JobRaahGet matched free

Jobs

AWS Security Subject Matter Expert (SME)

Minfy · Delhi · India · On-site

Posted Aug 14, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

Job Description: AWS Security Subject Matter Expert (SME) Role Summary The AWS Security Subject Matter Expert (SME) will serve as the go-to technical expert for security architecture, governance, compliance, and operational security posture across Minfy's AWS environments. This individual brings deep, hands-on expertise in AWS-native security services and best practices, advising on secure configurations, driving remediation of security gaps, enabling DevSecOps practices, and ensuring secure, compliant, and resilient AWS operations for both Minfy-managed and customer-managed environments. The individual will work closely with SRE, Cloud Engineering, FinOps, Product Engineering, AI/ML teams, Customer Success, and Strategic Account teams, providing AWS security subject matter expertise to embed security into every aspect of cloud service delivery. Key Responsibilities AWS Security Architecture & Best Practices Define and maintain enterprise security architecture standards for AWS, serving as the subject matter expert on AWS-native security services and configurations. Develop secure AWS Landing Zones (AWS Control Tower, Organizations), reference architectures, and security guardrails. Establish architecture patterns for: AWS multi-account/multi-region deployments Hybrid cloud environments (AWS to on-premises) SaaS platforms AI/ML workloads (SageMaker, Bedrock) Kubernetes platforms (Amazon EKS) Review and approve security designs for new cloud initiatives and customer engagements. Drive Zero Trust Architecture adoption across AWS environments. AWS Security Engineering & DevSecOps Embed security controls into CI/CD and Infrastructure-as-Code pipelines. Implement Security-as-Code and Policy-as-Code frameworks. Automate compliance validation and security posture assessments. Establish secure software supply chain controls. Drive secure container, Kubernetes, and serverless security practices. Integrate automated vulnerability and misconfiguration detection into engineering workflows. Security Operations & Threat Management Define and oversee cloud security monitoring, detection, and response capabilities. Establish AWS-native threat detection strategies using GuardDuty, Security Hub, and Detective. Lead security incident response and forensic investigations. Drive vulnerability management programs across AWS environments (Amazon Inspector, ECR scanning). Implement cloud-native threat intelligence and proactive threat hunting capabilities. Develop operational runbooks and security response automation. Governance, Risk & Compliance Develop cloud security governance frameworks and policies. Establish cloud risk management and control assessment processes. Lead compliance initiatives including: ISO 27001 SOC 2 PCI DSS GDPR HIPAA NIST CSF CIS Benchmarks Support customer security reviews and regulatory audits. Build continuous compliance monitoring capabilities. Identity,…