|
Position Summary
We are seeking a Senior AWS Identity & Data Platform Engineer to support enterprise cloud identity services and AWS-based analytics platforms. This role will be responsible for designing, implementing, and supporting AWS IAM Identity Center (AWS SSO) capabilities while enabling secure access to modern AWS developer and AI services, including Amazon Q, Kiro, and other cloud-native platforms. The ideal candidate will bring a strong blend of AWS identity and access management expertise, cloud engineering experience, and data platform knowledge. This individual will work closely with security, architecture, application, and data teams to deliver secure, scalable, and efficient cloud solutions that drive innovation and business value.
Key Responsibilities
- Design, implement, and manage AWS IAM Identity Center (AWS SSO) environments, including permission sets, account assignments, federation, and enterprise identity integrations.
- Develop secure access models and governance frameworks to support AWS developer, analytics, and AI services.
- Configure and maintain IAM roles, policies, trust relationships, permission boundaries, and cross-account access controls following least-privilege principles.
- Support AWS-based analytics and reporting solutions utilizing services such as Redshift, S3, Glue, Athena, and Lake Formation.
- Build and maintain data ingestion, transformation, and orchestration workflows using AWS-native services including Glue, Lambda, Step Functions, and EventBridge.
- Develop reports, analyze datasets, write and optimize SQL queries, validate data quality, and troubleshoot data-related issues.
- Partner with security, architecture, application, and data engineering teams to support proof-of-concepts, document solution designs, and accelerate cloud adoption initiatives.
- Create automation solutions that improve operational efficiency, security controls, and platform scalability.
- Evaluate complex business requirements and independently design innovative cloud-based solutions.
Required Qualifications
- Extensive experience configuring and administering AWS IAM Identity Center, including permission sets, federation, account provisioning, and enterprise identity integrations.
- Strong understanding of AWS Identity and Access Management (IAM), including roles, policies, trust policies, permission boundaries, and cross-account access models.
- Hands-on experience with AWS data and analytics services, including Redshift, S3, Glue, Athena, and Lake Formation.
- Experience building and supporting data pipelines, integration processes, and analytics workloads in AWS.
- Strong SQL skills with experience analyzing large datasets, validating data quality, and delivering business insights.
- Experience troubleshooting access, identity, authentication, and cloud platform issues.
- Ability to work independently and recommend the most effective technical solutions for complex business challenges.
- Strong communication and collaboration skills across technical and business stakeholders.
Preferred Qualifications
- Experience with ETL development, data engineering, and cloud-based data pipeline architectures.
- Proficiency with Python, Shell scripting, Terraform, CloudFormation, or similar automation technologies.
- Experience automating IAM administration, identity governance, and data workflow processes.
- Familiarity with enterprise identity management, federation, and cloud security best practices.
- Experience supporting modern AWS AI, developer productivity, and analytics services.
- Knowledge of cloud governance, operational best practices, and infrastructure automation frameworks.
Technical Skills
- AWS IAM Identity Center (AWS SSO)
- AWS IAM
- Redshift
- Amazon S3
- AWS Glue
- Athena
- Lake Formation
- Lambda
- Step Functions
- EventBridge
- SQL
- Python
- Shell Scripting
- Terraform
- CloudFormation
- Identity Federation
- Access Management
- Data Engineering
- ETL & Data Pipelines
- Cloud Security & Governance
Equal Opportunity Employer, including disability and protected veteran status
|