Demo

AWS Cloud Security / IAM Lead

Stanley David and Associates
Minneapolis, MN Full Time
POSTED ON 6/27/2026
AVAILABLE BEFORE 7/26/2026

Job Title :: AWS Cloud Security / IAM Lead

Location :: Minneapolis, MN

Type ::Fulltime role

  

Key Responsibilities

  • AWS IAM & Identity Security Leadership
  • Own the design and implementation of enterprise-wide AWS IAM strategy across multi-account environments.
  • Define and enforce least-privilege access models, including role-based and attribute-based controls.
  • Lead integration of AWS IAM with enterprise identity providers (Azure AD/Okta), ensuring secure SSO and federation.
  • Establish and maintain IAM governance processes, including access reviews, certification, and audit readiness.
  • ________________________________________
  • Cloud Security Operations
  • Monitor and respond to security alerts across AWS using tools such as GuardDuty, Security Hub, and CloudWatch.
  • Investigate and remediate IAM-related security risks, misconfigurations, and access issues.
  • Oversee logging and monitoring strategy using CloudTrail, Config, and centralized SIEM integrations.
  • Collaborate with SecOps teams to ensure timely incident response and root cause analysis.
  • ________________________________________
  • Access Management & Compliance
  • Manage user access lifecycle (provisioning, deprovisioning, entitlement reviews) across AWS environments.
  • Ensure compliance with regulatory and enterprise security standards (NIST, CIS benchmarks, etc.).
  • Conduct periodi c access audits and enforce remediation of policy violations.
  • Support internal and external audits by providing IAM evidence and controls documentation.
  • ________________________________________
  • Security Architecture & Governance
  • Define and implement security guardrails using AWS Organizations, SCPs, and automation frameworks.
  • Partner with platform and application teams to embed security-by-design principles.
  • Drive adoption of policy-as-code and automated compliance checks in CI/CD pipelines.
  • Provide architectural guidance for secure onboarding of new workloads and services on AWS.

 

Requirments:

  • 8–12 years of experience in cloud security, IAM, or infrastructure security engineering, preferably within BFSI or regulated enterprises.
  • Strong hands-on expertise in AWS security services, including: 
  • AWS IAM (roles, policies, permission boundaries, SCPs)
  • AWS Organizations & multi-account governance
  • AWS Identity Center (SSO)
  • AWS KMS, Secrets Manager
  • AWS CloudTrail, Config, GuardDuty, Security Hub
  • Deep understanding of IAM design and governance, including: 
  • Role-based and attribute-based access control (RBAC/ABAC)
  • Least privilege model implementation
  • Identity lifecycle management (joiner/mover/leaver)
  • Experience integrating AWS IAM with enterprise identity providers such as: 
  • Azure AD / Entra ID
  • Okta or similar IdP platforms

Salary : $100,000 - $110,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a AWS Cloud Security / IAM Lead?

Sign up to receive alerts about other jobs on the AWS Cloud Security / IAM Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$94,625 - $127,578
Income Estimation: 
$132,795 - $178,786
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Stanley David and Associates

  • Stanley David and Associates Phoenix, AZ
  • Role :: Oracle Cloud security and Sentinel engineer Location :: Phoenix, AZ Type :: Fulltime Job Description Role - Oracle Cloud security and Sentinel engi... more
  • 1 Day Ago

  • Stanley David and Associates Addison, TX
  • Job Title :: Genesys Cloud CX Developer Location :: Addison, TX Type ::Fulltime role Description Must Have Technical/Functional Skills Genesys APIs, Genesy... more
  • 1 Day Ago

  • Stanley David and Associates Fallon, MO
  • Must Have Technical/Functional Skills • Experience with Apache Ozone and/or Ceph as storage backends for analytics workloads • Experience implementing exac... more
  • 2 Days Ago

  • Stanley David and Associates Englewood, NJ
  • Job Title :: MySQL DBA Location :: Englewood Cliffs, NJ (Onsite) Type ::Fulltime role We are hiring an experienced MySQL Database Administrator with a mini... more
  • 3 Days Ago


Not the job you're looking for? Here are some other AWS Cloud Security / IAM Lead jobs in the Minneapolis, MN area that may be a better fit.

  • PwC Minneapolis, MN
  • Specialty/Competency: Product Innovation Industry/Sector: Not Applicable Time Type: Full time Travel Requirements: Up to 60% At PwC, our people in integrat... more
  • 11 Days Ago

  • lifescaleanalytics Eagan, MN
  • Employment Qualifications: Applicants responding to this position must be a US Citizen and may be subjected to a government security investigation which re... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!