
Closed
Posted
Paid on delivery
I have several workloads running on AWS—primarily EC2 instances, with data stored in S3 and event-driven pieces handled by Lambda—and I need an experienced hand to tighten security and confirm we meet best-practice compliance. The top priority is hardening EC2: • Encryption: ensure volumes, snapshots, and in-transit traffic are fully encrypted with the appropriate KMS keys and policies. • Access control: audit and refactor IAM roles, security groups, and instance profiles so that least-privilege is enforced across the board. • Monitoring and logging: configure CloudTrail, CloudWatch, and any necessary agent-based logging so that every action on the instances is captured, centralized, and alarmed. While you focus on EC2, I also want you to cast an expert eye over the S3 buckets (public access blocks, bucket policies, default encryption) and the Lambda functions (role permissions, environment variable secrets, VPC configuration) to make sure nothing undermines the overall security posture. Deliverables: 1. Hardened EC2 configuration with encryption, refined IAM, and comprehensive logging enabled. 2. Reviewed and adjusted S3 and Lambda settings for consistent security alignment. 3. A concise report summarizing the changes, commands or CloudFormation/Terraform snippets used, and any follow-up recommendations. All work must be carried out directly in AWS (console, CLI, or IaC tools—whatever you prefer), with zero downtime to production resources. If this matches your expertise, let’s secure the stack.
Project ID: 40646420
23 proposals
Remote project
Active 2 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
23 freelancers are bidding on average $32 USD for this job

Hello, I have 10 years of experience in AWS infrastructure and security. I propose to enhance your EC2 security by enforcing encryption, refining access control, and implementing robust monitoring. Additionally, I will review your S3 and Lambda configurations to ensure comprehensive security. A detailed report of changes and recommendations will be provided. The work will not disrupt your production environment. Regards, VishnuLal NB*
$100 USD in 1 day
7.7
7.7

My name is Harsh and I am an seasoned developer with over 8 years of proficient experience specialising in Cloud Computing, specifically Amazon Web Services. My skill set and technical knowledge are perfectly aligned with your project requirements. I have a solid understanding of Linux and, crucially, Terraform which will enable me to carry out all the necessary work with minimal downtime to your production resources. I am already intimately familiar with AWS tools you have mentioned like console, CLI and IaC. Additionally, I have significant experience hardened EC2 configurations, setting up encryption, IAM roles, security groups and instance profiles - all key components in ensuring that least-privilege is enforced across the board. Furthermore, my expertise extends to auditing and improving S3 buckets and Lambda functions, making me the ideal candidate to cast an astute eye over these areas as well. Lastly, my approach towards work is comprehensive.I'll provide you refined IAM roles & appropriate security measures at not only EC2 end but also for S3 buckets and Lambda functions afroresaid elaborately in the report so that you do not miss out on any niggling issue. Rest assured, I'll deliver a fully optimized AWS stack that meets best practice compliance while enhancing your overall security posture. Let's secure your stack together!
$40 USD in 1 day
4.5
4.5

I'm a cloud security professional having 18 years of experience These listed task are my day-to-day job. Let me know I can help you quickly In addition I can audit your env for cost saving too
$12 USD in 2 days
3.3
3.3

Encryption, access control and compliance across EC2, S3 and Lambda is a well-defined audit-and-fix engagement, and I would run it as exactly that: find, prioritise by real risk, then fix. Where I would look: - EC2: EBS volumes and snapshots encrypted with the right KMS keys, default encryption enabled at account level so new volumes cannot be created unencrypted, and security groups checked for the classic finding — 0.0.0.0/0 on SSH or RDP. Also whether instances use IMDSv2, since IMDSv1 is a real credential-theft path. - IAM: instance roles scoped narrowly instead of broad managed policies, no long-lived access keys on instances, and unused credentials removed. - S3: public access blocked at account level, encryption enforced by bucket policy, and TLS required. - Lambda: execution roles scoped per function rather than shared, environment variables holding secrets moved to Secrets Manager, and VPC placement checked. - Then a written report: what was found, what was changed, what remains as accepted risk with the reasoning. Background: AWS and Linux infrastructure I run and maintain daily, with cloud security as standard practice. Honest note: your budget is $10-30, which suits a focused review of a small estate. A full multi-service hardening across many workloads is more than that covers. Tell me the actual scale and I will tell you honestly what fits. Questions: how many EC2 instances and Lambda functions, and is there a specific compliance standard you are being measured against? Martin
$30 USD in 3 days
3.0
3.0

Hi, I’ve checked your project. I can deliver a clear, reliable solution that matches your requirements. I have relevant experience and can start immediately. Let’s discuss the details and get started. Kind regards Juan
$20 USD in 7 days
0.0
0.0

Hi, I’m Goran, a developer with 10+ years of experience working with AWS, EC2, S3, Lambda, IAM, Docker, and cloud infrastructure. I can audit and harden your AWS environment with a focus on EC2 encryption, least-privilege IAM, security groups, KMS, CloudTrail, CloudWatch, and centralized logging. I’ll also review S3 bucket policies/encryption and Lambda permissions, secrets, and VPC configuration. I’ll work carefully around production to avoid downtime and provide a concise report documenting the changes, relevant CLI/IaC configurations, and remaining recommendations. I’m ready to review the current AWS architecture and begin the security assessment. Best regards, Goran
$20 USD in 7 days
0.0
0.0

We recently helped a client achieve a robust security posture on their AWS infrastructure — and judging by your post, it sounds like we could do the same for you. We've worked on securing cloud environments for service-based businesses and would love to bring that experience to your project. From your post, it sounds like you're looking for something clean and professional, specifically around hardening EC2 instances and ensuring compliance across S3 and Lambda. We specialize in AWS security best practices, including encryption, IAM auditing, and comprehensive monitoring solutions. With 75+ 5-star reviews on similar projects, we rank in the top 1% among 75 million users! I would love to help you with your project! The worst that can happen is you walk away with a free consultation. Regards, Shannonkb21
$15 USD in 7 days
0.0
0.0

Hello, I’d be happy to help secure and harden your AWS environment while keeping production workloads online with zero downtime. I have experience securing AWS workloads across EC2, S3, Lambda, IAM, KMS, CloudTrail, and CloudWatch, with a strong focus on least-privilege access, encryption, centralized logging, monitoring, and AWS security best practices. What I’ll do EC2: Review and harden EBS encryption, snapshots, KMS policies, security groups, instance profiles, IAM roles, and network access. IAM: Identify excessive permissions and refactor roles/policies according to least privilege. Logging & Monitoring: Configure and validate CloudTrail, CloudWatch logs/alarms, and required host-level logging for centralized visibility. S3: Review Block Public Access, bucket policies, encryption, access controls, and configuration. Lambda: Audit execution roles, permissions, environment variables/secrets, VPC configuration, and security settings. Validation: Verify that changes do not disrupt production and that security controls are working as expected. Documentation: Provide a concise report containing changes made, relevant CLI/IaC snippets, findings, and recommended follow-up actions. I’ll take a security-first, least-privilege approach and make changes carefully in stages to maintain availability throughout the engagement. I’m ready to review your current AWS setup and start with an initial security assessment of the EC2/IAM configuration.
$20 USD in 7 days
0.0
0.0

Hi there!, allow me to assess and review your AWS cloud environment, including the services and workloads currently running. I can evaluate the existing infrastructure, configurations, security controls, access permissions, networking, monitoring, backup, and overall cloud architecture. Based on the assessment, I can provide practical recommendations to improve security, reliability, performance, and cost efficiency. My goal is not only to identify potential risks or gaps, but also to ensure that the appropriate security measures are in place and aligned with your business and operational requirements. I am looking forward to hear from you soon.
$100 USD in 7 days
0.0
0.0

Hello, I am writing to express my interest in the AWS EC2 Security & Multi-Service Support position. With my strong background in System Administration, Cloud Computing, and Cloud Security, I am confident in my ability to meet your requirements for hardening EC2, reviewing S3 and Lambda configurations, and delivering a comprehensive security posture report. I am well-versed in AWS services like Lambda, IAM, and CloudTrail, and have experience with Terraform for Infrastructure as Code. I am excited about the opportunity to help secure your AWS workloads. Thank you. Sincerely, Winston
$20 USD in 7 days
0.0
0.0

AWS Solutions Architect- Associate Certified and 1.5 years of enterprise experience. I can help secure your AWS infrastructure with zero production downtime, focusing on rigorous least-privilege access, end-to-end encryption, and centralized monitoring. Proposed Scope of Work: EC2 Hardening: Enforce KMS encryption across all EBS volumes, snapshots, and in-transit communication. Refactor IAM roles, instance profiles, and security groups to strictly enforce the principle of least privilege. Centralize logging and configure real-time alarms via CloudTrail and CloudWatch. S3 & Lambda Alignment: Verify public access blocks, tighten bucket policies, and ensure default encryption. Audit Lambda execution roles, secure environment variable secrets via AWS Secrets Manager/KMS, and review VPC configurations. Deliverables & Timeline: Production-Ready IaC / CLI Scripts: Fully tested, zero-downtime implementation snippets (Terraform or AWS CLI). Configuration Audit & Adjustment: Applied best-practice baselines for EC2, S3, and Lambda. Best regards, Akash Garg
$30 USD in 3 days
0.0
0.0

Hello. I can help harden your AWS environment across EC2, S3, and Lambda while keeping production downtime at zero. I have strong experience with AWS, Linux, cloud infrastructure, server configuration, IAM/API integrations, deployment, and scalable backend systems. I can review EC2 encryption, KMS usage, IAM roles, security groups, instance profiles, CloudTrail, CloudWatch, and centralized logging. I will also audit S3 public-access settings, bucket policies, encryption, and Lambda permissions, secrets handling, environment variables, and VPC configuration to identify security gaps. My approach is to review the current setup first, make controlled changes, verify each change, and document the final configuration. I can provide the requested report with relevant CLI commands or IaC snippets and practical follow-up recommendations. Before starting, please confirm whether the environment is managed manually or through Terraform/CloudFormation, and whether you have existing security policies or compliance requirements I should follow. Send me the AWS architecture details and I can start with the security assessment.
$20 USD in 7 days
0.0
0.0

Hi, I reviewed your requirements for hardening your AWS stack (EC2, S3, Lambda, IAM), and I can ensure full compliance with AWS Security Best Practices and Least-Privilege with ZERO downtime. Here is my execution plan: 1. EC2 Hardening: • Enforce KMS encryption for EBS volumes/snapshots & in-transit traffic. • Audit & refactor IAM roles/instance profiles to eliminate wildcard permissions. • Restrict Security Groups (lock down SSH/RDP to specific IPs & apply SG chaining). 2. Monitoring & Logging: • Configure AWS CloudTrail integrated with an encrypted S3 bucket[span_0](start_span)[span_0](end_span). • Set up CloudWatch alarms & log groups with SNS email alerts for unusual activity. 3. S3 & Lambda Posture: • Enable S3 Block Public Access & default SSE-KMS encryption. • Audit Lambda execution roles, VPC configs, and secrets handling. 4. Deliverables: • Fully hardened & audited AWS environment. • Clear handover report with executed CLI/IaC snippets & recommendations. I have hands-on experience designing and securing production AWS 3-tier architectures and can start immediately. Best regards, Muhammad Bilal AWS Cloud & DevOps Specialist
$25 USD in 1 day
0.0
0.0

Hi, I’m an AWS Cloud Engineer with hands-on experience managing and securing AWS environments, particularly EC2, IAM, VPC, S3, CloudWatch, CloudTrail, KMS, SSM, Lambda, AWS Config and Security Groups/NACLs. I can help harden your environment while maintaining production availability and following AWS security best practices. For EC2, I can review EBS encryption, snapshots, KMS configuration, IAM roles/instance profiles, Security Groups, SSM access, logging and monitoring. I can also review CloudTrail and CloudWatch to ensure activities are properly captured, centralized and alerted. I can additionally audit S3 for Block Public Access, bucket policies and encryption, and review Lambda execution roles, permissions, environment variables and VPC configuration. I have hands-on experience with Terraform and CloudFormation, so changes can be implemented in a controlled, repeatable and auditable manner. I will first assess the existing environment, identify security gaps, implement required remediation with minimal/no downtime, and provide a concise report documenting the changes, commands/IaC used and recommendations. I’m confident I can take ownership of this AWS security hardening task and deliver a secure, well-documented environment.
$20 USD in 7 days
0.0
0.0

Hi, I’m a Senior Cloud & DevOps Engineer with 15+ years of IT experience and 8+ years of hands-on AWS, DevOps, infrastructure automation and cloud security experience. Your requirement closely matches my AWS experience. I can perform a structured security review and hardening of EC2, IAM, security groups, S3, Lambda, KMS, CloudTrail and CloudWatch while keeping production availability as a priority. For EC2, I can review EBS volume/snapshot encryption, KMS configuration and policies, IAM roles, instance profiles, security groups and least-privilege access. I can also review CloudTrail, CloudWatch logging, monitoring and alerting to improve visibility and centralized auditing. I will additionally review S3 public access settings, bucket policies and encryption, and Lambda IAM permissions, secrets/environment variables and VPC configuration. I can use AWS Console, CLI and Terraform/IaC where appropriate. I will document the changes made, relevant commands or IaC snippets, findings and follow-up recommendations. My approach will be to assess the existing environment first, identify risks, make changes incrementally, and validate each change to minimize the risk of production impact or downtime. I am new to online freelancing, but I have extensive enterprise experience working with real-world AWS and production environments. Estimated completion: 5–7 working days, depending on the number of resources and complexity of the environment. I’m available to start immediately.
$100 USD in 7 days
0.0
0.0

Hello, I can help secure and harden your AWS environment with **zero downtime to production workloads**. I will: * Harden EC2 encryption, security groups, IAM roles, instance profiles, and access controls. * Review EBS volumes/snapshots and KMS encryption configuration. * Configure and validate **CloudTrail, CloudWatch, and centralized logging/alerts**. * Audit S3 for public access, bucket policies, encryption, and permissions. * Review Lambda IAM roles, secrets/environment variables, and VPC configuration. * Apply **least-privilege and AWS security best practices** across the environment. * Provide a concise security report with changes made, relevant CLI/IaC snippets, and recommendations. I have hands-on experience with **AWS EC2, S3, IAM, CloudWatch, CloudTrail, Lambda, KMS, Terraform, and production infrastructure operations**. I can begin with a security assessment, identify the highest-risk findings, and implement the required hardening carefully without disrupting production. Thank you.
$25 USD in 8 days
0.0
0.0

Hi, I'd like to apply for this project. I have hands-on experience with AWS EC2, I used it to host a backend with InfluxDB and Grafana for a monitoring platform, so I'm familiar with the environment, instance setup, and basic access control. I understand the security concepts you're describing: least-privilege IAM, security groups, encryption at rest and in transit, and centralized logging. I'm comfortable working directly in the AWS console and CLI, and I can deliver a clear report summarizing changes and recommendations. My bid is $25 for the full scope. Best regards, Mario
$25 USD in 7 days
0.0
0.0

The gap that usually survives an EC2 hardening pass is an overly broad security group left open 'temporarily' months ago, or an IAM role with wildcard permissions nobody revisited. I'd audit IAM roles, security groups and instance profiles for least-privilege, verify volume and snapshot encryption with the right KMS keys, and check in-transit traffic is actually enforced, not just configured. You'd get a findings report plus applied fixes where safe to do without downtime. How many EC2 instances and S3 buckets are in scope, and is this a compliance-driven audit (SOC2, ISO) or general hardening?
$20 USD in 5 days
0.0
0.0

Hi, I'm Fernando from FCyberSecurity LLC (US-based cybersecurity firm). I can cover all three areas: 1. EC2 hardening: enable/verify encryption on volumes, snapshots, and in-transit traffic with proper KMS key policies; audit and refactor IAM roles, security groups, and instance profiles for least privilege; set up CloudTrail, CloudWatch, and agent-based logging so every action is captured and alarmed. 2. S3 review: public access blocks, bucket policies, and default encryption checked and corrected. 3. Lambda review: role permissions, environment variable secrets (moved to Secrets Manager/Parameter Store where needed), and VPC configuration. Deliverable: a report of every change made, the commands or CloudFormation/Terraform snippets used, plus follow-up recommendations. All changes done live in your AWS account with zero downtime to production. Quick question: do you already use IaC (Terraform/CloudFormation) for this environment, or has it been built manually in the console so far? Ready to start immediately.
$20 USD in 7 days
0.0
0.0

Dear Hiring Team, I can immediately execute the security hardening and compliance audit across your AWS EC2, S3, and Lambda workloads. With extensive Senior Security Administration experience—specializing in Identity and Access Management (IAM), least-privilege policies, and infrastructure auditing—I focus on delivering zero-downtime security enhancements aligned with AWS Best Practices. Execution Plan: 1. EC2 Hardening: Audit and refactor IAM roles, instance profiles, and Security Groups (applying strict least-privilege). Enforce KMS volume/snapshot encryption and verify in-transit TLS configurations. 2. Logging & Monitoring: Configure centralized logging via CloudWatch agents, CloudTrail activity tracking, and baseline alarms for critical instance events. 3. S3 & Lambda Alignment: Enforce S3 Public Access Block, bucket default encryption (SSE-KMS), and audit Lambda execution roles/VPC bindings. 4. Handover Deliverable: Provide a concise technical summary report detailing applied changes and AWS CLI/IaC snippets used. I am ready to begin the security review as soon as access is granted. Sincerely, Fabián Stochyk Senior IT Security & Infrastructure Specialist
$20 USD in 1 day
0.0
0.0

FAISALABAD, Pakistan
Payment method verified
Member since Sep 30, 2020
$10-30 USD
$10-30 AUD
$30-250 AUD
$10-30 USD
£10-30 GBP
₹750-1250 INR / hour
$30-250 USD
₹750-1250 INR / hour
₹600-1500 INR
$10-30 USD
$8-15 USD / hour
$10-30 USD
₹1500-12500 INR
$25-50 USD / hour
₹750-1250 INR / hour
₹100-400 INR / hour
₹600-1500 INR
₹12500-37500 INR
₹75000-150000 INR
$30-250 USD
$10000-20000 CAD
₹12500-37500 INR / hour
$250-750 USD
$30-250 USD
₹12500-37500 INR / hour