Cloud DevSecOps Architect
Job in
Chandler, Maricopa County, Arizona, 85249, USA
Listed on 2026-03-12
Listing for:
Akkodis
Contract
position Listed on 2026-03-12
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Data Security, Security Manager
Job Description & How to Apply Below
Akkodis is seeking an Application Support Specialist for a 12–18-month contract position with our Fortune 500 banking client.
Senior AWS Cloud Security Architect/Cryptographic
PLEASE NO C2C
ONLY LOCAL CANDIDATES NEED APPLY
Rate: $90.00 - $95.00hr W2. The rate may be negotiable based on experience, education, geographic location, and other factors.
Senior AWS Cloud Security Architect
Location: Chandler, AZ (Hybrid)
Type: Contract
Cryptographic control assurance
- 7 to 10 years of experience
- Deep hands‑on expertise with AWS security services, especially AWS KMS.
- Proven experience designing enterprise encryption and key management strategies.
- Extensive experience with Terraform module development in regulated environments.
- Strong experience building secure CI/CD pipelines.
- Proficiency in Java and Go.
- Experience with Ansible for secure automation.
- Strong knowledge of IAM, network security, logging, and monitoring.
- Experience working in Agile environments using JIRA
- Serve as the enterprise subject matter expert for AWS KMS and related cryptographic services
- Design and manage customer‑managed KMS keys (CMKs) across environments and workloads
- Define and enforce key lifecycle management
- Senior AWS Cloud Security Architect to design and lead security‑centric cloud platforms within a regulated banking and financial services environment. This role demands deep hands‑on expertise in AWS security architecture, with extensive experience designing, implementing, and governing AWS Key Management Service (KMS) and enterprise encryption strategies.
- The candidate will architect secure, compliant, and audit‑ready AWS environments, lead Terraform module development, design secure CI/CD pipelines, and ensure encryption and key lifecycle management are embedded across the entire SDLC. This role partners closely with Information Security, Risk, Compliance, and Audit teams and acts as a final authority on cloud security architecture.
- Design security‑by‑design AWS architectures aligned to banking regulatory and risk standards
- Own cloud security architecture decisions for data protection, encryption, identity, and access control
- Define mandatory security guardrails, baselines, and reference architectures for AWS workloads
- Ensure architectures meet internal policies and external regulatory expectations
- Define and enforce key lifecycle management
- Implement envelope encryption patterns and ensure encryption is applied
- Design cross‑account and multi‑region KMS strategies
- Support bring‑your‑own‑key (BYOK) and key escrow requirements where applicable
- Ensure full auditability of key usage, including Cloud Trail integration and alerting
- Partner with security and risk teams to meet data confidentiality non‑repudiation, and regulatory controls
- Infrastructure as Code (Terraform)
- Lead the development of security hardened Terraform modules with encryption and KMS controls embedded by default.
- Enforce Terraform standards
- Ensure Terraform code is auditable, versioned, and reproducible for regulatory reviews.
- Implement policy enforcement and guardrails through IaC.
- CI/CD Dev Sec Ops
- Design and maintain secure, enterprise CI/CD pipelines for infrastructure and application deployments.
- Integrate security controls into pipelines
- Implement controlled promotion workflows aligned with bank change management policies.
- Promote Dev Sec Ops and Git Ops practices across engineering teams.
- Development Security Automation
- Develop security automation and tooling using Java and Go.
- Build internal services and frameworks to securely manage:
- Key access patterns
- Secure application onboarding
- Review application designs to ensure encryption, key usage, and identity models meet bank security requirements.
- Configuration Management Secure Operations
- Use Ansible for secure configuration management, system hardening, and orchestration.
- Partner with SRE and operations teams to improve:
- Security monitoring
- Cryptographic control assurance
- Lead root cause analysis for security or encryption‑related incidents.
- Risk, Compliance Audit Engagement
- Act as the primary cloud architecture liaison to Information Security, Risk, Compliance, and Audit teams.
- Provide architectural documentation, encryption evidence, and KMS…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×