Role: AWS Landing Zone Engineer
Location: Remote
Duration: Long-term Contract
Job Description
We are seeking an experienced AWS Landing Zone Engineer to design, build, and manage AWS Landing Zones for enterprise cloud environments. The ideal candidate will have a strong understanding of AWS services, infrastructure automation, and cloud governance. This role requires expertise in implementing multi-account structures, security controls, and compliance frameworks using AWS best practices.
Key Responsibilities
- Design and implement AWS Landing Zones to establish secure and scalable multi-account environments.
- Develop and manage AWS Control Tower configurations, ensuring alignment with enterprise policies and standards.
- Configure multi-account setups, including Organizational Units (OUs), Service Control Policies (SCPs), and account baselining.
- Implement security controls using AWS services such as GuardDuty, AWS Config, CloudTrail, and Security Hub.
- Automate infrastructure provisioning using tools like AWS CloudFormation, Terraform, or AWS Service Catalog.
- Collaborate with stakeholders to define governance, compliance, and operational monitoring requirements.
- Establish and document best practices for resource tagging, cost management, and account provisioning.
- Integrate Landing Zone solutions with CI/CD pipelines for automated deployments.
- Provide technical leadership and guidance on AWS architecture and operational excellence.
- Monitor and optimize Landing Zone environments to ensure cost-effectiveness, performance, and scalability.
Required Skills
- AWS Expertise:
- In-depth knowledge of AWS Control Tower, Organizations, and Service Control Policies (SCPs).
- Proficiency in core AWS services: VPC, IAM, S3, CloudTrail, and Config Rules.
- Experience with security services such as GuardDuty, Security Hub, and IAM Access Analyzer.
- Infrastructure as Code (IaC):
- Hands-on experience with CloudFormation, Terraform, or similar tools.
- Strong scripting skills in Python, Bash, or PowerShell.
- Governance & Compliance:
- Deep understanding of cloud governance, regulatory compliance, and operational frameworks.
- Experience implementing frameworks like CIS AWS Foundations Benchmark or NIST 800-53.
- Monitoring & Automation:
- Knowledge of AWS monitoring tools such as CloudWatch, EventBridge, and AWS Config.
- Automation experience with tools like AWS Lambda or Step Functions.
- Strong troubleshooting and problem-solving skills in AWS cloud environments.
Preferred Qualifications
- AWS Certifications: AWS Certified Solutions Architect – Professional or AWS Certified Security Specialty.
- Experience with cost optimization strategies for multi-account AWS environments.
- Knowledge of hybrid cloud architectures and integration with on-premises systems.
- Familiarity with DevOps tools like Git, Jenkins, or Ansible.
- Experience with third-party tools like Trend Micro, Palo Alto Prisma Cloud, or HashiCorp Vault.
Soft Skills
- Excellent communication and collaboration skills to work with cross-functional teams.
- Strong organizational skills with attention to detail and documentation.
- Ability to manage multiple priorities in a dynamic environment.
Thanks
Debasish Pattnaik
From:
DEBASISH PATTNAIK,
MRTECHNOSOFT
d.pattanaik@mrtechnosoft.com
Reply to: d.pattanaik@mrtechnosoft.com