🚀 Hiring: Immediate Opening: AWS SecOps Engineer (Cloud Security)
FIDESPATH CONSULTING SERVICES PRIVATE LIMITED
Job Description & Responsibilities
AWS SecOps Engineer (AWS Security Operations Engineer)
Location
📍 Noida, Uttar Pradesh (Work From Office – 5 Days a Week)
Employment Type
Full-Time
Experience Required
6+ Years of IT Experience with at least 4+ Years in AWS Cloud Security / SecOps
Company Description FIDESPATH CONSULTING SERVICES PRIVATE LIMITED is a consulting and technology services organization focused on delivering high-impact solutions for clients in diverse industries. The company emphasizes robust, secure, and scalable technology implementations, with particular attention to cloud and infrastructure projects. Team members collaborate closely with client stakeholders to understand business needs and translate them into reliable technical solutions. The work environment values integrity, continuous learning, and practical innovation in solving complex technical and security challenges.
www.fidespath.com
About the Role
We are seeking an experienced AWS SecOps Engineer to join our growing cloud and security team. This is a hands-on engineering role focused on securing AWS environments at scale, implementing security controls, automating remediation, governing multi-account AWS environments, strengthening CI/CD security, supporting compliance initiatives, and driving cloud security best practices.
This role is not intended for candidates whose experience is limited to basic IAM administration, AWS support activities, or monitoring dashboards. We are specifically looking for engineers who have designed, implemented, operated, and remediated AWS security controls in production environments.
Key Responsibilities
AWS Security Operations
- Configure, maintain, and optimize IAM Access Analyzer across AWS accounts.
- Investigate and remediate unintended resource access findings.
- Design and implement least-privilege access models.
- Review IAM policies, trust relationships, and cross-account permissions.
Vulnerability Management
- Configure and manage Amazon Inspector.
- Prioritize vulnerabilities using CVSS scores and business risk.
- Establish remediation workflows for EC2, Lambda, and ECR vulnerabilities.
- Drive vulnerability remediation efforts with engineering teams.
Threat Detection & Monitoring
- Configure and manage Amazon GuardDuty.
- Enable and tune:
- S3 Protection
- EKS Protection
- Malware Protection
- Runtime Monitoring
- Investigate security findings and reduce false positives.
- Manage delegated administrator models in multi-account environments.
Security Governance
- Design and implement Service Control Policies (SCPs).
- Build organizational guardrails using AWS Organizations.
- Create governance frameworks for AWS accounts.
- Implement preventive and detective controls.
Security Hub & Compliance
- Configure and maintain Security Hub.
- Enable and manage:
- AWS Foundational Security Best Practices
- CIS Benchmarks
- PCI DSS Standards
- Build custom insights and reporting.
- Manage cross-account and cross-region aggregation.
Secrets & Credential Management
- Design Secrets Manager architectures.
- Implement automated secret rotation.
- Configure cross-account secret sharing securely.
- Integrate secrets into application and infrastructure workflows.
DevSecOps & CI/CD Security
- Integrate security controls into CI/CD pipelines.
- Implement:
- SonarQube
- Checkov
- tfsec
- GitHub Security Scanning
- Define and enforce security gates.
- Manage exceptions and waiver processes.
Security Automation
- Develop automated remediation solutions using:
- EventBridge
- Lambda
- Systems Manager (SSM)
- CloudWatch
- Build self-healing security controls.
- Automate compliance and governance activities.
Identity & Access Management
- Configure AWS IAM Identity Center.
- Implement SCIM provisioning.
- Design least-privilege Permission Sets.
- Manage identity lifecycle automation.
- Support user onboarding and offboarding processes.
Enterprise Identity Integration
- Configure Microsoft Entra ID (Azure AD) integration with AWS.
- Implement SAML/OIDC federation.
- Configure Conditional Access policies.
- Work with Microsoft Intune device compliance controls.
Compliance & Audit
- Support SOC 2 audits.
- Implement controls aligned with:
- NIST 800-53
- NIST 800-171
- CIS Controls
- PCI DSS
- Identify and secure PII data.
- Maintain audit evidence and compliance documentation.
Mandatory Technical Skills (Must Have)
Candidates must have hands-on experience in ALL or MOST of the following areas
AWS Security Services
✔ IAM Access Analyzer
✔ Amazon Inspector
✔ Amazon GuardDuty
✔ AWS Security Hub
✔ AWS Organizations
✔ Service Control Policies (SCPs)
✔ AWS IAM Identity Center
✔ AWS Config
✔ AWS CloudTrail
✔ AWS Secrets Manager
Infrastructure & Automation
✔ Terraform
✔ CloudFormation
✔ CI/CD Security
✔ Security Automation
✔ EventBridge
✔ Lambda
✔ Systems Manager (SSM)
DevSecOps
✔ SonarQube
✔ Checkov
✔ tfsec
✔ Secure SDLC
✔ Security Gates
Identity & Access
✔ SCIM Provisioning
✔ Microsoft Entra ID
✔ SAML Federation
✔ Conditional Access
✔ Intune Exposure
Compliance
✔ SOC 2
✔ NIST
✔ CIS
✔ PII Protection
Nice to Have
- AWS Security Specialty Certification
- CISSP
- CCSP
- Azure Security Experience
- Kubernetes Security
- EKS Security
- WAF & Shield
- SIEM Integrations
- CrowdStrike / Defender Integration
Mandatory Candidate Checklist
Before applying, please ensure you can answer YES to most of the following
AWS Security
- Implemented IAM Access Analyzer in production.
- Remediated Amazon Inspector findings.
- Configured Security Hub standards.
- Implemented GuardDuty in multi-account environments.
- Designed or managed SCPs.
- Worked with AWS Organizations.
DevSecOps
- Integrated SonarQube into CI/CD pipelines.
- Implemented tfsec or Checkov.
- Built security gates in deployment pipelines.
- Managed vulnerability remediation workflows.
Identity & Governance
- Configured IAM Identity Center.
- Implemented SCIM provisioning.
- Federated Microsoft Entra ID with AWS.
- Worked on SAML or OIDC integrations.
Compliance
- Supported SOC 2 audits.
- Worked with NIST controls.
- Protected PII data in AWS.
- Produced audit evidence and compliance reports.
Automation
- Built automated remediation workflows.
- Used EventBridge + Lambda for security automation.
- Automated compliance or governance activities.
Candidates May Not Be Suitable If
❌ Experience is limited to IAM User creation and basic permissions.
❌ Experience is limited to AWS Operations without Security ownership.
❌ Have only viewed Security Hub or GuardDuty dashboards.
❌ Have never designed SCPs or multi-account governance.
❌ Have no experience with CI/CD security controls.
❌ Have no experience supporting audits or compliance initiatives.
❌ Have only theoretical knowledge of AWS Security services.
Application Instructions
Interested candidates are requested to email their updated resume along with the following details:
- Current Location
- Total Experience
- Relevant AWS Security Experience
- Current CTC
- Expected CTC
- Notice Period
- Current Employer
- AWS Certifications (if any)
- Willingness to work from Noida office (5 Days a Week) – Yes/No
Send your profile to
david.rajkumar@fidespath.com
Subject Line
AWS SecOps Engineer – Noida – [Candidate Name]
Only candidates meeting the mandatory requirements and willing to work from Noida office 5 days a week will be considered for further evaluation.
About FIDESPATH CONSULTING SERVICES PRIVATE LIMITED
Required Skills
Job Details
Posted by
N/A
Posted on:
24 Aug 2026
About FIDESPATH CONSULTING SERVICES PRIVATE LIMITED
More open roles
- AWS DevOps EngineersALIQAN Technologies · India
- Backend Developer – Java, Reactive Spring & AWSApplix · India
- Contract -Data Engineer (AWS EMR)KPG99 INC · Hyderabad, Telangana, India
- Senior Software Engineer (Kotlin, Java, Azure/ AWS)Electrolux Group · Bengaluru, Karnataka, India
- Backend Developer – Java, Reactive Spring & AWSApplix · India
- Contract -Data Engineer (AWS EMR)KPG99 INC · Hyderabad, Telangana, India