Build, maintain, and improve CI/CD pipelines for applications, APIs, and DB lifecycle changes (GitLab CI or equivalent);
Author and operate Infrastructure-as-Code (Terraform/CloudFormation) for application infra, networking, environment promotion, and DBaaS provisioning.
Manage secrets and key lifecycle: integrate Secrets Manager, KMS, and secure vault patterns into pipelines and runtime services.
Instrument and maintain observability: metrics, logs, distributed tracing, dashboards, and alerts (CloudWatch, Prometheus, Grafana, tracing) to support SLOs and incident detection.
Implement and automate authorization models: support RBAC and ABAC attributes, integrate centralized policy engines (e.g., OPA/IAM conditions/Foundry policies), and include policy checks in CI/CD.
Support containerized and serverless deployments (Docker, EKS/ECS, Lambda); manage Helm/manifest automation and container build pipelines.
Automate DBaaS tasks in pipelines: provisioning, backups/DR, patching, schema promotion, and lifecycle actions for RDS/Aurora or equivalent.
Maintain and author runbooks, incident playbooks, and operational run procedures; participate in on-call rotations and escalate complex incidents to Level 4/5 engineers.
Collaborate with Full Stack, Data, and Platform engineers to enable secure dataset handoffs, app integrations, and enforce ITAR/EAR/GovCloud constraints in deployment flows.
Contribute to cost optimization: autoscaling strategies, right-sizing, and pipeline improvements to reduce cost-to-serve.
Continuously review and recommend improvements to deployment reliability, security posture, and developer experience.
Requirements
2+ years hands-on experience in cloud DevOps or cloud platform engineering, preferably on AWS.
Experience building CI/CD pipelines (GitLab CI/CD or similar) and authoring IaC with Terraform or CloudFormation.
Familiarity with container workflows and orchestration (Docker and EKS/ECS) and/or serverless (AWS Lambda).
Practical experience with secrets management and KMS integration.
Working knowledge of monitoring and observability tooling (CloudWatch, Prometheus, Grafana, tracing).
Familiarity with RBAC and exposure to attribute-based or policy-driven controls (ABAC/OPA/IAM conditions).
Proficiency with scripting/automation (Python, Bash, or equivalent).
Strong collaboration skills and experience working with senior engineers and cross-functional teams.
Bachelor’s degree in Computer Science, Engineering, or equivalent experience.
Benefits
Health insurance
Flexible spending accounts
Health savings accounts
Retirement savings plans
Life insurance programs
Disability insurance programs
Paid time off
Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.