Job Description
Job Overview:
We are seeking a highly skilled Cloud Engineer with deep expertise in infrastructure automation, CI/CD integration, and cloud-native security practices. The ideal candidate will have hands-on experience architecting, implementing, and maintaining robust, secure, and scalable cloud environments in AWS, with a strong preference for those who have worked on regulated workloads (e.g., FedRAMP, HIPAA, or DoD-compliant systems).
Key Responsibilities:
- Design and implement Infrastructure as Code (IaC) using Terraform and/or AWS CloudFormation.
- Build and maintain automated CI/CD pipelines integrating with GitHub Actions, GitLab CI, or similar tools.
- Develop robust monitoring and observability solutions using tools like Prometheus, Grafana, CloudWatch, and ELK.
- Configure and manage container orchestration platforms, particularly Amazon EKS or self-managed Kubernetes clusters.
- Implement least-privilege access control using IAM, roles, policies, and service-linked identities.
- Conduct security threat modeling and implement proactive controls (e.g., WAF, security groups, logging agents, GuardDuty).
- Optimize cloud resource cost, usage, and resilience through architectural reviews and performance benchmarking.
- Collaborate with DevSecOps and compliance teams to ensure adherence to NIST 800-53, CIS Benchmarks, and other frameworks.
- Manage automated patching and AMI pipelines using tools like Packer and AWS Systems Manager.
- Provide root cause analysis and incident response for infrastructure-level issues and security incidents.
Required Qualifications:
- Bachelor’s degree in Computer Science, Engineering, or equivalent experience.
- 4+ years of hands-on experience with AWS, with at least 2 years focused on infrastructure automation and security.
- Proficiency in Terraform (0.13+), Helm, and Kubernetes manifest templating.
- Experience configuring and tuning AWS services including VPC, ECS/EKS, IAM, Lambda, and KMS.
- Strong command-line and scripting abilities (Bash, Python, or Go preferred).
- Deep understanding of cloud networking: route tables, NAT gateways, PrivateLink, and Transit Gateways.
- Familiarity with automated compliance scanning tools like ScoutSuite, Prowler, or OpenSCAP.
- Experience integrating SAST/SCA tooling into CI pipelines (e.g., SonarQube, Snyk, Trivy).
- Strong knowledge of container lifecycle, image hardening, and runtime security.
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline#WebDesignRemoteJobs #FreelanceGraphicDesigner #WorkFromHomeDesignJobs #OnlineWebDesignWork #RemoteDesignOpportunities #HireGraphicDesigners #DigitalDesignCareers#Dynamicbrandguru