Job Description
Job Description
Description :
As a Cloud Engineer, you’ll help design, automate, and optimize cloud infrastructure supporting our products and internal systems. You’ll work alongside talented engineers across Security, Quality Assurance, and Application teams to keep our systems fast,
reliable, and secure.
Our tech stack includes :
- Governance : Control Tower (70+ AWS Accounts), Identity Center + OIDC, SCPs
- Hosting Services : ECS on Fargate, EC2, Lambda
- Storage : S3, RDS, Aurora, DynamoDB
- Data Visualization & Processing : Athena, Glue, Kinesis, QuickSight
- Security Tooling : Security Hub, GuardDuty, Inspector, Splunk
- Networking : AWS Transit Gateway (Hub and Spoke Network), Palo Alto CN NGFWs, AWS WAF
- Infrastructure as Code : CDK (TypeScript), Terraform
- CI / CD : GitHub Actions, Bitbucket Pipelines
What You’ll Do
Design, build, and maintain AWS infrastructure with scalability, reliability, and cost efficiency in mindDevelop and maintain Infrastructure as Code (IaC) using CDK and TerraformPartner with Product and Application teams to support cloud-native architectures and deploymentsMonitor and optimize system performance, uptime, and costStrengthen our cloud security posture and automate compliance where possibleTroubleshoot and resolve issues across complex distributed environmentsCollaborate closely with QA, Security, and Application teams to streamline cloud workflowsRequirements :
3–5 years of experience managing and engineering solutions in AWSStrong understanding of core AWS services (ECS, EC2, Lambda, RDS, S3, IAM, etc.)Hands-on experience with Terraform or AWS CDKHigh level of proficiency in scripting or programming (Python, TypeScript, Bash, etc.)Solid understanding of networking concepts and cloud security best practicesExperience with CI / CD tooling such as GitHub Actions or Bitbucket PipelinesNice-to-Haves
AWS Certifications (Solutions Architect, SysOps, or DevOps Engineer)Experience with observability tooling (CloudWatch, Datadog, Splunk, OpenTelemetry)Knowledge of security principles such as Zero Trust Architecture (ZTA) and Principle of Least Privilege (PoLP)Familiarity with encryption strategies for data at rest and in transit (e.g., KMS, TLS, customer-managed keys, envelope encryption)Awareness of compliance frameworks (PCI-DSS, SOC 2, HIPAA) and how they affect data platform design