuty, Inspector, Macie, and third-party scanners
Maintain System Security Plan (SSP), Risk Register, and control matrices
Prepare audit-ready evidence (logs, configs, access reports)
Train engineering teams on secure AWS practices

Qualification

AWS IAMISO 27001SOC 2TerraformCloud SecurityAWS CertificationsEncryptionNetwork SecurityCompliance DocumentationSecurity AutomationAudit Support

Required

10+ years in cloud infrastructure; 5+ years in cloud security; 3+ years focused on AWS
Hands-on experience with: AWS IAM, Organizations, SCPs, KMS, CloudTrail, Config, Security Hub
Terraform / CloudFormation for secure infrastructure
ISO 27001 and SOC 2 control frameworks
Active AWS certifications: Security Specialty or Solutions Architect Professional (required)
Experience supporting external audits (SOC 2 Type II, ISO 27001)
Strong understanding of encryption at rest/transit, network security (VPC, NACLs, WAF), and secrets management

Company

TechDoQuest

twittertwittertwitter
company-logo
Techdoquest is a software company that specializes in IT consulting & services, cloud migration, IT Staffing, outsourcing, and telecom.

H1B Sponsorship

TechDoQuest has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2024 (2)

Funding

Current Stage
Growth Stage
Company data provided by crunchbase