AWS Security Subject Matter Expert (SME)
Minfy · Delhi · India · On-site
Posted Aug 14, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Job Description: AWS Security Subject Matter Expert (SME)
Role Summary
The AWS Security Subject Matter Expert (SME) will serve as the go-to technical expert for security architecture, governance, compliance, and operational security posture across Minfy's AWS environments. This individual brings deep, hands-on expertise in AWS-native security services and best practices, advising on secure configurations, driving remediation of security gaps, enabling DevSecOps practices, and ensuring secure, compliant, and resilient AWS operations for both Minfy-managed and customer-managed environments.
The individual will work closely with SRE, Cloud Engineering, FinOps, Product Engineering, AI/ML teams, Customer Success, and Strategic Account teams, providing AWS security subject matter expertise to embed security into every aspect of cloud service delivery.
Key Responsibilities
AWS Security Architecture & Best Practices
Define and maintain enterprise security architecture standards for AWS, serving as the subject matter expert on AWS-native security services and configurations.
Develop secure AWS Landing Zones (AWS Control Tower, Organizations), reference architectures, and security guardrails.
Establish architecture patterns for:
AWS multi-account/multi-region deployments
Hybrid cloud environments (AWS to on-premises)
SaaS platforms
AI/ML workloads (SageMaker, Bedrock)
Kubernetes platforms (Amazon EKS)
Review and approve security designs for new cloud initiatives and customer engagements.
Drive Zero Trust Architecture adoption across AWS environments.
AWS Security Engineering & DevSecOps
Embed security controls into CI/CD and Infrastructure-as-Code pipelines.
Implement Security-as-Code and Policy-as-Code frameworks.
Automate compliance validation and security posture assessments.
Establish secure software supply chain controls.
Drive secure container, Kubernetes, and serverless security practices.
Integrate automated vulnerability and misconfiguration detection into engineering workflows.
Security Operations & Threat Management
Define and oversee cloud security monitoring, detection, and response capabilities.
Establish AWS-native threat detection strategies using GuardDuty, Security Hub, and Detective.
Lead security incident response and forensic investigations.
Drive vulnerability management programs across AWS environments (Amazon Inspector, ECR scanning).
Implement cloud-native threat intelligence and proactive threat hunting capabilities.
Develop operational runbooks and security response automation.
Governance, Risk & Compliance
Develop cloud security governance frameworks and policies.
Establish cloud risk management and control assessment processes.
Lead compliance initiatives including:
ISO 27001
SOC 2
PCI DSS
GDPR
HIPAA
NIST CSF
CIS Benchmarks
Support customer security reviews and regulatory audits.
Build continuous compliance monitoring capabilities.
Identity,…