afarax is looking for a freelance AWS Security Architect. We need you!
The project:
Our client in the Transportation, Logistics, Supply Chain and Storage sector, is seeking an experienced AWS Security Architect to strengthen their team.
Key Responsibilities
Security Architecture & Design
- Design and maintain the AWS cloud security architecture, aligning with enterprise policies and regulatory frameworks.
- Define secure reference architectures and blueprints for workloads, networks, identities, and data protection.
- Lead the design of multi-account governance models (AWS Organizations, Control Tower, SCPs).
- Ensure consistent application of security-by-design principles across development and operational teams.
- Evaluate new AWS services and technologies from a security and compliance perspective.
Governance, Compliance & Risk Management
- Align AWS security controls with frameworks such as ISO 27001, NIS2, DORA, and PCI DSS.
- Oversee the implementation of policy-as-code, identity governance, and compliance automation.
- Conduct risk assessments and contribute to security reviews, audits, and regulatory reporting.
- Define and maintain cloud security standards and documentation.
Automation & Continuous Improvement
- Drive the automation of security controls and monitoring using AWS native tools and IaC (Terraform, CloudFormation).
- Integrate continuous compliance checks into CI/CD pipelines (GitHub Actions, Azure DevOps).
- Collaborate with DevOps and SOC teams to ensure end-to-end visibility and effective threat detection (GuardDuty, Security Hub, CloudTrail, CloudWatch).
Collaboration & Leadership
- Partner with business, infrastructure, and application teams to embed security early in the design phase.
- Coach and guide engineers and developers in applying AWS security best practices.
- Act as the subject-matter expert on AWS security for internal and external stakeholders.
Is this you?
Required Experience
- 7+ years of experience in cloud security and architecture, with a strong focus on AWS.
- Proven track record in designing and implementing secure AWS environments.
- Deep knowledge of AWS security services (IAM, KMS, Config, Security Hub, GuardDuty, WAF, Shield, CloudTrail).
- Solid experience with infrastructure as code (Terraform, CloudFormation) and automated compliance frameworks.
- Understanding of container and serverless security (EKS, ECS, Lambda).
- Familiarity with enterprise-scale cloud governance and multi-account environments.
Certifications (Preferred)
- AWS Certified Security – Specialty
- AWS Certified Solutions Architect – Professional
- CISSP or CCSP
Soft Skills
- Strategic thinker with strong analytical and problem-solving skills.
- Hands-on and pragmatic, with an automation-first mindset.
- Excellent communicator, capable of translating technical concepts to non-technical stakeholders.
- Collaborative team player with leadership potential and cross-functional influence.
How afarax supports you?
- You benefit from our extensive network
- You will have access to projects that fit your expertise
- We help and support you throughout your project
- We offer the possibility to build a valuable and lasting partnership
Check out more projects on:
📌 Aws security architect (España)
🏢 afarax
📍 España