Senior Security & Infrastructure Engineer – AWS, Terraform & DevSecOps

Summary

Remote senior engineer who independently owns AWS infrastructure, IAM/access controls, Terraform/IaC, security operations, SOC 2 compliance, monitoring, and disaster recovery, plus DevSecOps and production support. Core stack: AWS, Terraform, SageMaker, AppCheck, SecurityScorecard, Scalefusion; 30-40 hrs/week during US business hours.

This is a remote position.

Position Overview

We are looking for a Senior Security & Infrastructure Engineer to independently manage AWS infrastructure, security operations, access management, compliance, monitoring, DR, and production support, while also handling DevSecOps responsibilities.

This is a hands-on role requiring strong AWS, Terraform/IaC, cloud security, SOC 2, and production operations experience. The role will also support segregation of duties (SoD) between development, infrastructure, security, and production environments.

Hours: 30–40 hours/week | Work: Remote, US business hours

Key Responsibilities

  • Own and manage AWS infrastructure, deployments, migrations, and production environments.

  • Manage Terraform/IaC, AWS IAM, permissions, security groups, and access controls.

  • Manage employee onboarding/offboarding access and conduct periodic access reviews.

  • Support DevSecOps, production monitoring, troubleshooting, and deployments.

  • Maintain segregation of duties and appropriate production access controls.

  • Support SOC 2 audits, compliance activities, evidence collection, and security policy reviews.

  • Conduct vulnerability testing and remediation using tools such as AppCheck.

  • Own assigned Disaster Recovery testing, documentation, and improvements.

  • Manage and document the AWS SageMaker environment.

  • Support security posture monitoring using SecurityScorecard.

  • Manage endpoint security through Scalefusion.

  • Conduct security awareness and policy training.

  • Maintain infrastructure, security, and asset documentation.

  • Support client onboarding and secure AWS environment/data setup.

Required Qualifications

  • 7+ years of experience in Cloud Infrastructure, Security Engineering, DevOps, or DevSecOps.

  • Strong hands-on AWS experience in production environments.

  • Strong Terraform / Infrastructure as Code experience.

  • Experience with AWS IAM, security groups, access management, and cloud security.

  • Experience with production monitoring, troubleshooting, and deployments.

  • Experience with SOC 2, security audits, compliance, and audit evidence.

  • Experience with DR testing, vulnerability management, and security controls.

  • Strong understanding of DevSecOps and segregation-of-duties principles.

  • Ability to work independently and take ownership with limited supervision.

Preferred

  • Experience in banking, financial services, fintech, or regulated environments.

  • AWS SageMaker experience.

  • Experience with AppCheck, SecurityScorecard, and/or Scalefusion.

  • AWS or Terraform certifications.

  • Experience supporting SOC 2 Type II environments.

Location

Remote candidates may be considered from USA, Canada, Germany, Spain, Ireland, Israel, EU countries, and India, with the ability to work during US business hours.

Core Technologies: AWS | Terraform | IAM | SageMaker | DevSecOps | SOC 2 | AppCheck | SecurityScorecard | Scalefusion



See also

DevOps jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available