Cloud Security Architect (AWS) Job at Purple Drive, Irvine, CA

VmZtZUxLVUVvd01BY2Q4cmlnSm8xVjNzNVE9PQ==
  • Purple Drive
  • Irvine, CA

Job Description

Role: Cloud Security Architect (AWS)

Location: Irvine, CA (Onsite)
Experience: 10+ Years

Job Summary

We are seeking a highly experienced Cloud Security Architect to lead security architecture for a large-scale Data Center Exit to AWS initiative. This role focuses on designing and implementing enterprise-grade security controls across AWS environments, ensuring secure migration, compliance, and operational resilience.

The ideal candidate will have deep expertise in AWS security services, multi-account architecture, vulnerability management, and secure-by-design principles , with experience supporting mission-critical enterprise workloads.

Key Responsibilities

Cloud Security Architecture

  • Lead the design and implementation of secure AWS architectures for Data Center Exit programs
  • Define and implement AWS Landing Zone security , including:
    • IAM guardrails
    • Service Control Policies (SCPs)
    • Centralized logging and monitoring
  • Establish security baselines aligned with CIS, NIST, and ISO frameworks

Identity, Access & Encryption

  • Design and enforce IAM strategies , including least privilege and role-based access
  • Implement encryption standards using AWS KMS for data at rest and in transit
  • Validate authentication and authorization models across all workloads
  • Support identity federation and secure access controls

Threat Detection & Monitoring

  • Implement and manage AWS security services such as:
    • AWS WAF
    • GuardDuty
    • CloudTrail
    • Security Hub
  • Integrate AWS security telemetry with SIEM platforms for continuous monitoring
  • Define and implement detective and preventive controls

Application & Infrastructure Security

  • Conduct vulnerability assessments (VAPT) and define remediation strategies
  • Implement:
    • Web Application Firewall (WAF) rules
    • Network segmentation and firewall policies
    • Endpoint protection controls
  • Support secure development practices including code reviews and DevSecOps alignment

Migration Security & Governance

  • Secure workloads during migration from on-premise to AWS EC2
  • Ensure data consistency, integrity, and compliance during migration phases
  • Design security for hybrid architectures and integration-heavy systems
  • Support migration tools and enforce governance policies

Container & Platform Security

  • Design security for EKS/Kubernetes environments , including:
    • Pod and network policies
    • Image scanning and runtime protection
  • Secure cloud-native and distributed workloads

Risk Management & Compliance

  • Lead penetration testing cycles and coordinate remediation efforts
  • Produce:
    • Security architecture documents (HLD/LLD)
    • Risk assessments
    • Operational security runbooks
  • Ensure adherence to enterprise and regulatory compliance standards

Required Skills

  • Strong expertise in AWS security services:
    • IAM, KMS, CloudTrail, GuardDuty, WAF
  • Experience designing AWS multi-account Landing Zones and governance models
  • Deep understanding of:
    • Identity and access management
    • Encryption and key management
    • Zero Trust architecture and least privilege principles
  • Hands-on experience with vulnerability assessment tools :
    • Nessus, Qualys, Burp Suite, Fortify, Checkmarx
  • Strong knowledge of:
    • Network security (firewalls, IDS/IPS, segmentation)
    • OS-level security (Windows Server, RHEL)
  • Experience securing databases (Oracle, SQL Server, Exadata on AWS)
  • Strong collaboration and stakeholder management skills

Preferred Skills

  • Experience with AWS Shield and advanced threat protection tools
  • Knowledge of integration security for Java, .NET, and TIBCO ESB workloads
  • Experience with DevSecOps and CI/CD security integration
  • Certifications such as:
    • AWS Certified Security Specialty
    • CISSP / CISM / CCSP

Job Tags

Similar Jobs

Highline Warren

ELECTRIC PALLET JACK OPERATORS Job at Highline Warren

 ...:$1000 Sign On Bonus! Up to $19.00 per hour based on experience ELECTRIC PALLET JACK OPERATORS The Order Puller (full case) locates, pulls, and stages customer materials for shipment based on daily pick tickets, while maintaining an accurate accounting of internal... 

South Central Calhoun CSD

Summer School High School Teacher Job at South Central Calhoun CSD

 ...HIGH SCHOOL SUMMER SCHOOL TEACHERS/ASSOCIATE NEEDED (2) Teachers at High School Teacher's Schedule 3 Hours a Day (8:30-11:30) Monday-Friday for the weeks of June 1 and June 8, 2026 Additional 6 hours of paid planning/ grading Total of 36 hours (... 

OMEGA Recruiting and Consulting

Urology Physician Assistant (PA) / Nurse Practitioner (NP) Job at OMEGA Recruiting and Consulting

 ...Immediate need for a couple Physician Assistants or Nurse Practitioners to join a Multi Spec group in a Urology setting. Let's Discuss! Most details on the table for discussion. Some FAQs/Details Below: Inpatient and outpatient opportunities. Reason for opening... 

Lexus of Great Neck

Receptionist Job at Lexus of Great Neck

If you are a personable individual with strong phone skills and a great work ethic, join the New Country team! We are seeking a full-time receptionists/switchboard operators to work at our dealership. We serve elite clientele and you must always be prepared to provide them...

MAU Workforce Solutions

Forklift Order Puller Job at MAU Workforce Solutions

 ...advancement~Referral program What Were Looking For~High school diploma or GED preferred~2+ years of experience in order picking/packing/pulling~Basic computer skills~Shipping clerk experience~RF scanner experience~Experience with material handler...