What are the responsibilities and job description for the AWS Security Architect position at Novia Infotech?
Job Title: AWS Security Architect
Location: Pittsburgh, PA ( Hybrid )
Duration: Long-Term Contract
Roles and responsibilities:
- Develop and maintain enterprise-level cloud security referance architectures, patterns, and guardrails
- Lead architectural reviews for cloud initiatives to ensure alignment with security standards
- Drive adoption of Zero Trust architecture across cloud platforms.
- Design and enforce IAM frameworks in AWS
- Establish least privilege models, federation, $50, and privileged access strategies.
- Implement and maintain controls aligned with frameworks such as NIST, CIS, ISO 27001, PCI, and SOC 2.
- Oversee CSPM, CIEM, and security governance tooling to ensure continuous compliance and posture management.
- Collaborate with SOC and incident response teams to enhance cloud threat detection,
- Define monitoring strategies using SIEM/SOAlt and cloud-native capabilities.
- Integrate security into CI/CD pipelines in coordination with DevOps teams.
- Promote secure infrastructure-as-Code practices using Terraform
- Automate compliance checks, security scans, and remediation workflows.
- Define enterprise data protection standards for encryption, tokenization, kay managament, and data classification.
- Ensure secure configurations for cloud storage, databasesats services.
- Architect secure Kubernetes, serverless, and containerized environments
- Oversee container scanning, registry governance, and runtime protection
- Act as a senior advisor to business and technical teams on cloud security risks and solutions.
- Support audits, risk assessments, and enterprise governance processes.
- Communicate architectural decisions and rationale to executives and engineering teams.
Technical Skills
- 8 years in cybersecurity, with at least 3 in cloud security architecture.
- Deep expertise in AWS security services.
- Strong understanding of Zero Trust, network security, LAM, and encryption.
- Experience with SIEM/SOAR, CSPM, CIEM, CWPP, and container security platforms.
- Proficiency in DevSecOps tooling and lac (Terraform)
- Knowledge of compliance frameworks (NIST, CIS Benchmarks, ISO 27001, SOC 2, PO)
- Exposure to AWS Al services such as AWS Security Hub, Amazon Inspector, Amazon GuardDuty Al-Driven Threat Detection
- lac and automation experience using Terraform, CloudFormation, and CI/CD security integration.
- Kubernetes and container security skills covering EKS hardening, image scanning, and runtime protection
Salary : $50