AWS IAM/Platform Engineer
Our client, a IT Services and Consulting company, is looking for an AWS IAM/Platform Engineer for their Raleigh, NC/ Hybrid/ Remote location. Responsibilities:
- Design, implement, and manage AWS IAM and IAM Identity Center solutions across enterprise multi-account AWS environments.
- Develop IAM policies, permission boundaries, trust relationships, RBAC, permission sets, and least-privilege access models.
- Manage AWS Organizations governance including SCPs, RCPs, tag policies, backup policies, guardrails, and account lifecycle controls.
- Configure and support AWS Control Tower, AWS Config, GuardDuty, CloudTrail, and Security Hub for governance and security posture monitoring.
- Build event-driven automation using Python, Lambda, Step Functions, EventBridge, Boto3, APIs, and reusable operational components.
- Support governance-as-code and IAM automation through Git, CI/CD pipelines, CloudFormation, CDK, or Terraform with automated validation.
- Deep expertise in AWS IAM, IAM Identity Center, AWS Organizations, Control Tower, IAM policy language, evaluation logic, cross-account access, and permission boundaries.
- Hands-on experience with AWS Config, GuardDuty, CloudTrail, Security Hub, compliance monitoring, and remediation automation.
- Strong Python development skills with AWS Lambda, Step Functions, EventBridge, Boto3, APIs, and event-driven automation frameworks.
- Experience with Git-based source control, CI/CD pipelines, version-controlled policies, permission sets, and governance configurations.
Requirements:
- Top 3 skills required for this role:
- AWS IAM, IAM Identity Center (SSO), Identity Governance, RBAC, Access Management
- Terraform, Python Automation, Lambda, Step Functions, EventBridge, CI/CD
- Preferred Qualifications / Certifications:
- Experience implementing enterprise AWS Landing Zones, account vending, onboarding, and governance automation across AWS Organizations.
- Hands-on IAM Identity Center permission set management and account assignment automation through CI/CD pipelines.
- Familiarity with Terraform, CloudFormation, AWS CDK, GitOps approaches, compliance frameworks, and identity governance patterns.
- Preferred certifications: AWS Solutions Architect Associate/Professional, AWS Security Specialty, AWS DevOps Engineer Professional.
- Soft Skills:
- Strong problem-solving, independent ownership, stakeholder communication, and ability to translate security and governance requirements into scalable AWS solutions.
- Years of Experience:
- 15.00 Years of Experience
Why Should You Apply?
- Health Benefits
- Referral Program
- Excellent growth and advancement opportunities