{"schemaVersion":"jobsearcher.job.v1","id":"df8b29bbf96b886bcd760588","url":"https://jobsearcher.com/jobs/df8b29bbf96b886bcd760588","canonicalUrl":"https://jobsearcher.com/jobs/df8b29bbf96b886bcd760588","title":"AWS Cloud Security Architect","description":"Job Title: AWS Cloud Security Architect\nLocation: Plano, TX/Reston, VA/Columbia, SC/Knoxville, TN/Lafayette, LA/Birmingham, AL\nWork Model: Onsite – onsite\n\nResponsibilities\n\nProvide security architecture guidance for enterprise applications, AWS cloud environments, hybrid infrastructure, cybersecurity platforms, APIs, containers, data solutions, and AI enabled applications.\nPartner with application and engineering teams to securely migrate workloads from on premises environments to AWS and other approved cloud platforms.\nDefine and maintain cloud security patterns, standards, guardrails, security requirements, reference architectures, and implementation guidance.\nConduct security architecture reviews, threat modeling, and risk assessments for cloud native, hybrid, API, container, third-party, and AI/GenAI solutions.\nDefine appropriate security controls and recommend remediation or compensating controls when security gaps are identified.\nSupport secure AI/GenAI adoption, including LLM integrations, RAG implementations, prompt security, data protection, access controls, monitoring, logging, and human in the loop safeguards.\nSupport AI governance and risk management processes, including security reviews, monitoring requirements, incident escalation, and lifecycle controls.\nAssess solutions against applicable security frameworks and standards, including NIST, FedRAMP, and FIPS.\nProvide security guidance during technology evaluations, architecture reviews, security exceptions, and path to production activities.\nWork with cybersecurity engineering and operations teams on security capabilities involving SIEM, network security, endpoint security, data protection, and security configuration.\nCommunicate security risks, requirements, and recommendations clearly to both technical teams and business stakeholders.\n\nRequirements\n\n8+ years of overall IT experience, including significant cybersecurity and cloud security experience.\n5+ years of cybersecurity architecture experience in roles such as Information Security Architect, Cloud Security Architect, or Infrastructure Security Architect.\n5+ years of hands-on AWS cloud security experience, including securing enterprise workloads and cloud migrations.\nStrong knowledge of AWS security services, controls, IAM, networking, logging, monitoring, data protection, and cloud security best practices.\nExperience securing enterprise cloud and hybrid environments and performing security architecture reviews.\nExperience with threat modeling, security risk assessments, control gap analysis, and remediation planning.\nKnowledge of cybersecurity and compliance frameworks such as NIST, FedRAMP, and FIPS.\nExperience defining and applying security standards, patterns, guardrails, and technical security controls.\nWorking knowledge of AI/GenAI security, including prompt injection, data leakage, model access controls, AI guardrails, observability, approved model usage, and human oversight.\nUnderstanding of security considerations for LLMs, RAG solutions, APIs, containers, and enterprise data integrations.\nAbility to work effectively with application developers, cloud and infrastructure engineers, cybersecurity teams, enterprise architecture, compliance, risk, and business stakeholders.\nStrong written and verbal communication skills with the ability to explain technical security risks and requirements clearly.\nStrong organizational, coordination, and stakeholder management skills.\nCISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification is preferred.\nAWS Certified Security – Specialty, Azure AZ 500, or another relevant cloud security certification is preferred.\n\nDesired Skillset:\n\nSecurity experience across Azure and/or GCP in addition to AWS.\nAI/GenAI security, AI governance, or AI risk management experience.\nContainer and workload security experience covering build time and runtime controls.\nAPI security experience, including enterprise API gateways.\nSecurity engineering experience with SIEM, firewalls, endpoint/host security, or security configuration management.\nExperience with AI-enabled cybersecurity capabilities such as security analysis, vulnerability prioritization, detection support, secure code review, or workflow automation.\nCISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification.\nAWS Certified Security – Specialty, Azure Security Engineer Associate (AZ 500), or comparable cloud security certification.\n\nEducation: Bachelor's degree in Computer Science, Information Systems, or a related field.\n\nSystem One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.\n\nSystem One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.\n\n#M-\n#LI-\nRef: #404-IT Pittsburgh","company":"Systemone","rawCompany":"systemone","city":"Reston","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-09-02T11:12:34.689Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"AWS Cloud Security Architect","description":"Job Title: AWS Cloud Security Architect\nLocation: Plano, TX/Reston, VA/Columbia, SC/Knoxville, TN/Lafayette, LA/Birmingham, AL\nWork Model: Onsite – onsite\n\nResponsibilities\n\nProvide security architecture guidance for enterprise applications, AWS cloud environments, hybrid infrastructure, cybersecurity platforms, APIs, containers, data solutions, and AI enabled applications.\nPartner with application and engineering teams to securely migrate workloads from on premises environments to AWS and other approved cloud platforms.\nDefine and maintain cloud security patterns, standards, guardrails, security requirements, reference architectures, and implementation guidance.\nConduct security architecture reviews, threat modeling, and risk assessments for cloud native, hybrid, API, container, third-party, and AI/GenAI solutions.\nDefine appropriate security controls and recommend remediation or compensating controls when security gaps are identified.\nSupport secure AI/GenAI adoption, including LLM integrations, RAG implementations, prompt security, data protection, access controls, monitoring, logging, and human in the loop safeguards.\nSupport AI governance and risk management processes, including security reviews, monitoring requirements, incident escalation, and lifecycle controls.\nAssess solutions against applicable security frameworks and standards, including NIST, FedRAMP, and FIPS.\nProvide security guidance during technology evaluations, architecture reviews, security exceptions, and path to production activities.\nWork with cybersecurity engineering and operations teams on security capabilities involving SIEM, network security, endpoint security, data protection, and security configuration.\nCommunicate security risks, requirements, and recommendations clearly to both technical teams and business stakeholders.\n\nRequirements\n\n8+ years of overall IT experience, including significant cybersecurity and cloud security experience.\n5+ years of cybersecurity architecture experience in roles such as Information Security Architect, Cloud Security Architect, or Infrastructure Security Architect.\n5+ years of hands-on AWS cloud security experience, including securing enterprise workloads and cloud migrations.\nStrong knowledge of AWS security services, controls, IAM, networking, logging, monitoring, data protection, and cloud security best practices.\nExperience securing enterprise cloud and hybrid environments and performing security architecture reviews.\nExperience with threat modeling, security risk assessments, control gap analysis, and remediation planning.\nKnowledge of cybersecurity and compliance frameworks such as NIST, FedRAMP, and FIPS.\nExperience defining and applying security standards, patterns, guardrails, and technical security controls.\nWorking knowledge of AI/GenAI security, including prompt injection, data leakage, model access controls, AI guardrails, observability, approved model usage, and human oversight.\nUnderstanding of security considerations for LLMs, RAG solutions, APIs, containers, and enterprise data integrations.\nAbility to work effectively with application developers, cloud and infrastructure engineers, cybersecurity teams, enterprise architecture, compliance, risk, and business stakeholders.\nStrong written and verbal communication skills with the ability to explain technical security risks and requirements clearly.\nStrong organizational, coordination, and stakeholder management skills.\nCISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification is preferred.\nAWS Certified Security – Specialty, Azure AZ 500, or another relevant cloud security certification is preferred.\n\nDesired Skillset:\n\nSecurity experience across Azure and/or GCP in addition to AWS.\nAI/GenAI security, AI governance, or AI risk management experience.\nContainer and workload security experience covering build time and runtime controls.\nAPI security experience, including enterprise API gateways.\nSecurity engineering experience with SIEM, firewalls, endpoint/host security, or security configuration management.\nExperience with AI-enabled cybersecurity capabilities such as security analysis, vulnerability prioritization, detection support, secure code review, or workflow automation.\nCISSP, CCSP, CISA, CISM, GIAC, or similar cybersecurity certification.\nAWS Certified Security – Specialty, Azure Security Engineer Associate (AZ 500), or comparable cloud security certification.\n\nEducation: Bachelor's degree in Computer Science, Information Systems, or a related field.\n\nSystem One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.\n\nSystem One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.\n\n#M-\n#LI-\nRef: #404-IT Pittsburgh","datePosted":"2026-09-02T11:12:34.689Z","dateModified":"2026-09-02T11:12:34.689Z","hiringOrganization":{"@type":"Organization","name":"Systemone","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Reston","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"df8b29bbf96b886bcd760588"},"url":"https://jobsearcher.com/jobs/df8b29bbf96b886bcd760588"}}