Cloud Security Engineer (AWS)
About the role
Piper Companies is seeking a Security Engineer (AWS) to join a growing cybersecurity team supporting secure cloud infrastructure and compliance initiatives. This opportunity is based in the RTP, NC area and follows a hybrid schedule requiring 2 days onsite per week. The Cloud Security Engineer will be responsible for securing AWS and Kubernetes environments, validating compliance requirements, identifying security gaps, and partnering with cross‑functional teams to strengthen cloud security posture. This role is also open to candidates with a strong DevOps background who are interested in transitioning into cloud security.
Responsibilities
- Ensure AWS cloud environments are securely configured and aligned with industry best practices.
- Assess and validate compliance with STIGs, CIS benchmarks, and NIST 800‑53 controls.
- Identify security vulnerabilities and configuration gaps and drive remediation efforts through ticket management and stakeholder engagement.
- Collaborate with DevOps, Infrastructure, and Compliance teams to support secure cloud operations.
- Review and secure Kubernetes deployments and containerized workloads.
- Automate security processes using scripting and infrastructure‑as‑code tools.
- Conduct security reviews, risk assessments, and vulnerability analyses.
- Facilitate meetings with stakeholders to communicate findings, recommendations, and remediation plans.
- Maintain documentation related to security configurations, standards, and procedures.
- Stay current with emerging cloud security threats, technologies, and best practices.
Qualifications
- Experience securing AWS cloud environments and cloud‑native services.
- Strong understanding of Kubernetes security, container security, and secure deployment practices.
- Background in Security Engineering, Cloud Security, DevOps, or Infrastructure Engineering.
- Knowledge of AWS security services including IAM, KMS, CloudTrail, GuardDuty, Security Hub, and WAF.
- Experience with compliance frameworks including STIGs, CIS Benchmarks, and NIST 800‑53.
- Hands‑on experience with scripting and automation tools such as Python, Terraform, or CloudFormation.
- Strong understanding of networking concepts including VPCs, security groups, NACLs, VPNs, and firewalls.
- Excellent communication, problem‑solving, and stakeholder management skills.
- Ability to work independently in an Agile environment.
- Authorized to work in the US for any employer.
Preferred Qualifications
- Experience with Wiz, Tenable, or similar cloud security platforms.
- Hands‑on experience with SIEM tools, alerting, and security monitoring.
- AWS Certified Security Specialty, CISSP, or similar security certifications.
- Prior experience in regulated or compliance‑driven environments.
- DevOps engineers with strong AWS, Kubernetes, and automation experience looking to move into a dedicated security role are encouraged to apply.
Pay
$60‑$65 per hour (long‑term contract opportunity with potential for extension)
Benefits
- Full Health coverage
- Dental coverage
- Vision coverage
- Paid Time Off (PTO)
- Holidays
- Sick Leave as required by law
Schedule
Hybrid schedule: 2 days onsite per week (RTP, NC area)