We are looking for a Senior AWS Security Engineer to strengthen our cloud security posture and act as a trusted partner to the CISO. This role sits at the intersection of IT, Security, and Architecture, with a strong focus on AWS security, IAM governance, and continuous improvement of security controls.
The ideal candidate combines hands-on technical expertise with strong analytical skills, and is comfortable working in a strategic context while remaining close to implementation realities.
Key responsibilities
- Cloud Security & architecture review:
- Review and challenge the security posture of AWS architectures, including network design, segmentation strategies, private connectivity (e.g. Privatelink), and EndPoint security (including laptops/workstations).
- Assess solutions against security frameworks and best practices, with a strong focus on the AWS Security Pillar.
- Provide actionable recommendations to improve overall security maturity.
- AWS governance & Security controls:
- Manage and optimize AWS Organizations, including Service Control Policies (Scps) and AWS Control Tower.
- Strengthen cloud governance frameworks and ensure alignment with regulatory requirements (including NIS2).
- IAM & Access management:
- Design and improve IAM models following least privilege principles.
- Automate roles, permissions, and access reviews within AWS.
- Define scalable and secure approaches to identity and access governance.
AWS native Security services:
- Evaluate, configure, and continuously improve AWS security services such as:
- Guardduty
- Security Hub
- Cloudtrail
- Inspector
- Provide expert recommendations on configuration, coverage, and optimization.
- Threat protection & perimeter Security:
- Enhance perimeter protection using services such as AWS Shield Advanced and related technologies.
- Contribute to strengthening detection and response capabilities.
CISO advisory & research:
- Act as a trusted advisor to the CISO, capable of:
- Conducting in-depth research on complex security topics
- Translating business/security challenges into concrete solutions
- Providing clear, structured recommendations
- Stakeholder collaboration:
- Serve as the bridge between IT and Security teams, ensuring alignment and effective communication.
- Collaborate with AWS technical representatives and support teams.
- Act as a key point of contact for compliance topics, including NIS2.
Profile & requirements
- Experience 5-10+ years in IT Security, with strong exposure to AWS environments
- Proven experience in cloud security engineering and IAM
- Technical Skills - strong expertise in:
- AWS Organizations, Scps, Control Tower
- IAM design and governance
- AWS security services (Guardduty, Security Hub, Cloudtrail, Inspector)
- Solid understanding of:
- Network security (segmentation, private links)
- EndPoint security concepts
- Security frameworks and best practices
- Soft Skills - analytical mindset with strong problem-solving abilities
- Ability to work autonomously and conduct research on complex topics
- Team player with a hands-on and humble attitude
- Strong communication skills, able to interact with both technical and executive stakeholders
- Languages - mandatory: Dutch & English
- French is a strong plus
Practical information
- Location: Brussels (2-3 days onsite per week)
- Type: Long-term mission with a strategic vision
- Reporting line: Close collaboration with the CISO
Recruitment process:
- Step 1: Technical interview
- Step 2: Personality & mindset interview (approach, reasoning, collaboration style)