Actively Hiring

AWS DevOps & Cloud Security Engineer - Chennai - Immediate JOINER ONLY

Location

Chennai, Tamil Nadu / Remote (Global), Global

Work Mode

On-site

Experience

5-8 Yrs

Salary Range

INR 15-20 LPA

Job Type

Permanent

Openings

1 position

Job Description

Hiring for: A US-based, AI-first data solutions company founded by seasoned technology leaders.

Role: AWS DevOps & Cloud Security Engineer - Chennai - Immediate JOINER ONLY

Positions: 1

Experience: 5 to 8 years

Location(s): Chennai (Preferred) - HYBRID = 3 days work from Office

Remote (Global)

Type:Permanent

Salary: Up to INR 20 LPA (Best as per the fitment)

Notice Period: Can Join by 15th Sept'26


Note: The primary responsibility is cloud infrastructure, security, and automation. However, the ability to read backend code, debug API bottlenecks, or assist developers with microservice integrations is a major bonus.

 


DevOps & Cloud Security Specialist to architect enterprise-grade AWS networking, implement strict IAM security boundaries (HIPAA/GDPR compliance), automate infrastructure via IaC, and maintain crystal-clear technical documentation.


1. Primary Must-Have Competencies (Core Priorities)

A. AWS Networking & VPC Topology (Top Priority)

  • Advanced VPC Architecture: Mastery in designing multi-VPC topologies, isolated subnets, custom Route Tables, NAT Gateways, Transit Gateways, and Cross-Region VPC Peering.
  • Private Network Security: Extensive experience using VPC Endpoints (Gateway & Interface/PrivateLink) to keep internal AWS traffic completely off the public internet.
  • Traffic Ingestion & Edge Security: Expertise in AWS WAF (custom rules, bot control, rate limiting), API Gateway throttling, ALB configuration, and Route 53 global routing.

B. AWS Security, IAM Architecture & Compliance

  • Enterprise IAM Governance: Expertise in AWS Organizations, IAM Identity Center (SSO), Permission Boundaries, Service Control Policies (SCPs), and temporary role assumption across multi-account setups.
  • Data Protection & Key Management: Deep knowledge of AWS KMS (customer-managed keys, envelope encryption at rest and in transit) and AWS Secrets Manager.
  • Audit & Compliance: Setting up centralized logging pipelines (CloudTrail, GuardDuty, AWS Config, CloudWatch Audit Logs) for strict HIPAA/GDPR compliance.

C. Infrastructure as Code (IaC) & Containerization

  • Terraform / AWS CDK: Must write production-grade, modular IaC templates from scratch—enforcing network topology and security guardrails directly in code.
  • Container Orchestration: Hands-on setup and management of AWS ECS (Fargate) or EKS (Kubernetes) and automated CI/CD pipelines (GitHub Actions, GitLab CI).

D. Architecture Documentation & Systems Mapping

  • Technical Documentation: Ability to author clean, standardized architecture diagrams (e.g., C4 model, Draw.io, Lucidchart) and maintain comprehensive runbooks, incident response plans, and compliance documentation.


2. Secondary Competency (Strong Advantage, Not Mandatory)

  • Backend Software Development: Hands-on experience or a background in writing/debugging backend code in Node.js, Python, or Go.


 


Screening Questions

Please note that you will be asked to answer these questions during the application process:

  • 1.Total years of hands-on experience with AWS Cloud/DevOps?
  • 2.Current location
  • 3.Current CTC (Lakhs per annum)
  • 4.Expected CTC (Lakhs per annum)
  • 5.Notice period
  • 6.Can you join us on/ before 15th Sept'26
  • 7.How many years of hands-on Production experience you have with advanced AWS VPC networking?
  • 8.Which AWS networking components have you worked hands-on with? (Mention them)
  • 9.How many years of HANDS-ON AWS IAM/SCP/Permission Boundaries + security services experience?
  • 10.Which container platforms have you managed in production?
  • 11.How man years of Production Terraform/AWS CDK experience do you have?
  • 12.Please select your preference

Skills & Technologies

Required Skills
Amazon Route 53Architecture DocumentationAWSAWS Cross-Region NetworkingAWS IAMAWS Landing ZoneAWS Multi-Account ArchitectureAWS PrivateLinkAWS Secrets ManagerAWS Transit GatewayAWS WAFCI/CDDevSecOpsGoNetworkingNode.jsPythonSecurity AutomationTerraformVPC Architecture & NetworkingVPC EndpointsZero Trust Architecture
EmailVerifyUploadDetails

Apply for this Role

Submit your details to apply for this role.