AWS Cloud Security Architect
Brussel
|Brussel
|Devops Engineer
|Network Security Engineer
|Freelance
|Engels
# INW27953
Function
Our client is looking for an experienced cloud security professional to strengthen the security architecture capability within its CISO function. In this role, you will act as a trusted technical authority on cloud security, helping shape secure cloud transformation initiatives, review solution designs, and ensure that risks are properly addressed through the right controls and governance processes.
Responsibilities
- Define and maintain cloud security policies, standards, guardrails, design patterns, and reference architectures for AWS and Azure environments.
- Develop reusable security blueprints and architectural building blocks for cloud and cloud-native technologies.
- Translate business, regulatory, and security requirements into practical cloud security controls.
- Design security requirements for cloud platforms and services, with a focus on secure-by-design and zero-trust principles.
- Provide technical guidance during design workshops, proof-of-concepts, and implementation activities.
- Review solution designs and cloud projects, identifying security gaps, risks, and weaknesses.
- Assess the security impact of emerging cloud technologies and AI services.
- Conduct threat modelling and define remediation actions, while supporting risk acceptance and exception processes.
- Participate in architecture and governance reviews and collaborate with risk stakeholders to ensure proper tracking and treatment of identified risks.
- Work with operational security teams to help ensure controls are monitorable and operable, and to improve cloud detection and response capabilities.
- Promote cloud security awareness and support engineering teams in adopting secure cloud practices.
Technical Skills
- Strong hands-on expertise in AWS security architecture is mandatory.
- Experience with Azure security architecture is a plus.
- Proven ability to define and operate a cloud security control framework.
- Experience building cloud security patterns, blueprints, and reference architectures.
- Solid understanding of:
- AWS Identity and Access Management (IAM)
- Network security, including VPC, Transit Gateway, Security Groups, and NACLs
- Container security, including EKS and ECS
- Infrastructure as Code, including Terraform and CloudFormation
- Secrets management and cryptography
- Logging, monitoring, and detection
- Security automation and DevSecOps
- AWS security services such as GuardDuty, Security Hub, Inspector, WAF, and KMS
- Experience with architecture risk assessments and threat modelling for cloud-based solutions.
- Familiarity with compliance frameworks such as NIS2, ISO 27001, CIS, and NIST CSF.
- AWS Security Specialty certification is highly desirable.
Profile
- At least 10 years of experience in IT and cybersecurity.
- Minimum 5 years of hands-on experience in cloud security architecture.
- Proven experience securing AWS environments and reviewing complex solution architectures.
- Strong ability to challenge technical designs and provide practical security guidance.
- Confident stakeholder manager with excellent communication skills.
- Collaborative mindset and the ability to work effectively with engineering, security, and risk teams.
Practical Information
- Location: Brussels, with a hybrid working arrangement.
- Contract: full-time consulting assignment with an initial term that is renewable.
- Language requirements: fluent English; Dutch and/or French is a plus.
Contactperson & Reference
- Reference #: INW27953
- Jeroen Van Hoecke
- jeroen.vanhoecke@i4m.be