- Home
- Jobs
- SOFTWARE DEVELOPMENT
- Security Architect Cloud & AWS

Security Architect Cloud & AWS at Neoris
Colombia; MexicoFull-timeSOFTWARE DEVELOPMENTPosted about 2 months ago
Apply with PipelineAbout the Role
<p></p>
<p>NEORIS is a Digital accelerator that helps companies enter the future, having 20 years of experience as Digital Partners of some of the largest companies in the world. We have more than 4,000 professionals in 11 countries, with our multicultural startup culture where we cultivate innovation, continuous learning to create high-value solutions for our clients.</p>
<p></p>
<p>We are looking for a <strong>Senior Security Architect</strong> (Clowd & AWS) to lead the closure of AWS cybersecurity remediation tickets and subsequently operating as the account's permanent security lead for ongoing operations and cloud security governance.</p>
<p>The profile will own the security posture of a multi-account AWS environment, coordinate with global cybersecurity team, and ensure that all controls remain audit-ready on an ongoing basis.</p>
<p><strong>Required Profile:</strong></p>
<ul>
<li>10+ years of professional experience in cybersecurity, cloud security, or information security roles</li>
<li>Minimum 5 years of hands-on experience with AWS security services (GuardDuty, Security Hub, IAM, Secrets Manager, Inspector, CloudTrail, AWS Config)</li>
<li>Demonstrated experience leading security remediation projects in regulated environments (banking, healthcare, or FMCG preferred)</li>
<li>Experience working with audit frameworks and generating audit evidence packages (ISO 27001, SOC 2, or equivalent)</li>
<li>Prior experience in client-embedded or staff augmentation roles is a strong plus</li>
</ul>
<p><strong>Technical Skills — Required</strong></p>
<ul>
<li>AWS: IAM, GuardDuty, Security Hub, Inspector, CloudTrail, Secrets Manager, AWS Config, AWS Backup, Transfer Family</li>
<li>EC2 and Elastic Beanstalk: platform management, Amazon Linux migration, patch management</li>
<li>Encryption: KMS, RDS encryption at rest, S3 server-side encryption, certificate management</li>
<li>Network security: Security Groups, NACLs, VPC architecture, WAF, NLB/ALB security</li>
<li>Identity: SSO (AWS IAM Identity Center), MFA enforcement, privilege management (PAM)</li>
<li>Threat frameworks: MITRE ATT&CK, STRIDE, NIST CSF, Zero Trust principles</li>
<li>Security monitoring: SIEM integration (Splunk preferred), log aggregation, alert triage</li>
</ul>
<p><strong>Technical Skills — Desirable</strong></p>
<ul>
<li>Qualys or equivalent vulnerability management tooling</li>
<li>Endpoint Detection and Response (EDR/XDR) platforms</li>
<li>IaC security scanning (Checkov, tfsec, or equivalent)</li>
<li>DevSecOps practices: pipeline security gates, SAST/DAST integration</li>
<li>Multi-cloud exposure (GCP or Azure) as secondary environment</li>
<li><strong><span data-olk-copy-source="MessageBody">Advanced Level of English</span></strong></li>
<li></li>
</ul>
<p><strong>Soft Skills & Mindset</strong></p>
<ul>
<li>Autonomous and structured — able to manage multiple work streams without day-to-day supervision</li>
<li>Strong written and verbal communication in English (minimum B2), with experience in weekly client-facing reporting.</li>
<li>Comfortable operating in ambiguous, fast-paced environments with competing priorities</li>
<li>Security-first mindset: able to say no and explain why, without blocking business delivery</li>
<li>Collaborative: works effectively with infrastructure engineers, DevOps teams, and client-side stakeholders</li>
</ul>
<p><strong>Education</strong></p>
<ul>
<li>Bachelor's degree in Systems Engineering, Computer Science, or related field — required</li>
<li>Master's degree or postgraduate specialization in Cybersecurity — strongly preferred</li>
</ul>
<p><strong>Certifications — Required (at least one)</strong></p>
<ul>
<li>AWS Certified Security – Specialty</li>
<li>AWS Certified Solutions Architect – Professional</li>
<li>CISSP (Certified Information Systems Security Professional)</li>
</ul>
<p><strong>Certifications — Desirable</strong></p>
<ul>
<li>ISO 27001 Lead Implementer or Lead Auditor</li>
<li>CISM (Certified Information Security Manager)</li>
<li>CompTIA Security+ or equivalent baseline</li>
<li>CEH, OSCP, or offensive security certifications</li>
</ul>
<p></p>
<p><strong>We offer</strong>:</p>
<ul>
<li>Statutory & Major benefits</li>
<li>Personal Growth</li>
<li>Competitive salary</li>
<li>Attractive benefits plan</li>
</ul>
<p>Come and meet us on: http://www.neoris.com, on Facebook, LinkedIn, Twitter, or Instagram @NEORIS.</p>
<p></p>
<p></p>
<p>Marina Molina</p>
<p>LI-MM3</p>
<p> </p>
<p> </p>