Join Anchanto as an AWS & Application Security Engineer, responsible for conducting security assessments, VAPT, and penetration testing of web applications, mobile applications, AWS infrastructure, and networks. The role involves performing security reviews of AWS accounts, VPCs, EC2 instances, EKS clusters, RDS databases, S3 buckets, Load Balancers, and serverless services.
🏢 About Anchanto
Unfortunately, specific details about Anchanto are not provided in the job posting.
🎯 The Role
As an AWS & Application Security Engineer at Anchanto, you will be responsible for implementing and managing AWS security services such as GuardDuty, Security Hub, AWS Config, Inspector, CloudTrail, WAF, Shield, and IAM. You will also conduct regular cloud security posture assessments and identify misconfigurations against AWS security best practices and CIS benchmarks.
✅ Key Responsibilities
Conduct security assessments, VAPT, and penetration testing of web applications, mobile applications, AWS infrastructure, and networks.
Perform security reviews of AWS accounts, VPCs, EC2 instances, EKS clusters, RDS databases, S3 buckets, Load Balancers, and serverless services.
Implement and manage AWS security services such as GuardDuty, Security Hub, AWS Config, Inspector, CloudTrail, WAF, Shield, and IAM.
Conduct regular cloud security posture assessments and identify misconfigurations against AWS security best practices and CIS benchmarks.
Identify security vulnerabilities, misconfigurations, and compliance gaps, and drive remediation efforts.
Hands-on experience with Ansible Automation for server provisioning, configuration management, security hardening, patch management, and compliance enforcement.
Develop and maintain Ansible playbooks for automating security controls, vulnerability remediation, user access management, and AWS infrastructure deployments.
Perform and support internal/external security audits and compliance assessments.
Prepare security test cases, audit checklists, VAPT reports, and risk assessment reports.
Coordinate with engineering and infrastructure teams to remediate findings within defined timelines.
Implement OWASP security best practices and support secure SDLC initiatives.
Perform Linux server hardening and infrastructure security reviews.
Support firewall, network security, cloud security monitoring, and incident response activities.
📌 Required Qualifications
Strong hands-on experience in AWS Security, Application Security, and VAPT.
Hands-on experience with AWS Security Hub, GuardDuty, Inspector, CloudTrail, Config, WAF, Shield, Secrets Manager, and KMS.
Experience securing containerized environments such as Docker and Kubernetes
Expertise with tools such as Burp Suite Pro, Nessus, Qualys, Acunetix, Netsparker, Metasploit, WebInspect, and Nmap.
Experience with OWASP Top 10, secure coding practices, and cloud security controls.
Good understanding of Linux administration, server hardening, and network security.
Experience participating in at least two security audits, with one conducted in the last 12 months.
Excellent analytical, documentation, and communication skills.
⭐ Desirable Experience
Experience in SaaS, e-commerce, or product-based organizations.
Certifications such as AWS Security Specialty, CISM, or ISO 27001 Lead Auditor.
🎁 Benefits
Unfortunately, specific details about benefits are not provided in the job posting.
🛂 Visa & Eligibility
Unfortunately, specific details about visa or eligibility requirements are not provided in the job posting.
Please let Anchanto know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.