Summary
Intellisoft Technologies is seeking a Cloud Engineer specializing in AWS and Automation. The role involves working with AWS networking, IAM, and SSO technologies to manage and secure cloud environments.
Responsibilities
- General understanding of VPC architecture, subnets, route tables, and internet/NAT gateways
- Familiarity with Transit Gateway connectivity and multi-account networking patterns
- Understanding of NACLs and Security Groups and how they interact at different layers
- Experience with DNS resolution (Route 53) in multi-account environments
- IAM policy authoring (JSON), permission boundaries, and cross-account role assumption
- Understanding of how IAM policies, SCPs, and permission boundaries interact and evaluate
- Experience with federated access patterns and temporary credentials (STS)
- Prior experience with SSO technologies (SAML, OIDC)
- Familiarity with AWS IAM Identity Center configuration and assignment
- Understanding of external IdP integration patterns
- Author and manage SCPs across AWS Organizations (deny-list/allow-list strategies)
- Implement region restrictions, service restrictions, root lockdown, and encryption enforcement
- Understand SCP inheritance, limitations, and testing without production disruption
Skills
- 3–5 years Cloud Engineering
- 2+ years AWS
- Bachelor's in CS/IT or related field
- General understanding of VPC architecture, subnets, route tables, and internet/NAT gateways
- Familiarity with Transit Gateway connectivity and multi-account networking patterns
- Understanding of NACLs and Security Groups and how they interact at different layers
- Experience with DNS resolution (Route 53) in multi-account environments
- IAM policy authoring (JSON), permission boundaries, and cross-account role assumption
- Understanding of how IAM policies, SCPs, and permission boundaries interact and evaluate
- Experience with federated access patterns and temporary credentials (STS)
- Prior experience with SSO technologies (SAML, OIDC)
- Familiarity with AWS IAM Identity Center configuration and assignment
- Understanding of external IdP integration patterns
- Author and manage SCPs across AWS Organizations (deny-list/allow-list strategies)
- Implement region restrictions, service restrictions, root lockdown, and encryption enforcement
- Understand SCP inheritance, limitations, and testing without production disruption
- AWS Solutions Architect Associate
Qualifications
Must Haves
- 3–5 years Cloud Engineering
- 2+ years AWS
- Bachelor's in CS/IT or related field
- General understanding of VPC architecture, subnets, route tables, and internet/NAT gateways
- Familiarity with Transit Gateway connectivity and multi-account networking patterns
- Understanding of NACLs and Security Groups and how they interact at different layers
- Experience with DNS resolution (Route 53) in multi-account environments
- IAM policy authoring (JSON), permission boundaries, and cross-account role assumption
- Understanding of how IAM policies, SCPs, and permission boundaries interact and evaluate
- Experience with federated access patterns and temporary credentials (STS)
- Prior experience with SSO technologies (SAML, OIDC)
- Familiarity with AWS IAM Identity Center configuration and assignment
- Understanding of external IdP integration patterns
- Author and manage SCPs across AWS Organizations (deny-list/allow-list strategies)
- Implement region restrictions, service restrictions, root lockdown, and encryption enforcement
- Understand SCP inheritance, limitations, and testing without production disruption
Nice to Haves
- AWS Solutions Architect Associate