1

Aws Guardduty Jobs (NOW HIRING)

AWS Cloud Security Engineer- Remote

$57 - $76.25/hr

Expert-level knowledge of AWS GuardDuty, Security Hub, Macie, Inspector, Trusted Advisor * Knowledge of Edge protection technologies such as AWS Shield, WAF, CloudFront * Strong working understanding ...

Systems Engineer

Richmond, VA · On-site

$156K/yr

AWS GuardDuty, Config, and Inspector. Languages: Proficient in Python and Bash. Adaptability: A proven track record of managing shifting priorities, ambiguity, and rapid change within a dynamic ...

Senior Cyber Security Engineer

Dallas, TX · On-site

$113K - $155K/yr

Experience with cloud security tools such as AWS Security Hub or AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel / Microsoft Sentinel, Prisma Cloud, Wiz. Preferred Experience * Experience ...

Senior Network Engineer

Atlanta, GA · On-site +1

$100K - $137K/yr

CloudTrail, GuardDuty, Security Hub, AWS Config, IAM policy review, and ACM. • Multi-account governance: AWS Organizations, SCPs, and Control Tower network guardrails. Preferred / Nice to Have • ...

Senior Network Engineer

Atlanta, GA · On-site

$100K - $137K/yr

CloudTrail, GuardDuty, Security Hub, AWS Config, IAM policy review, and ACM. • Multi-account governance: AWS Organizations, SCPs, and Control Tower network guardrails. • 10+ years of enterprise ...

Showing results 21-40

Aws Guardduty information

See salary details

$11

$54

$77

How much do aws guardduty jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for aws guardduty in the United States is $54.05, according to ZipRecruiter salary data. Most workers in this role earn between $38.70 and $64.42 per hour, depending on experience, location, and employer.

What is AWS GuardDuty?

AWS GuardDuty is a managed threat detection service that continuously monitors your AWS accounts and workloads for malicious activity and unauthorized behavior. It uses machine learning, anomaly detection, and integrated threat intelligence to identify and prioritize potential threats. GuardDuty helps you quickly detect and respond to security incidents without the need to deploy or manage additional security infrastructure.

What is AWS GuardDuty used for?

AWS GuardDuty is a threat detection service used by security professionals to monitor AWS accounts and workloads for malicious activity and unauthorized behavior. It analyzes data from AWS CloudTrail, VPC Flow Logs, and DNS logs to identify potential security threats, helping security teams respond quickly to incidents. Familiarity with AWS security tools and cloud environments is beneficial for roles involving GuardDuty.

What are the key skills and qualifications needed to thrive as an AWS GuardDuty specialist?

To thrive as an AWS GuardDuty Specialist, you need a solid understanding of cloud security principles, threat detection, and experience with AWS services, often supported by AWS certifications such as AWS Certified Security – Specialty. Familiarity with tools like AWS GuardDuty, CloudTrail, Security Hub, and SIEM platforms is essential. Strong analytical thinking, attention to detail, and effective communication skills help in identifying threats and collaborating with stakeholders. These skills and qualities are vital for proactively protecting cloud environments and mitigating security risks.

What is the difference between Aws Guardduty vs Cloud Security Analyst?

AspectAws GuarddutyCloud Security Analyst
Primary RoleCloud threat detection and monitoringSecurity assessment and incident response
CertificationsAWS certifications, security certificationsSecurity certifications (CISSP, CEH, etc.)
Work EnvironmentCloud environments, AWS platformVarious cloud platforms, on-premises, hybrid
Employer UsageUsed by organizations leveraging AWSUsed across multiple cloud providers and industries

While Aws Guardduty focuses on automated threat detection within AWS environments, a Cloud Security Analyst performs broader security assessments, incident response, and policy development across multiple platforms. Both roles require security knowledge, but Guardduty is more specialized in cloud threat monitoring, whereas the analyst role involves comprehensive security management.

What are some common challenges faced by AWS GuardDuty analysts, and how can they best address them?

AWS GuardDuty analysts often encounter challenges such as managing large volumes of alerts, distinguishing between true threats and false positives, and staying updated with evolving threat landscapes. To address these, it's important to develop strong skills in alert triage, automate repetitive tasks where possible, and regularly collaborate with security and DevOps teams for context. Continuous learning through AWS documentation and security community forums also helps analysts stay effective and responsive to new types of threats.
More about Aws Guardduty jobs
What cities are hiring for Aws Guardduty jobs? Cities with the most Aws Guardduty job openings:
What states have the most Aws Guardduty jobs? States with the most job openings for Aws Guardduty jobs include:
Infographic showing various Aws Guardduty job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 1% Part Time, and 10% Contract. Highlights an 81% Physical, 5% Hybrid, and 14% Remote job distribution, with an average salary of $112,422 per year, or $54 per hour.

Host Based Systems Analyst - IV - SME with Security Clearance

Base One Technologies

Arlington, VA • On-site

Contractor

Re-posted 26 days ago


Job description

Responsibilities:
• Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.
• Investigate and respond to incidents and attacks targeting cloud and hybrid identity.
• Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
• Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
• Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.
• Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
• Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings. Required Skills:
• U.S. Citizenship
• Active TS/SCI clearance
• Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
• 5+ years of experience in cyber forensic investigations with leading tools and techniques.
• Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.
• Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
• Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.
• Knowledge of AWS, IAM, and best practices for cloud identity security. Desired Skills:
• Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
• Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
• Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker). Required Education:
BS in Computer Science, Cybersecurity, Computer Engineering, or related field; OR HS Diploma with 7+ years relevant experience. Desired Certifications:
GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS or Microsoft Cloud/Security certifications