AWS Security Engineer

Affinity

Toronto, CAremote countryPosted Jun 24, 2026
Posting intelligenceActively listedReposted 6×, possible evergreen/ghost posting

Skills

cloudformationkubernetesterraformjenkinsgithubpythoncicdaws

About the role

AWS Security Engineer

Client: Banking, Financials

Duration: July 20 – Oct 31 (high possibility of extension)

Location: Toronto, ON (remote)

Top Skills:

5+ years of experience in AWS-focused DevOps/Platform Engineering roles supporting complex enterprise delivery pipelines

Strong hands-on expertise in Policy-as-Code and automation, including Python and Rego with tools like OPA Gatekeeper and AWS Config

Proven experience with Infrastructure as Code and CI/CD pipelines, including Terraform/CloudFormation and GitHub Actions or Jenkins in production environments

Job Description:

On behalf of our client, Affinity is seeking an AWS Engineer to support the design, implementation, and governance of secure, scalable cloud delivery pipelines within a modern AWS environment. This role is ideal for an experienced DevSecOps or Platform Engineer who thrives at the intersection of automation, security, and infrastructure. You will play a key role in advancing policy-driven pipelines, strengthening compliance through Policy-as-Code, and enabling reliable, automated cloud operations at scale.

Responsibilities:

Develop and maintain automation solutions using Python and Rego to support policy enforcement and operational workflows

Design and implement Policy-as-Code frameworks (e.g., AWS Config, OPA Gatekeeper) to enforce security, compliance, and operational guardrails

Develop and manage Infrastructure as Code (IaC) using Terraform and AWS CloudFormation aligned to enterprise standards

Integrate application and infrastructure code into CI/CD pipelines (GitHub Actions, Jenkins) to support automated build, test, and deployment workflows

Ensure adherence to pipeline governance standards, including automated validation, approval gates, and policy enforcement controls

Utilize Git/GitHub for version control, including code management, pull requests, peer reviews, and audit traceability

Develop scripts and automation workflows to improve deployment efficiency and reduce manual effort

Design, deploy, and manage Kubernetes workloads, including configuration, scaling, and lifecycle management

Support integration with AWS platform services, including IAM, networking, compute, and storage components

Troubleshoot, debug, and optimize pipeline and deployment issues within AWS environments

Validate pipeline outputs (logs, artifacts, results) to ensure compliance with defined standards and controls

Conduct peer reviews of code, IaC templates, and pipeline configurations to maintain quality and consistency

Provide guidance on secure architecture design, DevSecOps integration, and AWS best practices

Contribute to pipeline standardization efforts, including reusable templates and automation patterns

Document issues, risks, and improvement opportunities to drive continuous improvement across DevOps practices

Qualifications:

5+ years of experience in DevOps, Cloud Engineering, or Platform Engineering within enterprise environments

Strong proficiency in Python scripting and Rego (OPA) for automation and policy development

Hands-on experience implementing Policy-as-Code frameworks (e.g., AWS Config, OPA Gatekeeper or equivalent)

Proven experience delivering Infrastructure as Code using Terraform and/or AWS CloudFormation

Experience building and maintaining CI/CD pipelines using GitHub Actions, Jenkins, or similar tools

Advanced knowledge of Git-based version control, including branching, pull requests, and code review processes

Hands-on experience deploying and managing Kubernetes environments in production

Deep understanding of AWS cloud services, including IAM, VPC networking, EC2, S3, and security services such as GuardDuty

Strong knowledge of AWS Well-Architected Framework and security best practices

Experience implementing pipeline governance controls, including validation, testing, and approval workflows

Demonstrated experience in DevSecOps environments, embedding security into CI/CD pipelines

Strong troubleshooting and debugging skills across cloud infrastructure and deployments

Familiarity with compliance frameworks and secure development practices in enterprise environments

Excellent communication skills, with the ability to collaborate across platform, security, and application teams

Experience contributing to standardization, automation, and reusable DevOps patterns across teams

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Security Engineer roles in Canada varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for Canada medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.