We are looking for a Senior AWS Security Engineer to strengthen our cloud security posture and act as a trusted partner to the CISO. This role sits at the intersection of IT, Security, and Architecture, with a strong focus on AWS security, IAM governance, and continuous improvement of security controls.The ideal candidate combines hands-on technical expertise with strong analytical skills, and is comfortable working in a strategic context while remaining close to implementation realities.Key responsibilitiesCloud Security & architecture review:Review and challenge the security posture of AWS architectures, including network design, segmentation strategies, private connectivity (e.G. Privatelink), and EndPoint security (including laptops/workstations).Assess solutions against security frameworks and best practices, with a strong focus on the AWS Security Pillar.Provide actionable recommendations to improve overall security maturity.AWS governance & Security controls:Manage and optimize AWS Organizations, including Service Control Policies (Scps) and AWS Control Tower.Strengthen cloud governance frameworks and ensure alignment with regulatory requirements (including NIS2).IAM & Access management:Design and improve IAM models following least privilege principles.Automate roles, permissions, and access reviews within AWS.Define scalable and secure approaches to identity and access governance.AWS native Security services:Evaluate, configure, and continuously improve AWS security services such as:GuarddutySecurity HubCloudtrailInspectorProvide expert recommendations on configuration, coverage, and optimization.Threat protection & perimeter Security:Enhance perimeter protection using services such as AWS Shield Advanced and related technologies.Contribute to strengthening detection and response capabilities.CISO advisory & research:Act as a trusted advisor to the CISO, capable of:Conducting in-depth research on complex security topicsTranslating business/security challenges into concrete solutionsProviding clear, structured recommendationsStakeholder collaboration:Serve as the bridge between IT and Security teams, ensuring alignment and effective communication.Collaborate with AWS technical representatives and support teams.Act as a key point of contact for compliance topics, including NIS2.Profile & requirementsExperience 5-10+ years in IT Security, with strong exposure to AWS environmentsProven experience in cloud security engineering and IAMTechnical Skills - strong expertise in:AWS Organizations, Scps, Control TowerIAM design and governanceAWS security services (Guardduty, Security Hub, Cloudtrail, Inspector)Solid understanding of:Network security (segmentation, private links)EndPoint security conceptsSecurity frameworks and best practicesSoft Skills - analytical mindset with strong problem-solving abilitiesAbility to work autonomously and conduct research on complex topicsTeam player with a hands-on and humble attitudeStrong communication skills, able to interact with both technical and executive stakeholdersLanguages - mandatory: Dutch & EnglishFrench is a strong plusPractical informationLocation: Brussels (2-3 days onsite per week)Type: Long-term mission with a strategic visionReporting line: Close collaboration with the CISORecruitment process:Step 1: Technical interviewStep 2: Personality & mindset interview (approach, reasoning, collaboration style)