AWS Cloud Infrastructure Architect with IRS MBI Clearance

JobgetherCanadaRemoteFull-timeJunior, 1–2 yearsListed 1 hour ago

Apply now

About this role

Accountabilities:

- Design and implement AWS account structures using AWS Organizations, including Organizational Units aligned with business and technical requirements.

- Establish account governance policies, standards, consolidated billing, and cost allocation strategies.

- Deploy and manage AWS Control Tower for automated account provisioning, governance, and organizational controls.

- Design and implement Landing Zone Architecture for secure, scalable, multi-account AWS environments.

- Architect and deploy multi-region VPC environments, including subnets, route tables, network ACLs, and network segmentation strategies.

- Configure and manage Site-to-Site VPN, Client VPN, AWS Direct Connect, and Transit Gateway connectivity.

- Design hybrid and multi-VPC networking solutions and manage DNS through Amazon Route 53.

- Architect network solutions for AWS GovCloud environments.

- Design and implement IAM policies, roles, permission boundaries, identity federation, and organization-level Service Control Policies.

- Establish least-privilege access models and MFA requirements while maintaining IAM governance and compliance frameworks.

- Develop and implement organization-wide security policies, monitoring, and incident response procedures.

- Configure and manage AWS Security Hub, GuardDuty, AWS Config, CloudTrail, WAF, and Shield.

- Implement encryption strategies for data at rest and in transit and support vulnerability management and security assessments.

- Maintain security and compliance controls aligned with SOC 2, ISO 27001, HIPAA, FedRAMP, and other applicable frameworks.

- Design and maintain security architectures for AWS GovCloud regions.

- Build infrastructure as code using CloudFormation, Terraform, or CDK.

- Maintain comprehensive architecture documentation, diagrams, standards, and technical guidance.

- Provide technical leadership and mentorship to engineering teams on AWS architecture and cloud best practices.

- Participate in disaster recovery planning, testing, and resilience initiatives.

- Identify opportunities to optimize AWS costs, resource utilization, and overall infrastructure efficiency.

Requirements:

- 5+ years of experience in cloud architecture, including at least 3 years of hands-on AWS experience.

- Deep understanding of AWS Organizations, multi-account architectures, and cloud governance strategies.

- Hands-on experience deploying and managing AWS Control Tower for account orchestration and governance.

- Proven experience designing and implementing AWS Landing Zone Architecture.

- Experience working with AWS GovCloud (US) environments.

- Strong knowledge of FedRAMP requirements, security controls, and authorization processes.

- Expert-level understanding of AWS networking services, including VPC, VPN, Direct Connect, and Transit Gateway.

- Strong expertise in IAM policy design, permission management, identity federation, and least-privilege architectures.

- Demonstrated experience implementing cloud security best practices and compliance frameworks.

- Proficiency with infrastructure as code technologies such as CloudFormation, Terraform, and/or AWS CDK.

- Experience with AWS security and monitoring services, including Security Hub, GuardDuty, Config, and CloudTrail.

- Strong understanding of encryption, security monitoring, vulnerability management, and incident response.

- Ability to translate complex infrastructure and security requirements into scalable architectural solutions.

- Strong technical communication, documentation, problem-solving, and mentoring skills.

- IRS MBI clearance is required.

- AWS Certified Solutions Architect – Professional is preferred.

- AWS Certified Security – Specialty and AWS Certified Advanced Networking – Specialty certifications are preferred.

- Additional AWS certifications are a plus.

Benefits:

- Annual salary of $150,000–$170,000.

- Fully remote position.

- Full-time employment.

- Opportunity to work on complex AWS cloud architecture and multi-account environments.

- Exposure to AWS GovCloud, FedRAMP, cloud security, governance, and compliance initiatives.

- Opportunity to provide technical leadership and influence cloud infrastructure strategy.

- Work involving modern AWS automation, infrastructure as code, networking, and security technologies.

How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
 Why Apply Through Jobgether? 
 
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
 
 
#LI-CL1