# Cloud Platform Security Specialist – FedRAMP & Turbot Guardrails
**Job Type:** Full-Time
**Location:** Remote
**Salary:** $190,000 per year
## Job Summary
We are seeking an experienced **Cloud Platform Security Specialist** with strong hands-on experience in **Turbot Guardrails, AWS, Azure, and FedRAMP**.
The successful candidate will design, configure, and maintain automated cloud security and governance controls across enterprise AWS and Microsoft Azure environments. This role will leverage **Turbot Guardrails** to enforce security policies, monitor compliance, identify configuration drift, and automate remediation.
The ideal candidate will bring a strong combination of **cloud security, governance, FedRAMP/NIST compliance, policy-as-code, and cloud automation** experience.
## Key Responsibilities
* Configure, implement, and maintain **Turbot Guardrails** across AWS and Azure environments.
* Develop and maintain Turbot policies and controls for cloud security and compliance.
* Configure preventative, detective, and corrective security controls.
* Design and maintain resource hierarchies across AWS Organizations, accounts, Azure Management Groups, and subscriptions.
* Configure policy inheritance, policy precedence, Smart Folders, and reusable policy configurations.
* Implement automated remediation for security and compliance violations.
* Configure security notifications, alerts, exceptions, waivers, and escalation workflows.
* Troubleshoot Turbot policies, controls, permissions, resource discovery, and remediation failures.
* Monitor AWS and Azure environments for configuration drift and policy violations.
* Translate **FedRAMP and NIST SP 800-53** requirements into enforceable technical cloud controls.
* Support **FedRAMP Moderate and High** environments.
* Map technical cloud controls to applicable NIST SP 800-53 control families.
* Support continuous monitoring, compliance reporting, and security assessments.
* Assist with FedRAMP audit evidence collection and control validation.
* Support **System Security Plan (SSP)** documentation and **POA&M** remediation activities.
* Collaborate with Cloud Platform Engineering, Cloud Security, DevSecOps, IAM, Network Security, Application, and GRC teams.
* Maintain version-controlled Guardrails configurations and technical documentation.
## Required Qualifications
* Hands-on experience with **Turbot Guardrails**.
* Strong experience with **AWS and Microsoft Azure**.
* Strong understanding of cloud security and cloud governance.
* Experience with **FedRAMP and NIST SP 800-53**.
* Experience supporting FedRAMP Moderate and/or High environments.
* Experience with AWS Organizations, IAM, CloudTrail, AWS Config, S3, KMS, VPC, and related security services.
* Experience with Azure Management Groups, Subscriptions, Azure Policy, RBAC, Entra ID, logging, and security services.
* Experience with **policy-as-code** and automated cloud governance.
* Experience with **Terraform or other Infrastructure-as-Code (IaC)** technologies.
* Experience implementing automated security remediation.
* Experience with continuous cloud compliance and configuration management.
* Experience supporting security audits, evidence collection, SSPs, and POA&Ms.
* Strong troubleshooting, analytical, and communication skills.
## Preferred Qualifications
* Experience developing or maintaining **Turbot Mods and policy packs**.
* Experience with Turbot Smart Folders and policy inheritance.
* Experience managing cloud governance across large AWS Organizations and Azure environments.
* Experience working with FedRAMP authorization teams or third-party assessors.
* Experience with Git, CI/CD, Jenkins, Ansible, or similar automation technologies.
* Familiarity with NIST SP 800-53 control families including AC, AU, CM, IA, IR, RA, SC, SI, and CP.
## Experience & Work Authorization
* **15+ years of overall IT/cloud experience preferred.**
* Candidates must have strong relevant experience in cloud security, governance, and compliance.
* **U.S. Citizens and Green Card holders only.**
* **No visa sponsorship available.**
* Candidates must be able to provide valid proof of U.S. work authorization during the hiring process.
## Ideal Candidate
The ideal candidate is a hands-on **Cloud Platform Security Specialist** who can work across AWS and Azure and use **Turbot Guardrails to enforce security and compliance policies at scale**.
The candidate should be capable of independently configuring Turbot controls, troubleshooting governance issues, implementing automated remediation, and mapping technical cloud controls to **FedRAMP/NIST requirements**.
**Full-Time | Remote | $190,000/year*