Company logo hidden

AWS Cloud Infrastructure Architect with IRS MBI Clearance

Unlock employer United Arab Emirates Direct to Company 1 hour ago · 21 Sep 2026

Financial

  • $150k - $170k
  • Zero income tax location

Accessibility

  • Fully Remote
  • Visa Provided

Requirements

  • Experience: Senior
  • English: Professional

Position

About the Role
This role is responsible for designing and managing secure, scalable AWS cloud infrastructure across complex multi-account environments. You will shape cloud architecture spanning account governance, networking, identity and access management, security, and compliance. The position requires hands-on expertise with AWS Organizations, Control Tower, Landing Zone Architecture, and GovCloud environments. You will help establish resilient cloud foundations while supporting stringent regulatory and security requirements, including FedRAMP. Working closely with engineering and security teams, you will provide architectural guidance and help drive infrastructure best practices. The role also includes infrastructure automation, cost optimization, disaster recovery, and technical documentation. This is an opportunity to make a direct impact on the reliability, security, and scalability of a mission-critical cloud environment.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

Accountabilities:

  • Design and implement AWS account structures using AWS Organizations, including Organizational Units aligned with business and technical requirements.
  • Establish account governance policies, standards, consolidated billing, and cost allocation strategies.
  • Deploy and manage AWS Control Tower for automated account provisioning, governance, and organizational controls.
  • Design and implement Landing Zone Architecture for secure, scalable, multi-account AWS environments.
  • Architect and deploy multi-region VPC environments, including subnets, route tables, network ACLs, and network segmentation strategies.
  • Configure and manage Site-to-Site VPN, Client VPN, AWS Direct Connect, and Transit Gateway connectivity.
  • Design hybrid and multi-VPC networking solutions and manage DNS through Amazon Route 53.
  • Architect network solutions for AWS GovCloud environments.
  • Design and implement IAM policies, roles, permission boundaries, identity federation, and organization-level Service Control Policies.
  • Establish least-privilege access models and MFA requirements while maintaining IAM governance and compliance frameworks.
  • Develop and implement organization-wide security policies, monitoring, and incident response procedures.
  • Configure and manage AWS Security Hub, GuardDuty, AWS Config, CloudTrail, WAF, and Shield.
  • Implement encryption strategies for data at rest and in transit and support vulnerability management and security assessments.
  • Maintain security and compliance controls aligned with SOC 2, ISO 27001, HIPAA, FedRAMP, and other applicable frameworks.
  • Design and maintain security architectures for AWS GovCloud regions.
  • Build infrastructure as code using CloudFormation, Terraform, or CDK.
  • Maintain comprehensive architecture documentation, diagrams, standards, and technical guidance.
  • Provide technical leadership and mentorship to engineering teams on AWS architecture and cloud best practices.
  • Participate in disaster recovery planning, testing, and resilience initiatives.
  • Identify opportunities to optimize AWS costs, resource utilization, and overall infrastructure efficiency.

Requirements:

  • 5+ years of experience in cloud architecture, including at least 3 years of hands-on AWS experience.
  • Deep understanding of AWS Organizations, multi-account architectures, and cloud governance strategies.
  • Hands-on experience deploying and managing AWS Control Tower for account orchestration and governance.
  • Proven experience designing and implementing AWS Landing Zone Architecture.
  • Experience working with AWS GovCloud (US) environments.
  • Strong knowledge of FedRAMP requirements, security controls, and authorization processes.
  • Expert-level understanding of AWS networking services, including VPC, VPN, Direct Connect, and Transit Gateway.
  • Strong expertise in IAM policy design, permission management, identity federation, and least-privilege architectures.
  • Demonstrated experience implementing cloud security best practices and compliance frameworks.
  • Proficiency with infrastructure as code technologies such as CloudFormation, Terraform, and/or AWS CDK.
  • Experience with AWS security and monitoring services, including Security Hub, GuardDuty, Config, and CloudTrail.
  • Strong understanding of encryption, security monitoring, vulnerability management, and incident response.
  • Ability to translate complex infrastructure and security requirements into scalable architectural solutions.
  • Strong technical communication, documentation, problem-solving, and mentoring skills.
  • IRS MBI clearance is required.
  • AWS Certified Solutions Architect – Professional is preferred.
  • AWS Certified Security – Specialty and AWS Certified Advanced Networking – Specialty certifications are preferred.
  • Additional AWS certifications are a plus.

Benefits:

  • Annual salary of $150,000–$170,000.
  • Fully remote position.
  • Full-time employment.
  • Opportunity to work on complex AWS cloud architecture and multi-account environments.
  • Exposure to AWS GovCloud, FedRAMP, cloud security, governance, and compliance initiatives.
  • Opportunity to provide technical leadership and influence cloud infrastructure strategy.
  • Work involving modern AWS automation, infrastructure as code, networking, and security technologies.
Apply Direct

Jobs you might like   View all jobs

About Internet Marketplace Platforms Company

Company details are hidden. Subscribe to view full company profile.

Ready to apply for this role?

Apply Direct