4-8+ years of hands-on experience in Cloud Security, Platform Security, or DevSecOps Advanced AWS security architecture (multi-account, IAM boundaries, org SCPs) Expert-level knowledge of building and securing production EKS environments Deep practical experience with EKS baseline hardening Fluent in IaC (Terraform, Pulumi, or Ansible) Strong scripting/automation skills (Python, Go, etc.) Hands-on experience configuring and tuning modern WAFs, CDNs, and edge security platforms Pragmatic risk-based approach to translate risks into actionable engineering work Leadership attitude to influence and mentor engineers