We are all Humans!
AWS Cloud Engineer – AWS, Terraform, Python
Location
Portugal
Posted
2 days ago
Salary
0
Seniority
Senior
Job Description
AWS Cloud Engineer – AWS, Terraform, Python
HumanIT Digital Consulting
• You will be working on the design, automation, and management of AWS cloud environments following Well-Architected Framework principles. • The scope includes Landing Zone configuration, security hardening, CI/CD pipeline integration, and IaC-driven provisioning across core AWS services. • You will collaborate with cross-functional engineering teams, contribute to cost efficiency targets, and play a real role in shaping how infrastructure evolves — not just maintain what's already there.
Job Requirements
- 4–8 years of overall IT experience
- 2–4 years of hands-on AWS in a cloud engineering capacity
- Fluent English — written and spoken, for architecture discussions and cross-team collaboration
- Bachelor's or Master's degree in Computer Science, Engineering, or a related field
- Strong working knowledge of core AWS services: EC2, S3, RDS, VPCs, Subnets, Security Groups
- Experience building and configuring AWS Landing Zones following Well-Architected Framework best practices
- Solid understanding of the software development lifecycle (SDLC) in a cloud context
- Proficient in Terraform for infrastructure provisioning and configuration management
- Strong scripting skills in Python and Bash for automation workflows
- Hands-on experience with GitHub Actions for CI/CD pipeline implementation
- Practical experience implementing IAM roles, policies, and permission boundaries
- Familiarity with encryption mechanisms and cloud security best practices
- AWS Certified Solutions Architect – Professional (strongly preferred)
- Additional AWS specialty certification: Security Specialty or Advanced Networking Specialty
- Experience with cost optimisation frameworks and FinOps practices
- Exposure to multi-account AWS environments and organisational governance patterns
Related Guides
Related Categories
Related Job Pages
More Cloud Engineer Jobs
Oracle Cloud Infrastructure IaaS Services Engineer
NTT GroupA global IT innovator founded in 1965, NTT DATA specializes in system integration and networking system services for more than a dozen industries. As an employer, NTT DATA offers a
Title: OCI IaaS Services Engineer - REMOTE in US Location: Plano United States Job Description: Req ID: 372840 NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a OCI IaaS Services Engineer - REMOTE in US to join our team in Plano, Texas (US-TX), United States (US). At NTT DATA, we know that with the right people on board, anything is possible. The quality, integrity, and commitment of our employees are key factors in our company's growth, market presence and our ability to help our clients stay a step ahead of the competition. By hiring, the best people and helping them grow both professionally and personally, we ensure a bright future for NTT DATA and for the people who work here. NTT DATA, Inc. currently seeks an OCI Iaas Services Engineer to join our team in "US". Client's business problem to solve? Our client is one of logistics company in US providing services in united state, NTT are getting into contract with Client to manage Public Cloud Operations. Our NTT Public cloud team ensures reliable and secure operation of public cloud platforms. Our Public Cloud Manage services help streamline operations, improve productivity and strengthen technology to help our customers stay competitive and improve customer satisfaction . Position's General Duties and Tasks In these roles you will be responsible for: - Manage and support OCI IaaS environments including compute, networking, storage, load balancers, IAM, and security services - Administer and maintain GCP IaaS and Paas services - Monitor cloud infrastructure health, performance, availability, and capacity - Troubleshoot production incidents and perform root cause analysis - Implement automation for provisioning, patching, deployment, and operational tasks - Support high availability, disaster recovery, backup, and business continuity operations - Manage cloud security policies, access controls, and compliance requirements - Collaborate with DevOps, application, security, and infrastructure teams - Optimize cloud resource utilization and cost management - Prepare operational documentation, SOPs, and technical reports Requirements for this role include: Primary Skills (Mandatory) - 10+ Years experience - Must have hands-on experience with OCI IaaS services: - Compute, VCN, Block/Object Storage, Load Balancer Experience - IAM, Monitoring & Logging Experience - DR and Backup solutions - Must have experience with Infrastructure as Code tools, such as Terraform Highly preferred Skills and Experience: Understanding of networking concepts: - DNS, VPN, Firewall, Routing, Load balancing experience - Experience with monitoring and incident management tools ie. Service Now Where required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this role will depend on the nature of the role offered and will either be $87,000- $143,000. Actual compensation will depend on a number of factors, including the candidate's relevant experience, technical skills, and other qualifications. This position may also be eligible for incentive compensation based on individual and/or company performance. If the position offered in temporary, the position will not be eligible for incentive compensation. This position is eligible for company benefits that will depend on the nature of the role offered. Company benefits may include medical, dental, and vision insurance, flexible spending or health savings account, life and AD&D insurance, short and long term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits. About NTT DATA</p> NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D. Whenever possible, we hire locally to NTT DATA offices or client sites. This ensures we can provide timely and effective support tailored to each client's needs. While many positions offer remote or hybrid work options, these arrangements are subject to change based on client requirements. For employees near an NTT DATA office or client site, in-office attendance may be required for meetings or events, depending on business needs. At NTT DATA, we are committed to staying flexible and meeting the evolving needs of both our clients and employees. NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-us. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.
Cloud Container -Build & Engineering-Openshift
ZensarAt Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Role Description - Manage CNAPP (Cortex/Prisma/Wiz) Platform configurations and challenges daily, triaging challenge’s identity risks and alerts, and driving remediation with engineering teams. - Investigate and correlate security signals across multi-cloud environments (AWS, GCP, Azure, OpenShift) to identify high-risk exposures and prioritize actions based on business impact and exploitability. - Work closely with PaC (policy-as-code) and guardrails (OPA, Sentinel, native cloud policies) teams to enforce secure-by-default configurations across cloud platforms for the CNAPP findings. - Contribute to proof-of-concept efforts by evaluating new CNAPP features, cloud security tools, and container security capabilities, and recommending scalable adoption strategies. - Document solutions, patterns, and learnings through runbooks, architecture decision records (ADRs), and knowledge-sharing sessions to enable broader team adoption. - Act as a go-to technical resource, supporting application teams in designing secure cloud-native architectures and troubleshooting security-related issues. - Work closely with Cloud Engineering and DevOps teams to embed security controls into CI/CD pipelines, ensuring shift-left security and continuous compliance. - Support onboarding of new cloud accounts, Kubernetes clusters, and services into CNAPP by configuring data ingestion, identity mapping, and policy enforcement. - Analyze cloud usage patterns and integrate with DSPM capabilities to identify sensitive data, validate access controls, and reduce data exposure risks. - Collaborate with SIEM/SOAR and observability teams to integrate CNAPP signals into detection and response workflows, improving visibility and incident response time. - Participate in incident triage and root cause analysis, contributing to remediation strategies and continuous improvement of detection and response playbooks. - Experience in evaluating, onboarding, and optimizing CNAPP tools (Palo Alto Cortex, Wiz, or similar), ensuring full integration across cloud accounts, Kubernetes environments, and CI/CD pipelines. Qualifications - 3+ years of experience in cloud security engineering across AWS, GCP, and/or Azure, with exposure to hybrid or private cloud environments (e.g., OpenShift). - Experience in leading the design, hands-on implementation, and scaling of CNAPP capabilities (e.g., Palo Cortex) across multi-cloud environments including AWS, Azure, GCP, and OpenShift-based private cloud. - Strong understanding and enabled end-to-end CSPM, CWPP, CIEM, container security, and runtime protection posture management. - Cloud misconfiguration management and remediation automation. - Experience securing Kubernetes/OpenShift environments, including container security, workload isolation, and policy enforcement. - Define and develop policy-as-code frameworks (e.g., OPA, Sentinel) and Infrastructure-as-Code tools (e.g., Terraform). - Analyzing and prioritizing security risks across cloud environments, correlating misconfigurations, vulnerabilities, identity risks, and runtime threats by leveraging XQL and automation playbooks to drive effective remediation strategies. - Experience in integrating Palo Cortex with on-prem capabilities such as SIEM/SOAR and observability platforms for continuous monitoring and threat detection with CNAPP signals. Preferred Qualifications - Knowledge of cloud security frameworks and benchmarks such as CIS Benchmarks, NIST, and Cloud Control Matrix (CCM). - Understanding network security, identity, and data protection domain and technical implementation framework across cloud platforms. - Experience in developing and maintaining cloud security reference architectures, detection patterns, and response playbooks aligned with enterprise governance and regulatory requirements. - Strong analytical and problem-solving skills, with the ability to prioritize risks based on impact and exploitability. - Experience working in Agile environments, collaborating across engineering, platform, and security teams. Company Description At Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. - At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. - Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. - Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself. - We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. - We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace.
Cloud Security Architect
Arthur J. Gallagher & Co.Arthur J. Gallagher & Co., also known as Gallagher, is a Fortune 500 insurance company and a leading provider of risk management, insurance brokerage, and HR and benefits consultin
Title: Cloud Security Architect - Contract Location: Rolling Meadows, IL United States - Information Technology - 54196 - $117,000 - $228,000 - Fully Remote Worker Job Description: Introduction Welcome to Gallagher - a global community of people who bring bold ideas, deep expertise, and a shared commitment to doing what's right. We help clients navigate complexity with confidence by empowering businesses, communities, and individuals to thrive. At Gallagher, you'll find more than a job; you'll find a culture built on trust, driven by collaboration, and sustained by the belief that we're better together. Whether you join us in a client-facing role or as part of our brokerage division, our benefits and HR consulting division, or our corporate team, you'll have the opportunity to grow your career, make an impact, and be part of something bigger. Experience a workplace where you're encouraged to be yourself, supported to succeed, and inspired to keep learning. That's what it means to live The Gallagher Way. Overview Gallagher is a global leader in insurance, risk management and consulting services. We help businesses grow, communities thrive and people prosper. We live a culture defined by The Gallagher Way, our set of shared values and guiding tenets. A culture driven by our people, over 30,000 strong, serving our clients with customized solutions that will protect them and fuel their futures. Please note additional position details below: - This is a Temp-To-Hire, W-2 position. We are not able to do 1099 or C2C. - It is a fully remote role that will need to be based in the U.S. - You must meet our U.S. Eligibility requirements for work authorization as noted under "Additional Information" at the bottom of the job description. Position Summary: Cloud Security Architect will serve as a key technical resource in Global Cyber and Information Security (GCIS) organization. This role will be responsible for developing and/or maturing Cloud security architecture approach, recommended standards, reference architecture designs and narratives. The role will keep current on Cloud best practices and provide direction for Cloud technical specifications. This role will work closely with other Information Security colleagues, IT & Infrastructure organization, and Business teams globally to provide security architecture guidance and recommendations. Take a leadership role and influence Cloud security architecture by example and clearly articulating objectives. How you'll make an impact Key Responsibilities: - Assess, review and design secure Cloud solutions working with various business teams and groups. - Promote Cloud security awareness in interactions with other teams. - Use a data centric risk-based approach to cloud security and solutions. - Define and create Cloud Security architectural standards, artifacts, design patterns and technical specification documents for the enterprise. - Assess, monitor and recommend Cloud security improvements and best practices to improve security posture, mitigate risks and balance costs. - Work with direction from the Director of Cloud Security Governance and closely with the Cloud enterprise architecture and Cloud security engineering team member(s) to ensure Cloud platforms are matured and securely configured. - Oversee and consult with project teams in business units to ensure adherence to Cloud security design patterns and best practices. - Engage with M&A teams to integrate acquired resources into the Gallagher cloud. - Design, collaborate and provide Cloud options for solutions that balance business requirements with information security requirements. - Proactively identify technical and architectural risks for current or proposed state, commenting and/or providing Cloud alternatives for consideration that will improve on capabilities, champion to present for approval and change. - Participate in security technology evaluations, proof of concept testing and provide in-depth analysis of the proposed solution. - Collaborate and partner with various key stakeholders across the enterprise to ensure alignment with the overall intended design. - Partner with architects and engineers within infrastructure, network, application and business teams to ensure that solutions are developed and managed as per GCIS policies and standards. - Assists with risk mitigation and governance activities aligned with Cloud security architecture compliance. - Enable architectural leadership within engaged and assigned forums and projects, acting as a guide by example for collaboration, thought leadership and expertise in Cloud security architecture. About You Required: - Bachelor's degree or equivalent in Computer Science or related field - Minimum 3+ years working with Microsoft Azure - Minimum 3+ years of cybersecurity experience - 2+ years of experience working with other cloud platforms (AWS, GCP, Oracle) - Minimum 1+ years of experience reviewing detailed solution architectures and providing feedback to the application and infrastructure teams. - Experience with reviewing and developing Cloud solution enabled models and security monitoring tooling. - Minimum 1+ years of experience with multi cloud security and aligning polices across platforms. - Demonstrated working experience in a regulated and globally distributed environment. - Knowledge and experience in enterprise architecture frameworks such as TOGAF. - Knowledge and experience implementing security standards frameworks (NIST - CSF, ISO 27001, CSA CCM, PCI-DSS, GDPR) - Proven success recommending and implementing Cloud security architecture best practices and standards for large projects or programs delivering or migrating to Cloud solutions and services. Preferred: - At least one certification related to information security such as; CISSP, CCSP, CCSK, AWS Solutions Architect, Azure Security. - Demonstrated knowledge of multi-Cloud environment security. - 2+ years experience in a global organization - Insurance and risk management domain knowledge desirable. - Architecture tasks associated with a Cloud Security Posture Monitoring tool such as WIZ. Key Characteristics: - Strong communications skills - oral and written. - Self-starter with strong work ethic. - Flexible and resilient, handle various demands planned and unplanned. - Proven ability to handle multiple tasks and projects simultaneously. - Problem solver and desire to close issues, pragmatic and realistic with solutions. - Resilient and collaborative, motivated to pro-actively drive issues to successful mutually agreed upon resolutions. #LI-NJ1 #Contingent Compensation and benefits We offer a competitive and comprehensive compensation package. The base salary range represents the anticipated low end and high end of the range for this position. The actual compensation will be influenced by a wide range of factors including, but not limited to previous experience, education, pay market/geography, complexity or scope, specialized skill set, lines of business/practice area, supply/demand, and scheduled hours. On top of a competitive salary, great teams and exciting career opportunities, we also offer a wide range of benefits. Below are the minimum core benefits you'll get, depending on your job level these benefits may improve: - Medical/dental/vision plans, which start from day one! - Life and accident insurance - 401(K) and Roth options - Tax-advantaged accounts (HSA, FSA) - Educational expense reimbursement - Paid parental leave Other benefits include: - Digital mental health services (Talkspace) - Flexible work hours (availability varies by office and job function) - Training programs - Gallagher Thrive program - elevating your health through challenges, workshops and digital fitness programs for your overall wellbeing - Charitable matching gift program - And more... The benefits summary above applies to fulltime positions. If you are not applying for a fulltime position, details about benefits will be provided during the selection process. We value inclusion and diversity Click Here to review our U.S. Eligibility Requirements Inclusion and diversity (I&D) is a core part of our business, and it's embedded into the fabric of our organization. For more than 95 years, Gallagher has led with a commitment to sustainability and to support the communities where we live and work. Gallagher embraces our employees' diverse identities, experiences and talents, allowing us to better serve our clients and communities. We see inclusion as a conscious commitment and diversity as a vital strength. By embracing diversity in all its forms, we live out The Gallagher Way to its fullest. Gallagher believes that all persons are entitled to equal employment opportunity and prohibits any form of discrimination by its managers, employees, vendors or customers based on race, color, religion, creed, gender (including pregnancy status), sexual orientation, gender identity (which includes transgender and other gender non-conforming individuals), gender expression, hair expression, marital status, parental status, age, national origin, ancestry, disability, medical condition, genetic information, veteran or military status, citizenship status, or any other characteristic protected (herein referred to as "protected characteristics") by applicable federal, state, or local laws. Equal employment opportunity will be extended in all aspects of the employer-employee relationship, including, but not limited to, recruitment, hiring, training, promotion, transfer, demotion, compensation, benefits, layoff, and termination. In addition, Gallagher will make reasonable accommodations to known physical or mental limitations of an otherwise qualified person with a disability, unless the accommodation would impose an undue hardship on the operation of our business.
• Responsible for the configuration and tuning of the Palo Alto Secure Web Gateway to ensure a secure and high-performance internet connection for IT workstations • Ensure that threats such as malware, exploits or phishing in internet traffic are reliably detected and blocked, and optimize the relevant security policies • Responsible for protecting sensitive data using Data Loss Prevention mechanisms as well as content and file controls to prevent unwanted data exfiltration • Ensure the secure use of applications by defining, maintaining and continuously adapting application control rules to current security requirements



