Senior AWS Platform Engineer
PayGround seeking a skilled and experienced AWS Infrastructure Engineer to join our dynamic team. The ideal candidate will have a strong background in managing and supporting production workloads in the cloud, specifically within regulated industries such as PCI and HIPAA. This role requires an individual with a deep understanding of AWS services and the ability to maintain and optimize cloud infrastructure for high availability, performance, and security. This individual will be the primary subject matter expert on all things AWS and be responsible for executing infrastructure and developer support functions for the engineering department.
About Us
Responsibilities
Service Strategy
- AWS Architecture: Extend the current aws architecture as needed to respond to needs of the engineering organization. For example, hosting and connecting integrations with 3rd parties.
- Cross Account Administration: Handle cross-account administration and resource management to maintain a secure and compliant infrastructure.
- Platform Modernization: Support the modernization of the EC2 and Dynamo platform by transitioning to ECS with RDS.
Platform Maintenance
- AWS Systems Management: Utilize AWS Systems Manager for operational efficiency and maintenance of the AWS environment. Responsible for enforcing the patching and vulnerability management policy
- SSO and IAM: Configure and manage Single Sign-On (SSO) and Identity and Access Management (IAM) to control access and enhance security. Ensure SSO is enforced in all possible areas in AWS.
- Secrets and Parameter Management: Securely manage sensitive information using AWS Secrets Manager and Parameter Store. Responsible for rotation and inventory management of key secrets and credentials.
- CI/CD Pipelines: Design, maintain, and optimize CI/CD pipelines written in Python CDK to ensure efficient and reliable code deployment.
Platform Reliability
- DNS and Load Balancing: Implement and manage DNS configurations and load balancing solutions to ensure reliability and scalability.
- Serverless Computing: Develop and maintain serverless applications using AWS Lambda and other serverless technologies. Evaluate how to simplify the AWS lambda environment.
- Database Management: Administer and optimize RDS instances to ensure database performance and reliability.
Service Operation
- Manage and Support Production Workloads: Maintain and optimize AWS infrastructure to support production workloads, ensuring high availability, performance, and security.
- EC2 and ECS Management: Configure, deploy, and manage EC2 instances and ECS clusters to support application workloads.
- VPN Management: Implement and manage Virtual Private Networks (VPNs) to ensure secure connectivity.
- Observability and On-Call Support: Provide on-call support for production issues, ensuring timely resolution and minimal downtime. Manage the key observability system (DataDog) to ensure production issues are detected in a timely manner.
- Deployment Support: Assist engineering with issues during deployment. Responsible for developing and executing rollback strategies for deployment.
Continual Service Improvement
- Regulated Industries Compliance: Ensure compliance with industry regulations such as PCI and HIPAA, and continuously improve security and compliance measures.
- Observability Dashboards: Development of KPI’s and dashboard to report on the performance of the infrastructure
- Cost Management: Ensure that cost anomalies are investigated and responded to. Responsible for developing a cost forecasting model for cloud costs and cost control.
Qualifications
Experience: Minimum of 10 years of systems administration/infrastructure experience with at least 5 years of experience in supporting production workloads specifically in AWS.
Regulated Industries: Experience working in regulated industries such as PCI and HIPAA is a plus.
Technical Proficiency: Demonstrated expertise with the following AWS services:
- AWS Systems Manager
- Cross-region architecture
- EC2, ECS
- GuardDuty, Config, Cloudtrail, Detective
- DNS, Load Balancing
- Cross Account Administration
- SSO, IAM
- VPN
- RDS
- Serverless (Lambda)
- Athena/RedShift/Quicksights
- SQS, SNS
- Secrets Manager, Parameter Store
CI/CD: Experience in maintaining AWS code pipelines written in Python CDK.
Platform Modernization: Experience in modernizing EC2 platforms, including migrating to DynamoDB and ECS with RDS.
Problem-Solving: Strong analytical and problem-solving skills to handle complex production issues.
Communication: Excellent communication skills to collaborate effectively with team members and stakeholders.
Certifications: AWS certifications: Professional Architect Certification, Professional DevOps Certification
Benefits
Our benefits package is designed to reward contribution and loyalty and to attract the kind of talented individuals who have their pick of employers. We offer a highly competitive package comprising:
- Competitive base salary
- Stock Options
- Core benefits including: full medical, dental, vision, matching 401K
Work Authorization
Applicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.